Cyber Threat Analyst

HRTX

Philippines

On-site

PHP 600,000 - 900,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Infinit-O is seeking a Cyber Threat Analyst to monitor, analyze, and report on malware developments, threat actors, and TTPs. You will research techniques, map activities to MITRE ATT&CK, and produce actionable detections and insights for customers.

The role emphasizes high-quality, well-documented TTP instances, sandboxed analysis, and collaboration with senior peers to validate findings and strengthen defenses.

Qualifications

  • BS or equivalent in computer science, information systems, or cyber intelligence.
  • 1 year of professional experience in cyber threat intelligence or related field.
  • Technical proficiency in Cyber Threat Intelligence and Threat Intelligence Platforms.
  • Experience with OSINT and large data sets.
  • Experience with sandboxes, VM or malware analysis tools.
  • Familiarity with MITRE ATT&CK Framework and mapping to tactics/techniques.
  • Familiarity with the Diamond Model of Intrusion Analysis.
  • Adeptness in cybersecurity and data protection.

Responsibilities

  • Threat lead identification by researching new TTPs from open, closed, and proprietary sources.
  • Study threat subject matter such as malware developments, offensive tools, and cloud/mobile security.
  • Identify infection chains, IoCs, malware samples, and threat actors during research.
  • Write TTP Instances to help customers understand infection chains and defend against threats.
  • Create malware or vulnerability detections (YARA, Sigma, Snort) for threat hunting and classification.
  • Follow Infinit-O information security policies and protect client information.

Skills

OSINT
Malware analysis
Threat modeling

Education

B.S. in computer science or cyber intelligence

Tools

Sandbox environments
Virtual machines
Malware analysis tools

Job description

TTP MNL reports on technical subject matter such as malware developments, offensive security tools, vulnerability exploits, cloud security, and mobile security. Cyber Threat Analysts are expected to familiarize themselves with these topics continuously, identifying threat leads from a variety of sources. Cyber Threat Analysts are also expected to analyze malware and create effective detections, which their senior peers will review and validate. Cyber Threat Analysts must be able to communicate this subject matter effectively to various audiences, both verbally and in writing.

Specific Duties and Responsibilities:
Threat Lead Identification:
Research new adversary tactics, techniques, andprocedures (TTPs) using open sources (public information such as security vendorreporting, social media, code repositories); closed sources (dark web andunderground forums); and proprietary sources.

Subject Matter: Threat leads should focus on team priority intelligence
requirements (PIRs). Examples of such subject matter include malware
developments, offensive security tools, vulnerability exploits, cloud security, andmobile security.

Key Detail Identification: During research, identify and take note of infectionchains, host and network IoCs, malware samples, threat actors, and MITRE ATT&CKtactics and techniques

Author Insikt Notes: Write TTP Instances detailing identified threat leads. TTPInstances include a combination of information from open-source reporting andyour own analysis (i.e. code review, static malware analysis). TTP Instances arewritten and formatted to help our customers understand infection chains while alsohelping them prepare and validate their defenses.

Cadence: Write at least 2 TTP Instance notes daily

Quality: Authored TTP Instances should include minimal grammatical or syntaxerrors. Plagiarism is not acceptable.

Malware Analysis: Using sandbox environments and static analysis tools, analyzemalware samples associated with threat leads.

Use Cases: Malware analysis is used to provide additional insight into an event, validate open-source reporting, uncover additional IoCs, and assist peers and customers in detection engineering

Detection Engineering: Create malware or vulnerability detections (e.g. YARA, Sigma, Snort, Nuclei) that can be used for threat hunting, detection, and classification.

Cadence: Create at least 1 malware or vulnerability detection per month

Delivery: In most cases, these detections will be delivered alongside a TTP Instance.

Information Security: Adhere to and implement Infinit-O's quality and informationsecurity policies and carry out its processes and procedures accordingly.Protect client-supplied and generated-for-client information from unauthorizedaccess, disclosure, modification, destruction, or interference (see also Table ofOffenses)

Carry out tasks as assigned and aligned with particular processes or activitiesrelated to information security.
Report any potential or committed non-conformity, observation and/or securityevent or risks to immediate superior.

Qualification

  • B.S. equivalent in computer science, information systems, or cyber intelligence
  • One (1) year professional experience
  • Technical proficiency in Cyber Threat Intelligence and Threat Intelligence Platforms
  • Experience working with open-source intelligence (OSINT) and/or large data sets
  • Experience working with sandboxes, virtual machines, or other malware analysis tools
  • Familiarity with the MITRE ATT&CK Framework, including the ability map reported activity to ATT&CK tactics and techniques
  • Familiarity with interpreting and mapping cyberattacks to the Diamond Model of Intrusion Analysis
  • Adeptness in cybersecurity and data protection
    A
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior Cyber Threat Analyst
Junior Cyber Threat Analyst

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
Sr. Cyberthreat Analyst (OSINT)
Sr. Cyberthreat Analyst (OSINT)

HRTX • Philippines

On-site
PHP 1,000,000 - 1,800,000
Jr. Cyber Threat Analyst
Jr. Cyber Threat Analyst

HRTX • Philippines

On-site
PHP 420,000 - 780,000
Vulnerability Analyst
Vulnerability Analyst

HRTX • Philippines

On-site
PHP 446,000 - 1,004,000
Threat Intelligence Analyst
Threat Intelligence Analyst

HRTX • Philippines

On-site
PHP 350,000 - 700,000
Jr. Technical Writer (Cyber Threat Intelligence)
Jr. Technical Writer (Cyber Threat Intelligence)

Infinit-O • Metro Manila

On-site
PHP 300,000 - 420,000
Junior Cyber Threat Analyst: Threat Intel & Detections
Junior Cyber Threat Analyst: Threat Intel & Detections

HRTX • Philippines

On-site
PHP 420,000 - 780,000
Junior Cyber Threat Analyst - Malware & Threat Intel
Junior Cyber Threat Analyst - Malware & Threat Intel

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
Cyber Threat Analyst: Malware Intel & Detection Engineer
Cyber Threat Analyst: Malware Intel & Detection Engineer

HRTX • Philippines

On-site
PHP 600,000 - 900,000
Jr. Threat Intelligence Analyst
Jr. Threat Intelligence Analyst

HRTX • Philippines

On-site
PHP 500,000 - 800,000