Job Title: Lead Information Security Analyst
Title: Cyber Threat Hunte
Division: Security Operations Center
Department: GTS
Background Information:
The Global Information Security teams are responsible for the confidentiality, integrity and
availability of the firm’s information and assets. Responsible for maintaining, communicating and
raising awareness of the Policy. Facilitate the effective implementation and compliance of the
firm’s polices.
The Global Information Security Team is based in Europe, Asia, India and America.
Description of IT service:
The candidate will assist in performing Threat hunting within the organization’s environment.
Knowledge, Skill, Experience Required
· 5 to 8 Year of Threat Hunting experience
· Ability to understand big data and query languages (Splunk, SQL, etc.)
· Experience with either Red team or Blue team operations
· Ability to think both like an attacker and defender.
· Experience setting up infrastructure to support Hunt Team Operations
· Previous experience working on researching, designing, engineering, implementing, and
supporting information security & directory technology systems (software & hardware).
· Utilizes in-depth technical knowledge and business requirements to design & implement
secure solutions to meet customer / client needs while protecting the assets.
· Develops and implement security standards, procedures, and guidelines for multiple
platforms.
· Must be able to Analyze available data sources, security tools, and threat trends and lead
security monitoring and analysis techniques to identify attacks against the enterprise
· Must understand typical threat actor profiles, the typical indicators associated with those
profiles, and be able to synthesize the two to develop innovative techniques to detect
threat actor activity
· Experience with information security tools such as an enterprise SIEM solution, IDS/IPS,
endpoint security, and other cyber analytics tools
· Ability to analyze logs, normalize and perform automated log correlations utilizing big data
analysis or hunt tools to identify anomalous and potentially malicious
· Follow ticketing workflow in service now Handles incident management and change
management process
· Maintains knowledge base database Ensures call escalation as per escalation chart by
adhering to SLA
· Working experience on AWS/Azure Clou