Threat Intelligence Analyst
Posted 29 days ago · 0 applicants
Saving, applying or scoring takes a few seconds to set up your free account.
The role in plain words
This role involves collecting and analyzing cyber threat intelligence from various sources to identify attack groups, techniques, and trends. The analyst will investigate cyber incidents, analyze logs, reconstruct attack paths, and lead incident response processes. Additionally, the position requires developing response playbooks, working with SIEM and SOAR systems, and writing professional reports for management.
- Experience in Cyber Threat Intelligence and/or Incident Response
- Experience in cyber incident investigation and log analysis
- Familiarity with IOC, TTPs, and the MITRE ATT&CK framework
- High analytical ability and attention to detail
- Ability to write and present findings at a high level
- Experience working with SIEM and SOAR systems
- Familiarity with Threat Intelligence and Forensics tools
Extracted from the job description · kept up to date automatically
Who this suits
This role suits individuals with experience in cyber threat intelligence or incident response who are familiar with MITRE ATT&CK, IOCs, and log analysis. It is less ideal for those who cannot commit to handling cyber security incidents during non-standard hours when necessary.
Full job description
Original listing · kept for referenceCyber Threat Intelligence & Incident Response Analyst
מחפש/ת את האתגר הבא בעולם הסייבר?
ארגון גדול באזור השפלה מחפש Cyber Threat Intelligence & Incident Response Analyst להצטרף לצוות מקצועי ומוביל, בתפקיד המשלב מודיעין איומי סייבר, חקירת אירועים ותגובה למתקפות בסביבה טכנולוגית מתקדמת.
אם את/ה סקרן/ית, אוהב/ת לחקור איומים, לנתח מתקפות ולהשפיע על רמת ההגנה של ארגון גדול – מקומך איתנו.
מה תעשה/י בתפקיד?
• איסוף, ניתוח והערכת מודיעין איומי סייבר ממקורות מגוונים.
• זיהוי ומעקב אחר קבוצות תקיפה, טכניקות, כלי תקיפה ומגמות בעולם הסייבר.
• בניית תמונת מצב מודיעינית והפקת תובנות אופרטיביות להגנת הארגון.
• חקירת אירועי סייבר, ניתוח לוגים, זיהוי Indicators of Compromise (IOCs) ושחזור מהלכי תקיפה.
• הובלת תהליכי Incident Response ותיאום בין צוותים פנימיים וגורמים חיצוניים.
• פיתוח ושיפור Playbooks, נהלים ותרחישי תגובה לאירועי סייבר.
• עבודה עם מערכות SIEM, SOAR, Threat Intelligence Platforms וכלי Forensics.
• כתיבת דוחות מקצועיים והצגת ממצאים והמלצות לגורמים טכנולוגיים ולהנהלה.
• שיתוף פעולה עם גורמי מודיעין, תשתיות, ארכיטקטורה וצוותי אבטחת מידע.
• השתתפות בתרגילים ובפעילויות לחיזוק מוכנות הארגון להתמודדות עם איומי סייבר.
מה אנחנו מחפשים?
• ניסיון בתחום Cyber Threat Intelligence ו/או Incident Response.
• ניסיון בחקירת אירועי סייבר וניתוח לוגים.
• היכרות עם IOC, TTPs ועם מסגרת MITRE ATT&CK.
• ניסיון בעבודה עם מערכות SIEM ו-SOAR – יתרון.
• היכרות עם כלי Threat Intelligence ו-Forensics – יתרון.
• יכולת ניתוח גבוהה, חשיבה אנליטית וירידה לפרטים.
• יכולת עבודה עצמאית לצד עבודה בצוותים רב-תחומיים.
• יכולת כתיבה והצגת ממצאים ברמה גבוהה.
• נכונות להשתתפות בטיפול באירועי סייבר גם בשעות לא שגרתיות בעת הצורך.
Questions about this role
- This listing did not state a salary. We only show pay when the employer publishes it.
- On-site
- Experience in Cyber Threat Intelligence and/or Incident Response, Experience in cyber incident investigation and log analysis, Familiarity with IOC, TTPs, and the MITRE ATT&CK framework, High analytical ability and attention to detail, Ability to write and present findings at a high level