Technical Cyber Threat Intelligence Analyst

Pretoria, Gauteng, South Africa

Job Description


JOB DESCRIPTION

  • Collect, analyse and interpret cyber-threat data from multiple technical information sources for the development of actionable intelligence.
  • Perform malicious software (malware) analysis on artefacts flowing from the incident response process in order to identify the behaviours and indicators of compromise.
  • Liaise with internal and external technical stakeholders, providing intelligence regarding threat actor techniques, tactics and procedures in order to ensure correct and timely focused threat detection and mitigation.
  • Work closely with technical owners and administrators to define and rationalise corrective actions based on assessment outcomes.
  • Produce high-quality technical and tactical threat intelligence reports highlighting vulnerabilities covering the cyber-threat landscape.
  • Proactively hunt for cyber-threats through the in-depth analysis of internal technical incident and system information.
  • Identify, imbed and support cyber technical threat intelligence tools and technologies in the company
JOB REQUIREMENTS
  • A Bachelors degree (NQF7) in Security/Information Technology or an equivalent qualification;
  • Five to eight years relevant cybersecurity work experience, of which at least two years must be as a cyber threat intelligence expert;
  • A security certification in one of the following: Certified Incident Handler, Certified Forensic Analyst, Network Forensics Analyst, Offensive Security (OSCP/OSCE) or any other relevant certifications (an ethical hacking certification would be an added advantage);
  • Sound knowledge of cyber threat intelligence processes and tradecraft (e.g. the Cyber Kill Chain and Diamond Model of Intrusion Analysis);
  • An understanding of networking (including the OSI Model, TCP/IP, DNS, HTTP, HTTPS, SMTP);
  • Experience working in a Blue team;
  • Knowledge of intelligence technologies, including Silo breaker,, , Anomaly, Maltego, VirusTotal Intelligence, MISP);
  • Knowledge of threat intelligence conventions, including YARA, OpenIOC and STIX frameworks; and
  • Knowledge of programming or scripting languages such as Python, Perl, Powershell and R. (Advantageous)

ExecutivePlacements.com

Beware of fraud agents! do not pay money to get a job

MNCJobs.co.za will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD1276071
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Pretoria, Gauteng, South Africa
  • Education
    Not mentioned