Cyber Threat Intelligence
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
Responsibilities
- Monitor Threat Feeds and sources for new threats, indicators of compromise (IOC's) and emerging attack techniques.
- Analyze Trends and anomalies in security data, identifying unusual patterns that could signal a threat.
- Gather Threat intelligence from open-source, dark web, and proprietary intelligence sources to understand new vulnerabilities.
- Collect, document and organize IOCs from internal systems, threat reports, and external feeds to provide insights, key findings and trend analyses.
- Process Threat Data to normalize and enrich information to provide insight to possible threats against the Agency.
- Share actionable intelligence with incident response teams (soc) and other relevant departments.
- Coordinate with peers and information-sharing communities to distribute intelligence and enhance visibility across the organizations.
- Assess risk levels associated with different threats, prioritizing responses based on their potential impact to the Agency.
- Generate reports on the threat landscape, detailing trends, major threats, and recommendations for mitigation or prevention to management.
- Assist with ongoing incident response efforts by providing insights on threat actors, tactics, techniques, and procedures (TTPs)
- Collaborate with the soc to identify threat vectors and suggest possible containment strategies.
- Engage with vulnerability management team (VSMT) to correlate intelligence with vulnerabilities in the environment.
- Required Qualifications:
- 3+ years experience in Cyber Threat Intelligence or similar role
- Proficiency searching in Splunk
- Experience with Defender
- Experience using OSINT platforms and tools
- Strong understanding of TTPs, MITRE ATT&CK framework, and IOCs
- Excellent written and verbal communication skills.
- Must be able to pass a Public Trust clearance suitability determination.
- Must be a U.S. citizen.
Requirements
- Bachelors Degree
- EC Council's Certified Threat Intelligence Analyst cert or SANS GIAC Cyber Threat Intelligence
- Experience creating dashboards and alerts/reports in Splunk.
- Experience as an Incident Response Analyst in addition to CTI analyst.
- Experience providing real time intelligence to support Penetration Testing.
Benefits
Additional Information
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively - anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a highly motivated team member to join our team as a Cyber Threat Analyst to support EPA. This position will involve the collection, analysis, and dissemination of information about potential or current threats to an organization's information systems and networks as well as vulnerability management. This is a 100% remote position.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at skyepointdecisionsinc? Share your experience