Trellix logo
TrellixPosted 3 weeks ago

Senior Threat Intelligence Analyst

On-siteReston, Virginia, United States

Full TimeSenior LevelLargeTECH

Job Summary

Conduct all-source research and analysis using Trellix tools, open sources, and third-party data to identify intelligence gaps and map malicious cyber activity against global events. Develop tailored strategies for data collection, analysis, and reporting to deliver comprehensive threat intelligence responses to customer requests. Serve as a primary customer interface to integrate intelligence into the customer's operations-intelligence cycles, supporting planning, risk assessment, and 24x7x365 monitoring. Produce high-quality written and oral presentations for diverse teams, ranging from technical staff to senior executives. Maintain an up-to-the-minute understanding of the threat landscape, including APTs, attack vectors, and TTPs, while collaborating with Trellix employees, partners, and the Advanced Research Centre.

Required Qualifications

  • Self-motivation and a genuine passion for cybersecurity
  • A keen interest in tracking threat actors
  • Strong proficiency in structured analytical techniques, including Quality of Information Checks, ACH, Key Assumptions Checks, and Gap Analysis
  • Critical thinking skills to remain objective and avoid analytical biases
  • The ability to produce clear, complete, and concise reporting under tight deadlines with extreme attention to detail
  • Expertise including a deep understanding of cyber threats, attack vectors, detection capabilities, and countermeasures
  • Experience with open-source intelligence (OSINT) collection methods and tools
  • Background working within a Security Operations Center (SOC) to monitor, respond to, and remediate detected issues
  • A clear grasp of organizational Incident Management processes as they relate to threats and vulnerabilities
  • Technical knowledge of XDR/EDR, Endpoint Security tools (AV, whitelisting, etc.), and Threat Hunting
  • High-level comprehension of malware types, detection methods, and analysis techniques
  • Familiarity with industry frameworks such as MITRE ATT&CK and D3FEND, the Cyber Kill Chain, and the Diamond Model
  • Proven track record of identifying and mitigating cyber threats using various detection strategies
  • Solid understanding of technical vulnerabilities and their associated risks
  • Hands-on experience with SIEM tools and collaborating closely with SIEM Analysts on event correlation and analysis
  • 5+ years of intelligence gathering, analysis, and reporting experience
  • Active Top Secret SCI clearance
  • The 8140 IAT III and 8140 IASAE II certificates (or willingness to obtain them)

Desired Qualifications

  • A Bachelor's degree in information security, cyber discipline, political science or a related analytical field

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce