Cyber Threat Intelligence Analyst - LATAM

Group-IB

Mexico

On-site

MXN 480,000 - 680,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Remote-friendly
Career growth opportunities

Job summary

Group-IB Threat Intelligence is seeking a Cyber Intelligence Analyst to join our LATAM Research team to study major threats targeting Latin America, analyze threat actors, and map their TTPs to MITRE techniques. You will help develop regional threat landscapes to support our mission of fighting cybercrime.

You will use open sources and platforms like VirusTotal, Urlscan, Shodan, RiskIQ, and public sandboxes to craft context-rich alerts and mitigate risks for clients in the LATAM region.

Qualifications

  • Experience researching and profiling cyber threats.
  • Knowledge of LATAM threat landscape and actors.
  • Familiarity with open-source intelligence tools.
  • Basic scripting in Python or Bash to automate data collection.

Responsibilities

  • Analyze threat actors and their TTPs affecting LATAM regions.
  • Create contextual threat alerts and documentation for clients.
  • Correlate indicators across sources and maintain threat intel content.
  • Develop MITRE ATT&CK mappings for observed activity.

Skills

Threat intelligence
LATAM focus
OSSINT
Python scripting

Tools

VirusTotal
Urlscan
Shodan
RiskIQ
Public sandboxes
MITRE ATT&CK

Job description

About Us

Founded in 2003 and headquartered in Singapore, Group-IB is a leading creator of cybersecurity

About Us

Founded in 2003 and headquartered in Singapore, Group-IB is a leading creator of cybersecurity technologies to investigate, prevent, and fight digital crime. Combating cybercrime is in the company’s DNA, shaping its technological capabilities to defend businesses and citizens and support law enforcement operations. Group-IB’s Digital Crime Resistance Centers (DCRCs) are located in the Middle East, Europe, Central Asia, and Asia-Pacific to help critically analyze and promptly mitigate regional and country-specific threats. These mission-critical units help Group-IB strengthen its contribution to global cybercrime prevention and continually expand its threat-hunting capabilities. Each of us can help make the world a safer place.

Join us!
About The Role

Group-IB Threat Intelligence is looking for a Cyber Intelligence Analyst to join our Cybercrime Research team to help us combat the cybercriminals operating in the Dark web and open sources. The selected candidate will be responsible for covering and researching major cyber threats that pose risks to the LATAM region. This individual will analyze various types of threat actors, ranging from hacktivists to Advanced Persistent Threats (APTs). The role involves leveraging both internal and external resources to investigate threats and vulnerabilities, analyzing various threat actors and their attack infrastructures, and contributing to the development of a regional Threat Landscape to support our mission of fighting cybercrime in the region.

Tasks To Solve
  • Analyzing IOCs and TTPs of the Threat Actors from the Latin America Threat Landscape - important to have knowledge of prevalent threats in the region such as banking Trojan, remote access trojan, etc.
  • Craft, maintain, and document detection opportunities within the Threat Intelligence platform.
  • Manage information and details related to threat actors TTPs and Opsec.
  • Perform necessary correlation and research to create useful, compelling, and context-rich alerts for customers.
  • Pursue research into current threats and industry trends to be aware of the most up-to-date threats in LATAM Threat Landscape.
  • Drive initiatives to create detection content based on findings stemming from threat hunts and ad hoc detection opportunities.
  • Develop mitigation and countermeasure strategies from collected threat intelligence.
  • Leveraging MITRE ATT&CK categorization to align observed threat actor activity to Tactics, Techniques, and Procedures (TTPs).
Apply For This Role If You Have
  • A genuine passion for investigating cybercrime, not just to produce reports, but to actively combat and mitigate its impact.
  • Understanding and interest in the threat landscape in the LATAM region.
  • Knowledge of global and local cyber threats, including ransomware, initial access broker, banking trojan, remote access trojan, and fraudsters.
  • Experience in analyzing the cybercrime community and profiling the threat actors.
  • Deep understanding of the darkweb ecosystem, including knowledge of major platforms, types of goods and services traded, market dynamics, and communication methods used within underground communities
  • Basic knowledge of scripting languages (Python, Bash).
  • Knowledge of network technologies and principles of functioning of data networks, understanding of the features of the common data transfer protocols.
  • Knowledge of OS architecture and operating principles.
  • Good interpersonal skills, as well as the ability to communicate effectively orally and in writing.
  • Experience in working with the following sources: Virustotal, Urlscan, Shodan, RiskIQ, Public sandboxes
  • Optionally: Group-IB or other threat intelligence platforms.
  • Fluency in Spanish and English.
Why Choose Group-IB
  • Your happiness is important to us: We want every single team member to be happy.
  • Continuing professional development: At Group-IB, you can choose from various paths to growth: progress as an expert, advance to a management position, try your hand in another department, relocate abroad, or launch a new business area at Group-IB.
  • A team with extensive international expertise: Do you have experience but are looking for exciting challenges? By choosing us, you will be choosing complex tasks and continuously improving your skills in a fast-growing international company.
  • Globally recognized technologies: Group-IB's members are located in 25 countries and our products and services are sold in 60 countries. What's more, Gartner, IDC, and Forrester have ranked our technologies among the best in their class. We work with over 450 international partners and about 500 clients.
  • A culture created by each of us: Group-IB's employees speak many different languages and understand one another. We respect each other's beliefs, share common values, and strive toward the happiness of every employee.
  • Economic stability: Group-IB's sustainable growth helps rapidly develop careers that would take years to progress as far as most other companies.
What Else Should You Know
  • Flexible schedule: Group-IB does not have fixed working hours. You choose your own schedule. We adhere to the principle advocated by Steve Jobs: "We have to work not 12 hours and head."
  • Certificates and training courses: Group-IB specialists hold over 1,000 professional certificates, including CEH, CISSP, OSCP, GIAC, MCFE, BSI, as well as some rare ones that would be a source of pride for experts in forensics, penetration testing, and reverse engineering worldwide. We have an incentive program that helps employees achieve certifications at the company's expense.
  • Challenges: A wide selection of GIB programs helps you improve soft skills, gain new competencies, and receive monetary rewards.
  • The initiative is rewarded: At Group-IB, you can bring your most daring ideas to life. The company encourages technical blogging, writing articles, building sports teams, and other creative activities.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Intelligence Analyst – Spain based.
Cyber Threat Intelligence Analyst – Spain based.

Group-IB • España

Remote
PHP 3,541,000 - 5,904,000
Flexible schedule
Professional development opportunities
Training courses funded by the company
+1
LATAM Cyber Threat Intelligence Analyst
LATAM Cyber Threat Intelligence Analyst

Group-IB • Mexico

On-site
MXN 480,000 - 680,000
Remote-friendly
Career growth opportunities
Manager, Cyber Threat Intel Information Security
Manager, Cyber Threat Intel Information Security

AIA Hong Kong and Macau • Makati

On-site
PHP 1,200,000 - 1,500,000
Cyber Threat Remediation Analyst
Cyber Threat Remediation Analyst

Check Point Software • Manila

On-site
PHP 600,000 - 800,000
L3 Threat Response Analyst
L3 Threat Response Analyst

IBM • Taguig

On-site
PHP 600,000 - 1,200,000
Junior Cyber Threat Analyst
Junior Cyber Threat Analyst

Infinit-O Group • Philippines

On-site
PHP 360,000 - 540,000
Consulting_Cyber Detection And Response IRR Senior
Consulting_Cyber Detection And Response IRR Senior

EY • Philippines

On-site
PHP 800,000 - 1,200,000
Flexible environment
Professional development
Premium benefits
Consulting_Cyber Detection & Response IRR Senior
Consulting_Cyber Detection & Response IRR Senior

EY • Taguig

On-site
PHP 900,000 - 1,200,000
Health and wellness packages
Opportunities for continuous learning
Access to cutting-edge technologies
Senior Cyber Security Analyst - APAC
Senior Cyber Security Analyst - APAC

Intuition Machines • Manila

On-site
PHP 3,059,000 - 4,896,000
Flexible working hours
Modern development workflows
Inclusive work environment
IT Security Analyst (Junior to Intermediate) - Leading Multinational Company
IT Security Analyst (Junior to Intermediate) - Leading Multinational Company

PFCC Group • Manila

On-site
PHP 500,000 - 900,000