Cyber Defence Analyst Job Description Template
Our company is looking for a Cyber Defence Analyst to join our team.
Responsibilities:
- Monitor and analyse security events and identify trends, attacks, and potential threats;
- Correlate threat intelligence with active attacks and vulnerabilities within the enterprise;
- Research and stay current on the latest trends, best practices, and technology developments;
- Work within, and ultimately help shape, our response framework for globally scalable cyber defence;
- Provide technical guidance to client organisations to correctly gather relevant data, analyse and respond to cyber security incidents;
- Prioritizing and differentiating between potential intrusion attempts and false alarms;
- Apply broad security industry, technology, business and professional knowledge to contribute to policy-making and process design;
- Facilitate the integration of threat and data feeds for the purposes of incident response;
- Examples of incidents involve unauthorized access, suspicious services, malware identification, etc;
- Contributes to the development of policies, standards and guidelines;
- Monitoring and analysis of security relevant logs, alerts and events handling incidents submitted via tickets or phone;
- Responding to end user security incidents as referred by the Service Desk and other sources of information which may provide indicators of compromise;
- Execution of standard operating procedures in response to any security relevant logs, alerts and events.
Requirements:
- Ability to assess the output of of malware analysis and sandboxing techniques;
- A strongly developed interest in systems security;
- A background in client facing business-to-business work;
- Relevant areas of certification may include SANS / GIAC, OSCP or similar;
- Previous host-based investigative or analysis work is strongly beneficial;
- Ability to identify patterns and trends in events, and to extract useful indicators of compromise from that data;
- Strong knowledge of Windows System Internals, Defender, Active Directory’s role within the enterprise;
- Excellent written communication skills.