Minimum qualifications:
- Bachelor's degree or equivalent practical experience.
- 5 years of experience in a customer-facing analytical role in cyber security (e.g., Network Forensics Analyst, Threat Intelligence Analyst).
- Experience engaging with, and presenting to, technical stakeholders and executive leaders.
- Experience with project management.
Preferred qualifications:
- Experience evaluating host and network forensic reports of electronic media, packet capture, log data analysis, malware triage and network devices in support of information security operations.
- Experience processing and analyzing tactical CTI within a fast-paced operational environment, supporting monitoring, detection, and response capabilities.
- Ability to correlate raw intelligence from sensors, incident response engagements, and other sources into reports and briefings.
- Ability to take complex, ambiguous topics, build strategy, and influence stakeholders.
- Excellent written/verbal communication to convey complex technical data and information to both technical and non-technical audiences while producing clear and concise threat intelligence reports.
About the job
Advanced Intelligence Access (AIA) is Mandiant’s premium cyber threat intelligence (CTI) subscription within the Google Threat Intelligence Group (GTIG), offering customers access to a wide range of Mandiant data, tooling, and expertise via a dedicated Mandiant intelligence "integrator". The AIA acts as an extension of the customer organization and is tailored to the needs of each customer, allowing for improved integration and outcomes.
The Commercial Advanced Intelligence Access (cAIA) team works within the broader Mandiant Intelligence business and has experience supporting Fortune 500 private sector clients on a wide range of CTI use cases.
AIA Integrators are highly skilled cyber threat analysts and consultants, backed by the entire organization's support, enablement, and capabilities. The AIA service offers various CTI analytical deliverables like alert-driven threat reports, threat data analysis, briefings, and support to SOC / Blue team functions.
Responsibilities
- Evaluate tools and best practices for tracking advanced threats, tools, techniques, and procedures (TTPs) of attacker’s motivations, and industry and attacker trends.
- Perform strategic, tactical, and operational research and analysis of adversarial cyber threats.
- Work with customers to determine their intelligence needs and requirements and prepare and deliver briefings and reports to the customers' executives, security team, and fellow analysts.
- Communicate complex technical findings effectively to both technical and non-technical audiences, verbally and in writing.
- Support tactical and operational intelligence practitioners regularly to comprehensively identify and action their evolving intelligence needs and request for information.
