Senior Threat Intelligence Analyst, Malicious Infrastructure Discovery

Sorry, this job was removed at 02:33 p.m. (CST) on Friday, Sep 06, 2024
Be an Early Applicant
Hiring Remotely in London, Greater London, England
Remote
5-7 Years Experience
Information Technology • Software • Analytics • Cybersecurity
The Role

With 1,000 intelligence professionals, over $300M in sales, and serving over 1,800 clients worldwide, Recorded Future is the world’s most advanced, and largest, intelligence company!

This Role:

Recorded Future's Insikt Group is seeking a Senior Threat Intelligence Analyst for the Malicious Infrastructure Discovery (MID) sub-team within Advanced Reversing, Malware, Operations, and Reconnaissance (ARMOR). This is a small, distributed team of experienced analysts monitoring and writing detections for malicious infrastructure. The team contributes to the Recorded Future Platform with up-to-date detections and supports our Analyst on Demand service, partners with our state-sponsored and cyber crime teams for technical support, and contributes to strategic research initiatives.

What You’ll Do: 

  • Establish methods of identifying, signaturing, and validating malicious infrastructure used by a variety of threat actors for both commodity and custom malware;
  • Conduct in-depth research on novel threats, dissecting the tactics, techniques, and procedures (TTPs) employed by threat actors, and publish research findings to clients and/or Recorded Future's public blog;
  • Maintain up-to-date knowledge of developments within the malware landscape and track key developments by following publications, blogs, and mailing lists
  • Serve as a subject matter expert on malicious infrastructure hunting to customers and/or the public via media engagements;
  • Continuously improve and optimize threat intelligence processes, tools, and methodologies to enhance the team's ability to detect and respond to emerging threats, and proactively identify opportunities for automation and efficiency gains.
  • Mentor and guide analysts within the team, fostering a culture of knowledge sharing, skill development, and professional growth, ensuring the team's collective expertise is continually advancing.
  • Support the fulfilment of client priority intelligence requirements via Recorded Future’s Analyst on Demand service;

What You’ll Bring (Required):

  • A passion for threat hunting and threat intelligence.
  • Demonstrative understanding of malicious infrastructure detection to include C2s, botnets, etc. in the context of cyber security, pivoting, network defense, and business risk.
  • BA/BS or equivalent experience in Computer Science, Computer Engineering, Information Security, Security Studies, Intelligence, or a related field
  • 5+ years of experience in Information Security and/or Threat Intelligence
  • Demonstrable experience conducting technical threat analysis and research
  • Demonstrable experience with structured analytical techniques, the intelligence cycle, and intelligence writing techniques and methodologies
  • Fluency in common CTI research and data analysis platforms/tools such as the Elastic Stack (ElasticSearch, Kibana), Maltego, Shodan, Censys, DomainTools, or other similar tools/datasets
  • In-depth understanding of TCP/IP and other networking protocols and network traffic analysis techniques
  • Understanding of how malware authors operate, their past activities, TTPs, motivations, etc.
  • Experience working directly with clients
  • Excellent written and verbal communication; ability to convey complex technical and non-technical concepts in both written and verbal formats
  • Practical experience using common threat intelligence analysis models such as MITRE ATT&CK, the Diamond Model, and the Cyber Kill Chain
  • Excellent interpersonal and teamwork skills; ability to work with globally distributed team members

Highly Desirable Skills/Experience (not required):

  • MA/MS or equivalent experience in Computer Science, Computer Engineering, Information Security, or a related field
  • Scripting capabilities (Python preferred)
  • Experience writing network and endpoint signature detections using Suricata, Snort, YARA, SIGMA, etc.
  • Experience with Windows, iOS, Android, or MacOS malware analysis
  • Experience with business risk analysis / communicating business risks to executives

Why should you join Recorded Future?
Recorded Future employees (or “Futurists”), represent over 40 nationalities and embody our core values of having high standards, practicing inclusion, and acting ethically. Our dedication to empowering clients with intelligence to disrupt adversaries has earned us a 4.8-star user rating from Gartner and more than 45 of the Fortune 100 companies as clients.

Want more info? 
Blog & Podcast: Learn everything you want to know (and maybe some things you’d rather not know) about the world of cyber threat intelligence
Instagram & Twitter: What’s happening at Recorded Future
The Record: The Record is a cybersecurity news publication that explores the untold stories in this rapidly changing field
Timeline: History of Recorded Future
Recognition: Check out our awards and announcements

We are committed to maintaining an environment that attracts and retains talent from a diverse range of experiences, backgrounds and lifestyles.  By ensuring all feel included and respected for being unique and bringing their whole selves to work, Recorded Future is made a better place every day.
If you need any accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to our recruiting team at [email protected] 

Recorded Future is an equal opportunity and affirmative action employer and we encourage candidates from all backgrounds to apply. Recorded Future does not discriminate based on race, religion, color, national origin, gender including pregnancy, sexual orientation, gender identity, age, marital status, veteran status, disability or any other characteristic protected by law.
Recorded Future will not discharge, discipline or in any other manner discriminate against any employee or applicant for employment because such employee or applicant has inquired about, discussed, or disclosed the compensation of the employee or applicant or another employee or applicant.


Notice to Agency and Search Firm Representatives:
Recorded Future will not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to Recorded Future, including those sent to our employees or through our website, will become the property of Recorded Future. Recorded Future will not be liable for any fees related to unsolicited resumes.

Agencies must have a valid written agreement in place with Recorded Future's recruitment team and must receive written authorization before submitting resumes. Submissions made without such agreements and authorization will not be accepted and no fees will be paid.

 

The Company
HQ: Somerville, MA
923 Employees
Hybrid Workplace
Year Founded: 2009

What We Do

Recorded Future is the world’s largest provider of intelligence for enterprise security. By combining persistent and pervasive automated data collection and analytics with human analysis, Recorded Future delivers intelligence that is timely, accurate, and actionable. In a world of ever-increasing chaos and uncertainty, Recorded Future empowers organizations with the visibility they need to identify and detect threats faster; take proactive action to disrupt adversaries; and protect their people, systems, and assets, so business can be conducted with confidence. Recorded Future is trusted by more than 1,000 businesses and government organizations around the world.

Gallery

Gallery

Jobs at Similar Companies

bet365 Logo bet365

Junior Sports Analyst

Digital Media • Gaming • Software • eSports • Automation
Denver, CO, USA
6100 Employees
55K-80K Annually

Silverfort Logo Silverfort

Sales Operations Analyst

Information Technology • Sales • Security • Cybersecurity • Automation
Remote
United States
357 Employees

Jobba Trade Technologies, Inc. Logo Jobba Trade Technologies, Inc.

Customer Success Specialist

Cloud • Information Technology • Productivity • Professional Services • Software
Hybrid
Chicago, IL, USA
45 Employees

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
357 Employees
bet365 Thumbnail
Software • Gaming • eSports • Digital Media • Automation
Denver, Colorado
6100 Employees
Jobba Trade Technologies, Inc. Thumbnail
Software • Professional Services • Productivity • Information Technology • Cloud
Chicago, IL
45 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account