Junior Cyber Threat Analyst

Infinit-O

Philippines

On-site

PHP 300,000 - 540,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Infinit-Os is seeking a Junior Cyber Threat Analyst who will research threat TTPs, analyze malware, and craft detailed detections. You will write clear reports and collaborate with peers to enhance defensive capabilities.

Responsibilities include identifying infection chains, mapping MITRE ATT&CK techniques, and delivering at least monthly malware/detection work while following security policies and protecting client data.

Qualifications

  • Strong written English and ability to document technical subject matter clearly.
  • Experience writing technical reports on malware, exploits, and security topics.
  • Disciplined time management and ability to work autonomously.
  • Self-starting, collaborative in teams, open to feedback from peers and leadership.
  • Familiarity with MITRE ATT&CK mapping and cyber threat analysis concepts.

Responsibilities

  • Research adversary tactics, techniques, and procedures (TTPs) from open and proprietary sources.
  • Write TTP Instances detailing identified threat leads with analysis.
  • Analyze malware in sandbox environments and support detections development.
  • Create malware or vulnerability detections (e.g., YARA, Sigma, Snort).
  • Adhere to Infinit-Os security policies and protect client information.

Skills

Strong written English
Technical report writing
Time management
Self-motivation
Feedback incorporation

Education

B.S. in CS/IS/Cyber Intelligence

Tools

Sandbox environments
Virtual machines
Malware analysis tools

Job description

Job Description
Role Background

TTP MNL reports on technical subject matter such as malware developments, offensive security tools, vulnerability exploits, cloud security, and mobile security. Junior Cyber Threat Analysts are expected to continuously familiarize themselves with these topics and identify threat leads from a variety of sources. Junior Cyber Threat Analysts are also expected to analyze malware and create effective detections, which their senior peers will review and validate. Junior Cyber Threat Analysts must be able to communicate this subject matter effectively to various audiences, both verbally and in writing.

Specific Duties and Responsibilities
  • Threat Lead Identification: Research new adversary tactics, techniques, and procedures (TTPs) using open sources (public information such as security vendor reporting, social media, code repositories); closed sources (dark web and underground forums); and proprietary sources.
    • Subject Matter: Threat leads should focus on team priority intelligence requirements (PIRs). Examples of such subject matter include malware developments, offensive security tools, vulnerability exploits, cloud security, and mobile security.
    • Key Detail Identification: During research, identify and take note of infection chains, host and network IoCs, malware samples, threat actors, and MITRE ATT&CK tactics and techniques
  • Author Insikt Notes: Write TTP Instances detailing identified threat leads. TTP Instances include a combination of information from open-source reporting and your own analysis (i.e. code review, static malware analysis). TTP Instances are written and formatted to help our customers understand infection chains while also helping them prepare and validate their defenses.
    • Cadence: Write at least 2 TTP Instance notes daily
    • Quality: Authored TTP Instances should include minimal grammatical or syntax errors. Plagiarism is not acceptable.
  • Malware Analysis: Using sandbox environments and static analysis tools, analyze malware samples associated with threat leads.
    • Use Cases: Malware analysis is used to provide additional insight into an event, validate open-source reporting, uncover additional IoCs, and assist peers and customers in detection engineering
  • Detection Engineering: Create malware or vulnerability detections (e.g. YARA, Sigma, Snort) that can be used for threat hunting, detection, and classification.
    • Cadence: Create at least 1 malware or vulnerability detection per month
    • Delivery: In most cases, these detections will be delivered alongside a TTP Instance.
  • Information Security: Adhere to and implement Infinit-Os quality and information security policies and carry out its processes and procedures accordingly.
    • Protect client-supplied and generated-for-client information from unauthorized access, disclosure, modification, destruction, or interference (see also Table of Offenses)
    • Carry out tasks as assigned and aligned with particular processes or activities related to information security.
    • Report any potential or committed non-conformity, observation and/or security event or risks to immediate supervisor.
Required Skills
  • Strong written communication in English
  • Demonstrable experience writing reports on technical subject matter (e.g. malware, vulnerability exploits, offensive security tools) in a clear, concise, and logical format
  • Disciplined time management
  • Self-starting, self-motivated, and thrive in a collaborative environment
  • Ability to receive and apply constructive feedback from peers and leadership
Minimum Qualifications
  • B.S. equivalent in computer science, information systems, or cyber intelligence
  • At least six (6) months of professional experience
  • Experience working with open-source intelligence (OSINT) and/or large data sets
  • Experience working with sandboxes, virtual machines, and malware analysis tools
  • Familiarity with the MITRE ATT&CK Framework, including the ability map reported
  • Activity to ATT&CK tactics and techniques
  • Familiarity with interpreting and mapping cyberattacks to the Diamond Model of Intrusion Analysis
  • Adeptness in cybersecurity and data protection
Preferred Qualifications
  • Experience creating malware detections (e.g. YARA, Sigma, Snort)
  • Proficiency in scripting or programming languages (PHP, C, C#, C++, Python, PowerShell, Go, JavaScript, Rust)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior Cyber Threat Analyst - Malware & Threat Intel
Junior Cyber Threat Analyst - Malware & Threat Intel

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
Threat Intelligence Analyst | Mid-Night Shift | Hybrid (1x-2x a month RTO)
Threat Intelligence Analyst | Mid-Night Shift | Hybrid (1x-2x a month RTO)

AVENSYS CONSULTING INC. • Central Luzon

On-site
PHP 600,000 - 900,000
Technical Writer
Technical Writer

Create Synergies Inc. • Pasay

On-site
PHP 400,000 - 800,000
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site
Junior Cyber Security Engineer
Junior Cyber Security Engineer

Dormont Manufacturing Co • Philippines

On-site
PHP 420,000 - 620,000
Technical Writer
Technical Writer

Our Clients • Pasay

On-site
PHP 480,000 - 720,000
Junior Threat Intelligence Analyst | with 6 months experience
Junior Threat Intelligence Analyst | with 6 months experience

J-K Network Services • Pasay

Hybrid
Jr. Cyber Threat Analyst - Junior Malicious Infrastructure Analyst
Jr. Cyber Threat Analyst - Junior Malicious Infrastructure Analyst

J-K Network Services • Pasay

Hybrid
CYBERSECURITY ANALYST
CYBERSECURITY ANALYST

Tenet Global Business Center, Inc. • Taguig

Hybrid
PHP 520,000 - 1,000,000
Night differential 15%
Paid time off 20 PTO per year
Annual appraisal
+4
Senior Incident Response (IR) Analyst
Senior Incident Response (IR) Analyst

TREND MICRO INCORPORATED-PHILIPPINE BRANCH • Manila

On-site
PHP 1,339,000 - 2,009,000