TC - CS - CDR - Cyber Threat Intelligence - Senior

at EY

Location:

Employment Type: full_time


Job Description

<p><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px">At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. </span></span></p><p> </p><p> </p><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Role Overview:</strong></span></p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">We are seeking a highly skilled Senior Cyber Threat Intelligence Analyst to join the CTI team. The role involves collecting, analyzing, and disseminating actionable intelligence to support cybersecurity operations and protect the organization against emerging threats. The candidate will collaborate with internal and external stakeholders, conduct threat research, and contribute to the development of intelligence-driven strategies.</span></p><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Responsibilities:</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Lead the monitoring and analysis of emerging cyber threats across various sectors (e.g., Finance, Healthcare, Education).</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Perform in-depth analysis of advanced threat actor campaigns, including TTPs (Tactics, Techniques, and Procedures), and translate findings into actionable intelligence.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Develop and maintain a comprehensive repository of cyber threat data for risk assessment and trend analysis.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Create and present detailed reports (Strategic, Tactical, and Operational) to stakeholders, ensuring technical findings are communicated effectively.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Develop and document threat intelligence playbooks and procedures.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Identify and improve security detection capabilities using YARA, SIGMA, Snort, and similar rulesets.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Collaborate with cross-functional teams to assess risks and recommend mitigation strategies.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Evaluate and refine alerts triggered by threat intelligence platforms.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Use OSINT techniques to validate and prioritize alerts and escalate critical threats promptly.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Work closely with international IT teams and third-party vendors to understand adversary intent and activity.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Stay informed about the latest cybersecurity trends, vulnerabilities, and attack methodologies.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Contribute to the design and enhancement of the organization's Threat Intelligence Program.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Participates in the assessment, analysis, and design of improvements for the Threat Intelligence Program.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Perform as-hoc intelligence gathering using OSINT tools and techniques</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Able to apply creative and critical thinking when approaching issues.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Experience of working and integrating CTI sources on Microsoft Sentinel</span></li></ul><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Required Qualifications:</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">4-5 years of experience in Cybersecurity</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Bachelor's degree in Computer Science or equivalent, with a certification such as GCTI (GIAC Cyber Threat Intelligence).</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Extensive experience with threat intelligence platforms and playbook development.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Proficiency in tools like MITRE ATT&amp;CK, Diamond Model, and Cyber Kill Chain frameworks.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong analytical skills and expertise in OSINT techniques.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Advanced knowledge of cybersecurity incidents, attack vectors, and threat actor behaviour.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Familiarity with Python, APIs, Docker containers, and automation tools.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Proven ability to work independently and handle complex situations.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Excellent verbal and written communication skills to deliver briefings to diverse audiences.</span></li></ul><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Additional Information:</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Willing to work from ODC as and when required in rotational shift.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Weekend availability/flexibility to work weekends is a MUST.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Willing to support US shift (Night shift)</span></li></ul><p> </p><p> </p><p><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"><b>EY | Building a better working world </b></span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.  </span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.  </span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.  </span></span></p>