Threat Intelligence Analyst

 

Recruiter:

HR Genie

Job Ref:

LM_TIA

Date posted:

Thursday, April 28, 2022

Location:

Midrand, South Africa

Salary:

Market related


SUMMARY:
The role extends further by providing trusted advisory security expertise to the customer in making

JOB DESCRIPTION:

Formal Education

         •   BSC degree in relevant field/technology (or equivalent years of experience) 

 

Experience

  • minimum of 4 years of related experience
  • Experience with threat assessment, vulnerability analysis, risk assessment, information gathering, correlating and reporting
  • Experience analysing phishing attacks
  • Significant experience in network intrusion detection
  • Experience creating specific mitigation tactics such as IDS signatures
  • Experience producing reports and briefs on the current threat landscape and associated risks
  • Experience with conducting vulnerability assessments using tools like Tenable or similar
  • Experience on threat intelligence feeds in terms of application and usability
  • Experience monitoring third party security related websites, forums and social media sites for information regarding vulnerabilities and exploits
  • Experience conducting malware analysis - usage of VirusTotal etc
  • Experience using common sandbox technologies to perform dynamic malware analysis
  • Experience replicating reported vulnerabilities in a safe and contained environment to develop proof of concept and/or exploit tools

Technical/Legal Certification

  • CISSP, CEH, GPEN, OSCP or similar security certifications 
  • Certification in IBM Qradar essential

Responsibilities

• Supports the Threat and Advanced Cyber Defence Team with reporting, management, and remediation of threats against customers.

  • Conduct cyber intelligence operations including intelligence collection, tracking threat actors, identifying malicious behaviours and operations.
  • Participates on Incident Response teams as threat/forensic SME (Subject Matter Expert)
  • Perform network traffic and anomaly analysis, as well as indicators of compromise from system logs (Unix & Windows), application/database and firewall logs, IDS/IPS alerts, WAF alerts, endpoint malware alerts.
  • Manages multiple investigation requests through the entire lifecycle of initiation, data collection, analysis, and data production
  • Performs assessments of security profiles and correlates vulnerability data with network topology information to quickly identify risks
  • Recommends and tracks the application of fixes, security patches and security updates on various levels
  • Produces recommendation reports on patches, exploits and vulnerabilities
  • Works with customers, vendors and internal resources for problem resolution and security advisories
  • Standardizes process and procedures and provides continual improvement
  • Develops and maintain comprehensive documentation on incidents and analysis for clients and internal
  • Compile security advisories for internal and external in document format with technical recommendations
  • Use case writing, development and refinement for detection of threats
  • Proactively search for rogue behaviour, malicious attacks & suspicious activity
  • Training of junior analysts
  • Analyse threat feeds to produce daily/weekly/monthly Threat Intelligence brief and regular threat trend reporting

 

Key Competencies

Knowledge

  • Ability to identify and recommend mitigations for vulnerabilities, exploits, patches
  • Understanding of "attacker" methodologies and tactics, including kill-chain analysis
  • Familiarity with Advance Persistent Threat groups and Hacker activity
  • Construct correlation and application rules in a SIEM environment from use cases
  • Knowledge of cyber security methodology and security best practices •            Familiar with Data Privacy laws and the associated security requirements. 

Skills 

  • Excellent problem solving and analytical skills
  • Excellent written and oral communication skills
  • Strong security research skills on hackers, threats and the attack surface at a global and local level
  • Programming skills required: Python, Java, Perl
  • Ability to read network logs and analyse network packet capture data. Wireshark
  • Ability to perform malicious code reverse engineering (advantageous)
  • Ability to utilize common sandbox technology to perfor

 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Enterprise Security Architect
Location: Midrand
Salary:
Our growing team is looking for an experienced Enterprise Security Architect who will play a key role in shaping the security strategy, architecture, and implementation across our enterprise IT landscape.As an Enterprise Security Architect, you will design and implement comprehensive security frameworks that protect our digital assets, intellectual property, and data, while enabling the business t...
16 days ago


IT Risk Analyst
Location: Pretoria
Salary:
44 days ago


Ranger - Anti-Poaching
Location: Johannesburg
Salary: Salary Negotiable on Experience
As a security ranger specializing in anti-poaching activities, your role is crucial in protecting endangered wildlife from illegal hunting and poaching activities.
11 days ago


Market Risk Senior Consultant
Location: Johannesburg
Salary: 600 000
This global network of professional services firms offers audit, tax, and advisory services providing expertise across various industries.
2 days ago


Business Intelligence Analyst (SQL) - Johannesburg – R600k to R800k per annum
Location: Johannesburg
Salary: 800000
Business intelligence analyst (SQL) - Johannesburg – R600k to R800k per annum
7 days ago


Senior Business Analyst
Location: Sandton
Salary: R75k - 95k per month
We are looking for a Senior Business analyst to join our team based in JHB.
7 days ago


Forensic Data Administrator
Location: Centurion
Salary:
A Vacancy exists for a Forensic Data Administrator in the Information Analysis, HQ Specialized Services division at Head Office
15 days ago


Business Analyst
Location: Midrand
Salary: R240K plus Provident Fund
Head Office Services concern based in Midrand has an opening for a Business analyst to join their team.  Successful incumbent will play a crucial role in driving data-driven decision-making within the company.  Analyze business processes, identify areas for improvement and deliver actionable insights to support operational efficiency and strategic growth.  Work closely with cross-fu...
16 days ago


Business Analyst
Location: Sandton
Salary: R450 000
Our client in Midrand is looking for an experienced Business analyst to manage their data-driven decision making processes
20 days ago


Data Intelligence Analyst
Location: Johannesburg
Salary: Market related
Exciting Opportunity: Data intelligence analyst.
21 days ago


Create a free job alert for Threat Intelligence Analyst in Midrand

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions