n
- . Review all-source intelligence including internal, open source and closed source intelligence to identify emerging threat trends, TTP's and IOCs.
n
- Transform these trends and TTP's into timely, actionable intelligence products to contribute to defensive posture through prevention, detection and Red Team activities.
n
- Conduct intelligence investigations into malicious cyber activity to provide attribution, identify adversary TTP's, and provide additional context to threats to the network.
n
- Produce high-quality written reports, presentations and briefings, both in internal and external forums, to a wide variety of audiences, ranging from highly technical teams to executive management.
n
- Support time-sensitive and critical cyber incident response activities by providing intelligence including TTP's and IOCs to shorten the incident response cycle and protect the Customer network.
n
- Establish and maintain productive internal working relationships with other critical teams including our Security Operations Centre, Supply Chain Security, and Vulnerability Team.
n
- Contribute to the wider cyber threat intelligence community by establishing critical sharing and interpersonal relationships with industry and government organizations.
n
- Stay up to date on relevant cyber threat trends, defensive cyber practices, tooling and processes to apply industry standard practices to Global operations.
n
- Executive briefing & reporting skills with attention to detail
n
- Flexibility to attend to issues beyond normal business hours when needed
n
n
Responsibilities:
n
n
- A positive understanding of and at least 5+ years of experience with the cyber threat intelligence cycle, and experience in cyber threat intelligence collection, production, and writing.
n
- 5+ years of experience with threat analysis models such as the Diamond Model, Cyber Kill Chain, and MITRE ATT&CK; TTP framework.
n
- Certifications preferred - CISSP, GCTI, eCTHP or other equivalent Certifications
n
- Experience conducting technical threat intelligence investigations into malicious activity, including conducting attribution and TTP analysis.
n
- Familiarity with technical engineering requirements is associated with the production of intelligence.
n
- Experience with and understanding of incident response processes.
n
📌 Threat Hunter (Noida)
🏢 TCS
📍 Noida
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.