Communicate threat intelligence to relevant stakeholders to support evidence-based decision making in a variety of formats including verbally to wide audiences.
Produce explicit and concise threat intelligence reports at tactical, operational, and strategic levels with good analytical capability and excellent writing and reporting skills.
Utilising threat intelligence tooling and open-source tools to conduct investigations into threat actors, infrastructure and tactics, techniques, and procedures.
Support the firms mission to build client trust and confidence about information security generally and threat intelligence specifically.
Stay abreast of industry best practice in relation to threat intelligence
Assist in continuous review of requirements to direct the production of threat intelligence, including the selection of information sources (both internal and external to the firm).
Key Attributes
Strong verbal and written communication skills and the ability to communicate security and risk related concepts to technical and non-technical audiences.
Experience with improving the development of intelligence in an organisation from direction to dissemination and feedback.
Ability to work independently with minimal guidance and as a team with solid collaboration skills with a growth mindset on improving and building services.
Pro-active in analysing and collecting information to produce into actionable intelligence.
Strong analytical and critical thinking skills.
Essential Skills and Experience
Prior cyber threat intelligence experience with understanding of threat actors’ tactics, techniques and procedures against MITRE frameworks and the Cyber Kill Chain.
Experience with threat intelligence platforms and tools, including threat feeds, threat intelligence platforms and SIEMs.
Solid understanding of information security standards (e.g., Cyber Essentials, ISF Standard of Positive Practice for Information Security, ISO 27001, NIST Cybersecurity Framework, CIS Top 20 Controls).
Understanding of security threats, attack scenarios, intrusion detection and incident management.