Cyber Threat Intelligence

5 days ago


Bengaluru, Karnataka, India SAMPOORNA CONSULTANTS PVT LTD Full time ₹ 12,00,000 - ₹ 36,00,000 per year
Job Description

Principal Responsibilities:

· One of the primary responsibilities are IOC sweeps/ blocks/ investigations of hits. Assist with automating this task. End goal is for IR to receive high fidelity true positive hits and for the person in this role to assess trends of IOC hits and feed intel to the threat hunt workstream to prioritize hunts on those threat actors. While working towards IOC sweep automation, escalates to hunters when hits determined to be true positive and remediation actions are required or if advanced analysis is required.
· Daily CISO report (CTI Input) – This report is sent out daily to our CISO and other Sr. Leadership/ workstreams regarding daily CTI news and its relevance to KPMG. The person in this role will be responsible for this daily.
· Assist U.S. CTI workstream SME with alerts/ investigations from CTI tools. Prefer experience with CTI tools such as ZeroFox (Brand abuse/ leaked credentials investigations), Flashpoint (Deep dark web investigations), Domain Tools (domain/ web investigations) and experience with a Threat Intelligence Platform (TIP) such as Threat Q.
· Assist with the assessment of Top 10 threat actors/ malware for the firm to prioritize on assessments/ hunts.
· Research and develop risk mitigating approaches and drive response and remediation
· Document processes and procedures in the form of playbooks and reference guides.
· Stay abreast of the latest information security controls, practices, techniques and capabilities in the marketplace.
· Lead internal skills development activities for information security personnel on the topic of cyber threat intelligence, by providing mentoring and by conducting knowledge sharing sessions
· Provide input to business cases and presentations to senior IT leadership of proposed security products and studies. Produce operating metrics and key performance indicators.
· Knowledge of all phases of incident response life cycle: analysis, containment, eradication, remediation, recovery
· Evaluate external threat intelligence sources related to zero-day attacks, exploit kits and malware to determine organizational risk.

Qualifications:
· Knowledge/ experience in automating tasks (creating logic apps, powershell/ python scripts to automate workflows/ tasks). This is highly desirable skillset.
· Experience in security monitoring, security operations, and incident response activities; preferably within a professional services firm or similar environment
·Strong knowledge of incident response and crisis management; Ability to identify both tactical and strategic solutions
· Knowledge/ background with snort rules (reading and/or writing them).
· Knowledge of Microsoft KQL (writing queries/ creating workbooks are highly desirable).
· Experience with IT process definition and / or improvement
· Ability to coordinate, work with and gain the trust of business stakeholders, technical resources, and third-party vendors
· Strong verbal/written communication, with ability to effectively interact with individuals at all levels of responsibility and authority. Must be able to prioritize, delegate to support an environment driven by customer service and teamwork. · Strong trouble-shooting and organizational skills and ability to work on multiple projects simultaneously. Ability to participate in resource planning processes based on defined organizational plans.
· Experience defining security monitoring rules, monitoring events, assessing risk, responding to incidents and providing security oversight related to the security features of IT tools supported by the IT operations teams
· Ability to coordinate, work with and gain the trust of business stakeholders, technical resources, and third-party vendors
· Strong verbal/written communication, with ability to effectively interact with individuals at all levels of responsibility and authority. Must be able to prioritize, delegate and foster the development of high-performance teams to lead/support an environment driven by customer service and team work. Strong trouble-shooting and organizational skills and ability to work on multiple projects simultaneously. Ability to participate in resource planning processes based on defined organizational plans.
· Experience developing/ utilizing SIEM queries for investigating IOCs within the network.
· Experience conducting analysis based on Deep Dark Web intelligence.



  • Bengaluru, Karnataka, India, Karnataka Capgemini Full time

    Job Summary:Capgemini is expanding its Cyber Threat Intelligence (CTI) capabilities in Bengaluru. As the CTI Team Lead, you will be responsible for building and managing a high-performing team, ensuring operational excellence, and aligning with the global CTI strategy. You will oversee recruitment, onboarding, daily operations, and reporting, while...


  • Bengaluru, Karnataka, India StoneX Group Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    OverviewAs a Threat Intelligence Analyst, you will be responsible for supporting the threat intelligence function at StoneX. You will work closely with the Exposure Management Manager and Threat Intelligence Lead Analyst to provide timely situational awareness, translate cyber threats into actionable information to ensure resources are focused on the right...


  • Bengaluru, Karnataka, India StoneX Group Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    Overview:As a Threat Intelligence Analyst, you will be responsible for supporting the threat intelligence function at StoneX. You will work closely with the Exposure Management Manager and Threat Intelligence Lead Analyst to provide timely situational awareness, translate cyber threats into actionable information to ensure resources are focused on the right...


  • Bengaluru, Karnataka, India Cyber Tech Associates Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Company DescriptionAt Cyber Tech Associates, we are Udupi's pioneering cyber security firm, offering comprehensive services in both education and IT security. Led by industry-leading cyber security experts and ethical hackers, our mission is to fortify digital landscapes against evolving threats. With a global presence, we deliver cutting-edge solutions...


  • Bengaluru, Karnataka, India ZeroFox Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    ZeroFox is a leading external cybersecurity company that provides enterprises with a comprehensive platform to protect against threats outside the perimeter. We combine artificial intelligence with human expertise to deliver advanced threat intelligence, digital risk protection, and adversary disruption.We are seeking a highly motivated and experienced...


  • Bengaluru, Karnataka, India ZeroFox Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    As a Senior Intelligence Analyst -Deep and Darkweb Desk, you will join ZeroFox's Intelligence Team: a group of analysts who dedicate themselves to protecting customers and their assets from digital and physical security threats. With our proprietary hybrid intelligence platforms and methodologies, you will utilize your collection, analysis, and scripting...


  • Bengaluru, Karnataka, India ZeroFox Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    As a Senior Intelligence Analyst -Deep and Darkweb Desk, you will join ZeroFox's Intelligence Team: a group of analysts who dedicate themselves to protecting customers and their assets from digital and physical security threats. With our proprietary hybrid intelligence platforms and methodologies, you will utilize your collection, analysis, and scripting...


  • Bengaluru, Karnataka, India, Karnataka Network Intelligence Full time

    Deploy the red team infrastructure as required and then dispose it afterwards. Develop custom implants to evade EDR and other tools. Design and execute realistic attack simulations to test the effectiveness of security controls and incident response processes. Conduct full spectrum of cyber kill chain, including reconnaissance, exploitation, lateral...


  • Bengaluru, Karnataka, India ZeroFox Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    As an Lead Intelligence Analyst -Deep and Darkweb Desk, you will join ZeroFox's Intelligence Team: a group of analysts who dedicate themselves to protecting customers and their assets from digital and physical security threats. With our proprietary hybrid intelligence platforms and methodologies, you will utilize your collection, analysis, and scripting...


  • Bengaluru, Karnataka, India ZeroFOX Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    As an Lead Intelligence Analyst -Deep and Darkweb Desk, you will join ZeroFox's Intelligence Team: a group of analysts who dedicate themselves to protecting customers and their assets from digital and physical security threats. With our proprietary hybrid intelligence platforms and methodologies, you will utilize your collection, analysis, and scripting...