Cyber Threat Intelligence Intern

14 hours ago


bangalore, India cloudDFN Full time

We’re hiring a Cyber Threat Intelligence (CTI) Research Intern If you love digging through the internet’s dark corners, playing with OSINT tools, and writing Python scripts to make sense of chaos, you’ll enjoy this.You’ll help us track, analyze, and report on emerging cyber threats — with a strong focus on dark web and open-source intelligence (OSINT). Expect to work with real stealer logs, data leaks, threat actors, and contribute directly to our Threat Intel strategy.What you’ll work on Dark Web & Deep Web ResearchMonitor forums, marketplaces, Telegram channels, paste sites, and other underground sources for leaked credentials, PII, configs, and access offers.Identify and track threat actors, their aliases, activity patterns, and infrastructure.OSINT-led Threat HuntingUse tools like Maltego, SpiderFoot, Shodan, Censys, whois, etc.Correlate data from dark web, social media, public feeds, and news into meaningful intelligence.Python Scripting & AutomationBuild/maintain Python scripts to automate data collection from open sources and dark web mirrors/APIs.Clean, normalize, and enrich data (parse stealer logs, extract IOCs, tag entities).Research & Knowledge SharingTrack new ransomware groups, exploit kits, and data leak forums.Document processes, tools, and findings so the wider team can reuse them.What we’re looking for Strong interest in cybersecurity, threat intelligence, and attacker behavior.Understanding of OSINT, dark web vs deep web, Tor, and underground ecosystems.Hands-on Python: APIs, scraping, parsing (regex), handling JSON/CSV.Familiar with basics: IP, DNS, ports, HTTP/S, common attack types (phishing, credential stuffing, ransomware, breaches).Able to read & interpret breach data (usernames, passwords, hashes, stealer logs) with strong ethics and confidentiality.Good written communication — turning raw findings into clear summaries.You don’t need to know everything on day one, but you must be curious, willing to experiment with tools/scripts, and serious about handling sensitive data responsibly.What you’ll get Real-world exposure to dark web intelligence, stealer logs, and breach data workflows.Experience building repeatable threat intel processes and automations.Mentorship from security engineers/analysts and a chance to shape how our Threat Intel function evolves.Paid internship with potential PPO.



  • bangalore, India cloudDFN Full time

    We’re hiring a Cyber Threat Intelligence (CTI) Research Intern If you love digging through the internet’s dark corners, playing with OSINT tools, and writing Python scripts to make sense of chaos, you’ll enjoy this. You’ll help us track, analyze, and report on emerging cyber threats — with a strong focus on dark web and open-source intelligence...


  • bangalore, India CloudSEK Full time

    WHO ARE WE?We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal We believe that work and the workplace should be joyful and always buzzing with energyCloudSEK, one of India's most trusted Cyber security product companies, is on a mission to build the world's fastest and most reliable AI technology that...


  • bangalore, India StoneX Group Full time

    OverviewAs a Threat Intelligence Analyst, you will be responsible for supporting the threat intelligence function at StoneX. You will work closely with the Exposure Management Manager and Threat Intelligence Lead Analyst to provide timely situational awareness, translate cyber threats into actionable information to ensure resources are focused on the right...


  • bangalore, India NTT DATA, Inc. Full time

    Role : Threat Intelligence Analyst - L2 Location: Mumbai– Client Site Work Mode: Work from Office Payroll: NTT Data Budget: ₹15 LPA (Including 5% variable) Notice Period: Immediate to 30 days only Requirement Brief : · Minimum 5 years of experience in Threat intelligence. · Only candidates who are expert on Threat Intelligence platform. · CTIA/CEH/CSA...


  • Bangalore, India Mashreq Full time

    Description : Manage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight. Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications. Develop and maintain alert rules and logic within...


  • Bangalore, India FICO Full time

    About FICO: FICO (NYSE: FICO) is a leading analytics software company, helping businesses in 90+ countries make better decisions that drive higher levels of growth, profitability and customer satisfaction. The company’s groundbreaking use of Big Data and mathematical algorithms to predict consumer behavior has transformed entire industries. FICO provides...


  • bangalore, India FICO Full time

    About FICO:FICO (NYSE: FICO) is a leading analytics software company, helping businesses in 90+ countries make better decisions that drive higher levels of growth, profitability and customer satisfaction. The company’s groundbreaking use of Big Data and mathematical algorithms to predict consumer behavior has transformed entire industries.FICO provides...


  • bangalore, India Mashreq Full time

    Description :Manage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight. Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications. Develop and maintain alert rules and logic within...


  • bangalore district, India Mashreq Full time

    Description : Manage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight. Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications. Develop and maintain alert rules and logic within...


  • Bangalore Division, India Mashreq Full time

    Description : Manage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight. Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications. Develop and maintain alert rules and logic within...