25 Sep
|
Quick Heal
|
India
Job Description
Job Summary
We are seeking a skilled and analytical Malware Lab and Threat Intelligence Platform Analyst to join our cybersecurity team. This role is responsible for reverse engineering malware, managing threat intelligence platforms (TIPs), correlating threat data, and supporting proactive defense efforts. The ideal candidate will combine technical malware analysis capabilities with a strong understanding of cyber threat intelligence operations.
Key Responsibilities
Malware Lab Operations
- Perform static and dynamic analysis of malware samples in a controlled lab environment.
- Build and maintain an isolated, secure malware sandbox infrastructure for testing and behavioral analysis.
- Document malware characteristics, including persistence mechanisms, network indicators, and payload functions.
- Develop detection and YARA signatures based on reverse engineering results.
- Collaborate with Incident Response (IR) and SOC teams to support investigations with malware findings.
Threat Intelligence Platform (TIP) Management
- Ingest, normalize, and enrich threat feeds in the TIP (e.g., MISP, ThreatConnect, Anomali, Recorded Future).
- Tag and correlate Indicators of Compromise (IOCs) across multiple data sources.
- Maintain up-to-date intelligence repositories and threat actor profiles.
- Automate workflows and integrate TIPs with SIEM, SOAR, and EDR platforms.
Threat Intelligence Analysis
- Analyze threat campaigns, TTPs (Tactics, Techniques, and Procedures), and threat actor motivations.
- Create threat intelligence reports, IOCs, and threat briefings for internal stakeholders.
- Monitor open-source, dark web, and closed forums for emerging threats and vulnerabilities.
- Support threat hunting teams with contextual intelligence and indicators.
Qualifications
Required:
- Bachelor's degree in Cybersecurity, Computer Science, or related field; or equivalent experience.
- 1 years in cybersecurity with at least 0–1 years focused on malware analysis and/or threat intelligence.
- Experience with malware analysis tools (e.g., IDA Pro, Cuckoo Sandbox, Wireshark).
- Familiarity with MITRE ATT&CK;, STIX/TAXII, and intelligence lifecycle.
- Experience with TIPs and integration into security infrastructure.
Preferred:
- Knowledge of nation-state threat actors, ransomware groups, and APT campaigns.
- Experience with Splunk, ELK, or other SIEMs.
- Ability to brief technical and non-technical audiences effectively.
Key Competencies
- Strong analytical and investigative skills.
- Detail-oriented with excellent documentation practices.
- Proactive mindset with a passion for threat research.
- Team player with valuable communication and collaboration skills.
Working Conditions
- May involve handling potentially malicious software in a secure lab environment.
Job Snapshot
Updated Date
23-09-2026
Job ID
QH_2496
Sub Department
DELIVERY & SERVICES
Location
Goa, Pune, Maharashtra, India
Experience
0 - 1 Years
Employee Type
Full Time
📌 Junior Consultant (India)
🏢 Quick Heal
📍 India