- A valuable understanding of and at least 5+ years of experience with the cyber threat intelligence cycle, and experience in cyber threat intelligence collection, production, and writing.
- 5+ years of experience with threat analysis models such as the Diamond Model, Cyber Kill Chain, and MITRE ATT&CK; TTP framework.
- Certifications preferred - CISSP, GCTI, eCTHP or other equivalent Certifications
- Experience conducting technical threat intelligence investigations into malicious activity, including conducting attribution and TTP analysis.
- Familiarity with technical engineering requirements is associated with the production of intelligence.
- Experience with and understanding of incident response processes.