Junior Cyber Threat Analyst

Infinit-O

Pasay

On-site

PHP 600,000 - 1,000,000

Full time

21 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Infinit-O is seeking a Cyber Threat Analyst to continuously monitor malware developments, offender TTPs, and cloud/mobile security topics. You will analyze malware, generate detections, and communicate findings to diverse audiences.

The role focuses on threat leads, research, and secure handling of client data. Applicants should have 2+ years in cyber threat intel, OSINT experience, and familiarity with MITRE ATT&CK.

Qualifications

  • B.S. equivalent in computer science, information systems, or cyber intelligence.
  • Two (2) years professional experience.
  • Technical proficiency in Cyber Threat Intelligence and Threat Intelligence Platforms.
  • Experience working with OSINT and/or large data sets.
  • Experience with sandboxes, virtual machines, or malware analysis tools.
  • Familiarity with the MITRE ATT&CK Framework and mapping activity to tactics/techniques.
  • Understanding of the Diamond Model of Intrusion Analysis and cybersecurity fundamentals.

Responsibilities

  • Research new adversary TTPs using open sources, dark web, and proprietary sources.
  • Write TTP Instances detailing identified threat leads (min 2 per day).
  • Analyze malware in sandbox environments and static analysis tools.
  • Create malware or vulnerability detections (e.g., YARA, Sigma, Snort, Nuclei) when applicable.
  • Follow Infinit-O information security policies and protect client information.

Skills

OSINT
Malware analysis
Threat intelligence
Communication

Education

B.S. in Computer Science or related field

Tools

Threat Intelligence Platforms
MITRE ATT&CK Framework
Sandboxing/VMs

Job description

TTP MNL reports on technical subject matter such as malware developments, offensive security tools, vulnerability exploits, cloud security, and mobile security. Cyber Threat Analysts are expected to familiarize themselves with these topics continuously, identifying threat leads from a variety of sources. Cyber Threat Analysts are also expected to analyze malware and create effective detections, which their senior peers will review and validate. Cyber Threat Analysts must be able to communicate this subject matter effectively to various audiences, both verbally and in writing.

Specific Duties and Responsibilities
  • Threat Lead Identification: Research new adversary tactics, techniques, and procedures (TTPs) using open sources (public information such as security vendor reporting, social media, code repositories); closed sources (dark web and underground forums); and proprietary sources.
    • Subject Matter: Threat leads should focus on team priority intelligence requirements (PIRs). Examples of such subject matter include malware developments, offensive security tools, vulnerability exploits, cloud security, and mobile security.
    • Key Detail Identification: During research, identify and take note of infection chains, host and network IoCs, malware samples, threat actors, and MITRE ATT&CK tactics and techniques
  • Author Notes: Write TTP Instances detailing identified threat leads. TTP Instances include a combination of information from open-source reporting and your own analysis (i.e. code review, static malware analysis). TTP Instances are written and formatted to help our customers understand infection chains while also helping them prepare and validate their defenses.
    • Cadence: Write at least 2 TTP Instance notes daily
    • Quality: Authored TTP Instances should include minimal grammatical or syntax errors. Plagiarism is not acceptable.
  • Malware Analysis: Using sandbox environments and static analysis tools, analyze malware samples associated with threat leads.
    • Use Cases: Malware analysis is used to provide additional insight into an event, validate open-source reporting, uncover additional IoCs, and assist peers and customers in detection engineering
  • Detection Engineering: Create malware or vulnerability detections (e.g. YARA, Sigma, Snort, Nuclei) that can be used for threat hunting, detection, and classification.
    • Cadence: Create at least 1 malware or vulnerability detection per month
    • Delivery: In most cases, these detections will be delivered alongside a TTP Instance.
  • Information Security: Adhere to and implement Infinit-O's quality and information security policies and carry out its processes and procedures accordingly.
    • Protect client-supplied and generated-for-client information from unauthorized access, disclosure, modification, destruction, or interference
    • Carry out tasks as assigned and aligned with particular processes or activities related to information security.
    • Report any potential or committed non-conformity, observation and/or security event or risks to immediate superior.
Minimum Qualifications
  • B.S. equivalent in computer science, information systems, or cyber intelligence
  • Two (2) years professional experience
  • Technical proficiency in Cyber Threat Intelligence and Threat Intelligence Platforms
  • Experience working with open-source intelligence (OSINT) and/or large data sets
  • Experience working with sandboxes, virtual machines, or other malware analysis tools
  • Familiarity with the MITRE ATT&CK Framework, including the ability map reported activity to ATT&CK tactics and techniques
  • Familiarity with interpreting and mapping cyberattacks to the Diamond Model of Intrusion Analysis
  • Adeptness in cybersecurity and data protection
Preferred Qualifications
  • Experience creating malware detections (e.g. YARA, Sigma, Snort)
  • Experience creating vulnerability detections (e.g. Nuclei)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior Cyber Threat Analyst
Junior Cyber Threat Analyst

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
Junior Cyber Threat Analyst - Malware & Threat Intel
Junior Cyber Threat Analyst - Malware & Threat Intel

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
Jr. Technical Writer (Cyber Threat Intelligence)
Jr. Technical Writer (Cyber Threat Intelligence)

Infinit-O • Metro Manila

On-site
PHP 300,000 - 420,000
Junior Cyber Threat Analyst — Malware Research & Detections
Junior Cyber Threat Analyst — Malware Research & Detections

Infinit-O • Pasay

On-site
PHP 600,000 - 1,000,000
Jr. Cyber Threat Analyst - Junior Malicious Infrastructure Analyst
Jr. Cyber Threat Analyst - Junior Malicious Infrastructure Analyst

J-K Network Services • Pasay

Hybrid
Jr. Technical Writer (Cyber Threat Intelligence) | Hybrid Setup | Pasay
Jr. Technical Writer (Cyber Threat Intelligence) | Hybrid Setup | Pasay

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
Threat Intelligence Consultant
Threat Intelligence Consultant

PM Consulting • Philippines

On-site
PHP 700,000 - 1,100,000
Technical Writer
Technical Writer

Our Clients • Pasay

On-site
PHP 480,000 - 720,000
Manager, Cyber Threat Intel Information Security
Manager, Cyber Threat Intel Information Security

AIA Hong Kong and Macau • Makati

On-site
PHP 1,200,000 - 1,500,000
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site