Threat Intelligence Analyst

 

Recruiter:

HR Genie

Job Ref:

LM_TIA

Date posted:

Thursday, April 28, 2022

Location:

Midrand, South Africa

Salary:

Market related


SUMMARY:
The role extends further by providing trusted advisory security expertise to the customer in making

JOB DESCRIPTION:

Formal Education

         •   BSC degree in relevant field/technology (or equivalent years of experience) 

 

Experience

  • minimum of 4 years of related experience
  • Experience with threat assessment, vulnerability analysis, risk assessment, information gathering, correlating and reporting
  • Experience analysing phishing attacks
  • Significant experience in network intrusion detection
  • Experience creating specific mitigation tactics such as IDS signatures
  • Experience producing reports and briefs on the current threat landscape and associated risks
  • Experience with conducting vulnerability assessments using tools like Tenable or similar
  • Experience on threat intelligence feeds in terms of application and usability
  • Experience monitoring third party security related websites, forums and social media sites for information regarding vulnerabilities and exploits
  • Experience conducting malware analysis - usage of VirusTotal etc
  • Experience using common sandbox technologies to perform dynamic malware analysis
  • Experience replicating reported vulnerabilities in a safe and contained environment to develop proof of concept and/or exploit tools

Technical/Legal Certification

  • CISSP, CEH, GPEN, OSCP or similar security certifications 
  • Certification in IBM Qradar essential

Responsibilities

• Supports the Threat and Advanced Cyber Defence Team with reporting, management, and remediation of threats against customers.

  • Conduct cyber intelligence operations including intelligence collection, tracking threat actors, identifying malicious behaviours and operations.
  • Participates on Incident Response teams as threat/forensic SME (Subject Matter Expert)
  • Perform network traffic and anomaly analysis, as well as indicators of compromise from system logs (Unix & Windows), application/database and firewall logs, IDS/IPS alerts, WAF alerts, endpoint malware alerts.
  • Manages multiple investigation requests through the entire lifecycle of initiation, data collection, analysis, and data production
  • Performs assessments of security profiles and correlates vulnerability data with network topology information to quickly identify risks
  • Recommends and tracks the application of fixes, security patches and security updates on various levels
  • Produces recommendation reports on patches, exploits and vulnerabilities
  • Works with customers, vendors and internal resources for problem resolution and security advisories
  • Standardizes process and procedures and provides continual improvement
  • Develops and maintain comprehensive documentation on incidents and analysis for clients and internal
  • Compile security advisories for internal and external in document format with technical recommendations
  • Use case writing, development and refinement for detection of threats
  • Proactively search for rogue behaviour, malicious attacks & suspicious activity
  • Training of junior analysts
  • Analyse threat feeds to produce daily/weekly/monthly Threat Intelligence brief and regular threat trend reporting

 

Key Competencies

Knowledge

  • Ability to identify and recommend mitigations for vulnerabilities, exploits, patches
  • Understanding of "attacker" methodologies and tactics, including kill-chain analysis
  • Familiarity with Advance Persistent Threat groups and Hacker activity
  • Construct correlation and application rules in a SIEM environment from use cases
  • Knowledge of cyber security methodology and security best practices •            Familiar with Data Privacy laws and the associated security requirements. 

Skills 

  • Excellent problem solving and analytical skills
  • Excellent written and oral communication skills
  • Strong security research skills on hackers, threats and the attack surface at a global and local level
  • Programming skills required: Python, Java, Perl
  • Ability to read network logs and analyse network packet capture data. Wireshark
  • Ability to perform malicious code reverse engineering (advantageous)
  • Ability to utilize common sandbox technology to perfor

 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Cyber Security Specialist - Vulnerability Management
Location: Midrand
Salary:
PURPOSE: Interfaces across multiple channels throughout the enterprise seeking business, technical and infrastructure issues and identifying potential areas of risk. Performs in conformance with established standards. Actively monitor and remediate threats as to the best practices of the Vulnerability Management solution and that of industry standards. Understand process of Patch Management a...
6 days ago


Sales Engineer
Location: Centurion
Salary:
Sales Engineer: Blend technical prowess with persuasive skills to drive sales and innovation. Be the catalyst between technology and customer success."
18 days ago


Analyst
Location: Johannesburg
Salary: 25000 Monthly
Our Client is looking for a analyst, located in Johannesburg
4 days ago


Data Intelligence Analyst
Location: Johannesburg
Salary: Market related
Our client is looking for a Data intelligence analyst to join their team.
5 days ago


Senior Process Engineer - Contract
Location: Sandton
Salary: R500 - 565 per hour
Senior Process Engineer X5 - Contract
5 days ago


Senior Process Engineer - Contract
Location: Sandton
Salary: R500 - 565 per hour
Senior Process Engineer X5 - Contract
5 days ago


Process Engineer (intermediate) - Contract
Location: Sandton
Salary: R400 - 478 per hour
Process Engineer - Intermediate- Contract
5 days ago


Process Engineer (intermediate) - Contract
Location: Sandton
Salary: R400 - 478 per hour
Process Engineer - Intermediate- Contract
5 days ago


Senior Process Engineer X5 - Contract
Location: Sandton
Salary: R500 - 565 per hour
Senior Process Engineer X5 - Contract
5 days ago


Data Intelligence Analyst
Location: Johannesburg
Salary: Monthly
Leading medical and pharmaceutical company, based in Johannesburg North, requires an experience Data intelligence analyst.
5 days ago


Create a free job alert for Threat Intelligence Analyst in Midrand

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions