Cyber Analyst – Threat Intelligence Maidenhead, England
Job description
We Offer
You will be exposed to a wide and challenging range of business issues through regular engagement with key stakeholders across all management levels within Maersk.
You will work and communicate across geographical and cultural borders that will enable you to build a strong professional network. We believe people thrive when they are in charge of their career paths and professional growth. We will provide you with opportunities to broaden your knowledge and strengthen your technical and professional foundation.
Key Responsibilities
- Accountable for the effective collection, analysis, and dissemination of intelligence reports.
- Determine, prioritise and monitor a set of internal and external sources for threat data.
- Prioritise, validate and correlate threat data to obtain actionable information on existing and emerging threats to Maersk.
- Responsible for the configuration and use of the chosen threat intelligence platforms.
- Produce and disseminate strategic, operational, and tactical threat intelligence reports periodically and urgently to relevant stakeholders in the enterprise.
- Regularly review and update Priority Intelligence Requirements (PIRs) according to changes in the business and/or threat landscape.
- Apply and maintain an in-depth knowledge of principal cyber security threat actors through open-source and social media monitoring, and attendance at seminars and industry events where possible.
- Provide finished intelligence summaries with analytical insights on daily or weekly cadence, with minimal supervision.
- Identify areas and gaps for process improvements.
- Collaborate and coordinate with teams across the GCDC to provide threat intelligence that furthers organisational understanding of potential adversaries and attack vectors, providing a foundation for building logging and monitoring strategies with CTI at the core.
- Identify, prioritise, and communicate threats related to newly identified vulnerabilities that pose a threat to Maersk.
- Define and enhance threat intelligence capabilities by developing processes where automation has the potential to improve efficiency.
- Supporting security incident management and delivering briefings to senior management.
- Ensure threat intelligence is actively used to drive improvements and remediation plans by participating in operational and change projects.
- Scope and respond to Requests for Information (RFIs) from Maersk stakeholders.
- Extensive and demonstrable experience in collection, analysis, production, and dissemination of intelligence.
- Strong technical understanding of networking, internet protocols and information security.
- Experience using the Cyber Kill Chain, Mitre ATT&CK Framework and Diamond Model.
- Advanced knowledge of the cyber threat landscape and conversant in the tactics, techniques and procedures used by cyber adversaries.
- Experienced in supporting security breaches, security incident management and delivering briefings to senior management.
- Knowledge of standard methods / systems for analysis and prioritisation of vulnerabilities e.g. CVE, CVSS.
- Knowledge and understanding of key political, operational and security risk issues in the maritime, transport and logistics sector is preferable.
- Advanced expertise in analysing the intersection of political and geopolitical developments with cyber security threat vectors and policymaking.
- Knowledge of threats to Cloud-based systems, and incident response in a Cloud environment.
Professional skills:
- Excellent written and verbal communication skills and able to be understood by both technical and non-technical personnel.
- A motivated and self-starting individual with ability to self-task.
- Ability to copy-edit and peer review intelligence products is essential.
- Strong interpersonal skills including, teamwork/collaboration and relationship building.
- Excellent time-management and workload prioritisation skills.
- Positive, can-do attitude, engaging, ability to accommodate agile methodologies and ability to work well under pressure.
- Can accommodate requirements that may from time-to-time, fall beyond CTI, into other Cyber Security disciplines.
For more information, Apply Now! We’re excited to see what you’ll bring to the team!