Threat Intelligence Analyst

Threat Intelligence Analyst
Company:

Mygwork


Details of the offer

This job is with Microsoft, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community.
Please do not contact the recruiter directly.
Overview Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity.
Microsoft Security aspires to make the world a safer place for all.
We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions.
The Microsoft Security organization accelerates Microsoft's mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers' heterogeneous environments, as well as ensuring the security of our own internal estate.
Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day.
In doing so, we create life-changing innovations that impact billions of lives around the world.
The Microsoft Threat Intelligence Center (MSTIC) is recruiting experienced nation-state threat hunters – with highly honed threat intelligence analysis skills.
MSTIC provides unique insight on threats to protect Microsoft and our customers and is responsible for delivering timely threat intelligence across our product and services teams.
Qualifications Experience producing actionable threat intelligence on targeted and advanced persistent threats enabling network and host defences in external organizations with demonstrable impact Expertise tracking APT adversaries leveraging the Diamond Model to identify and characterize various TTPs, capabilities, infrastructure, and operational campaigns Experience performing actor tracking/investigation/threat intelligence/SOC work A good understanding of how the internet works, that is, relevant network protocols (HTTP, TLS, TCP/IP, UDP, DNS, etc), OAuth.
Familiarity in at least one of the following: (1) cloud intrusion analysis in adversary operations; (2) Analysing sophisticated malware samples used in targeted attacks against large corporate or government entities; (3) Analysing host forensic and log data associated with advanced targeted adversaries Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defences?? Ability to meet Microsoft, customer and/or government security screening requirements are required for this role.
These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check:- This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter.
#MSFTSecurity #MSecR Microsoft is an equal opportunity employer.
All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances.
We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request via the Accommodation request form .
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
Responsibilities Perform daily actor tracking, either for nation state actors, or e-crime Define, develop, and implement techniques to discover and track current adversaries and identify the attacks of tomorrow Write Azure Data Explorer (KQL) queries to search in telemetry.
Write Storm queries (for the Vertex Synapse tool) to search telemetry Threat intelligence content production - Writing up findings in a clear, unambiguous manner such that your peers can easily understand your investigation, and why and how you came to any conclusions.
Work with engineers/developers/data scientists to develop more complex systems that solve analyst's needs.
#LI-DNI


Source: Talent_Dynamic-Ppc

Requirements

Threat Intelligence Analyst
Company:

Mygwork


Ibm Cloud Technical Subject Matter Expert

Introduction At IBM, Technical Solution Architects work to understand needs and then create complex high-quality solutions that make meaningful impact. You'l...


From Ibm - County Dublin

Published a month ago

Bcc Major Incident Manager (Vp) Dublin

The Business Command Center Major Incident Manager accomplishes results through the management of professional team(s) and department(s). Integrates subject ...


From Citigroup Inc. - County Dublin

Published a month ago

Aircraft Leasing Vp Technical - Freighter Conversions

Job Overview: Join a leading player in commercial aircraft leasing, financing, and management. As VP Technical – Freighter Conversions, you will act as the t...


From Gkr Search And Selection - County Dublin

Published a month ago

Cabling Technician - Data Center , Late Binding

Job ID: 2736803 | Amazon Data Services Ireland Limited AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infra...


From Amazon - County Dublin

Published a month ago

Built at: 2024-09-23T05:17:22.116Z