- Monitor the external web and identify zero day threats and new and evolving threats
- Analyse the threats and develop flash, advisory and operations reporting templates, etc.
- Coordinate with CSOC analysts on open source activities impacting State, Local, Tribal and Territorial (SLTT) governments
- Track threat actors and associated Tactics, Techniques, and Procedures (TTPs)
- Capture intelligence on threat actor TTPs and develop countermeasures in response to threat actors
- Produce threat intelligence providing situation awareness of cyber threats impacting Company's global network infrastructure
- Collaborate with technical analysts to provide indications and warnings and conduct a predictive analysis of potentially malicious activity
- Proactively research emerging cyber threats. Apply analytical understanding of hacker methodologies and tactics, system vulnerabilities and key indicators of attacks and exploits
- Performing open source research and performing link, trend, and temporal analysis
- work proactively to seek out weaknesses and stealthy attackers, focus more on doing deep dives into datasets to understand what's happening during and after attacks.
Qualifications & Experience:
- BSc is a must, MSC is preferable.
- Minimum 3 - 7 years experience working within the information security field
- Good working knowledge of:
- TCP/IP stack
- Knowledge of Networking protocols and technologies, e.g. TCP/IP, Firewalls, Routers, etc.
- Knowledge of Security principles, techniques and technologies
- Understanding the technical aspects of the Information Security
- Server platforms (UNIX, Windows etc.), Networking, security (Firewalls, IDS/IPS, proxy systems etc.)
- Direct prior experience with Qradar is Preferred.
- Prior experience as a SOC Analyst ideally working within a Computer Incident and Response Team (CIRT)
- Certification Preferred: (CISSP, GIAC – GREM/GCIH/GCTI/GCFA) are a strong asset
- Proficiency in scripting languages (Python, shell, etc.)
- Knowledge of applications, databases, middleware to address security threats against the same.
- Proficient in preparation of reports, dashboards and documentation.
Skills:
- Good communication skills (English, Arabic)
- Excellent communication and leadership skills.
- Ability to handle high pressure situations with key stakeholders.
- Good Analytical skills, Problem solving and Interpersonal skills.
- Working knowledge and experience with MS office.