Threat Intelligence Subcon required
Global digital solutions company
Apply  

Highlights:

5.00 - 8.00 Years
10.00 - 10.00 INR (Lacs)/Yearly
Full-time
Banglore

Roles & Responsibility

Key Responsibilities:

Role - Technology Architect / Lead Con

Technology – Threat Intelligence Specialist/ Forensic Expert

Location – India

Business Unit – CyberSec

 

 

Job Description

 

Today, the corporate landscape is dynamic, and the world ahead is full of possibilities! None of the amazing things we do at Infosys would be possible without an equally amazing culture, the environment where ideas can flourish and where you are empowered to move forward as far as your ideas will take you.

 

At Infosys, we assure that your career will never stand still, we will inspire you to build what’s next and we will navigate further together. Our journey of learnability, values and trusted relationships with our clients continue to be the cornerstones of our organization and these values are upheld only because of our people.

 

Your role

KEY ACCOUNTABILITIES 

  • Identify information security and Threat Intelligence requirements and oversight of delivery by: 

o   Identifying business unit Priority Intelligence Requirements that enable the business unit to conduct its business continuously in a secure manner. 

o   Analysis of information across Strategic, Operational and Tactical arenas into actionable intelligence that allows stakeholders to make informed decisions. 

o   Ensuring delivery of the Threat Intelligence programme within the business unit, delivery of services and products provided by Group Security. Where services are delivered by external providers, ensuring delivery of the Threat Intelligence services as per requirements of business unit. 

  • Engage with the business unit to: 

o   Develop an understanding of business goals in order to constructively engage senior business leaders on information security, identifying key threats and areas for improvement, driving appropriate risk management decisions and collaborating with partners to achieve positive outcomes and business benefits 

o   Ensure emerging information and cyber security threats to the business are identified, discussed with senior business leadership and addressed through presented opportunities of security innovation. 

o   Build strong relationships within the business to gain an understanding of security-related business threats, vulnerabilities and risks. 

o   Facilitate Group Security support to business projects as the subject matter expert providing guidance and support in implementing Threat Intelligence project requirements.  

  • Embedding information security and cyber across the business unit by: 

o   Establish positive relationships engaging with technical teams and executives to deliver regular Threat Intelligence reporting and mitigation advisory and seek continuous improvement of TVM process. 

o   Monitoring of threat actors and groups, and identifying key trends leveraging internal and external threat data to enable positive business outcomes, keeping senior business leadership informed about information security-related issues and activities potentially affecting the organization. 

o   Assist in running a threat intelligence platform that can store cyber threat intelligence idioms such as threat actors, exploit targets from disparate sources, devices, communities and industries in a structured & standardized way. 

  • Focus on awareness and training including by: 

o   Briefing regularly the business unit senior leadership team on cyber threats and risks profile. 

o   Delivering awareness and training to the relevant business unit team and high-risk users. 

o   Communicating the importance and promoting awareness of information security to the business. Increasing business awareness of emerging security threats and risks. Helping develop a security culture within the business. 

  • Partnering with the different functions working on controls by: 

o   Supporting Incident Response activities providing further context, OSINT support and behavioral analysis in the event of a security incident impacting the business unit.  

o   Maintaining a balanced relationship with risk functions, compliance functions and with internal and external audit functions. 

o   Ensure timely delivery of actionable threat intelligence across the organization, including key stakeholders; Security Operations, Incident Response, Vulnerability Management, Security Leadership, Fraud Prevention and Industry intelligence communities. 

  • Continuous Improvement through the delivery of: 

o   Provide mentoring and development of Threat Intelligence Analysts through sharing learnings and best practices. 

o   Act as the point of escalation and support for Threat Intelligence analysts in the event of complex security incidents. 

o   Develop proven structure and processes such as run books that help the team achieve outstanding results. 

o   Championing and supporting Group Security’s wider BCM, Incident and Crisis Management functions. 

 

KNOWLEDGE & EXPERIENCE 

ESSENTIAL SKILLS & ABILITIES: 

  • Degree or equivalent combination of education and (work) experience 
  • At least 5 years of work experience in integrating threat intelligence or Forensic Investigation officer with people, processes, technologies and service 
  • Skilled at identifying security risks and exposures as well as remedial controls and processes 
  • In-depth knowledge and understanding of cyber security risk concepts and principles as a means of relating business needs to security controls 
  • Demonstrated experience providing written and verbal presentations to senior executives 
  • Ownership mentality with analytical and problem solving skills 
  • Absolutely credible with high standards of personal integrity 
  • Excellent relationship management skills at all levels of the organization 
  • Significant experience of successfully engaging and briefing senior leadership on information security 
  • Proven ability to operate effectively with minimal supervision 
  • Building networks with key contacts in- and outside of Liberty Global 
  • Passionate on doing the right thing and contributing to an organization focused on continuously improving customer experience. 

 

 

PREFERRED EDUCATION/ QUALIFICATIONS: 

  • Threat Intelligence certifications ( e.g., CISSP, CRTIA or CCTIM) desirable 
  • Good understanding for security solutions, security architecture, DevSecOps and security in hybrid multi-cloud environment 
  • A thorough understanding of the MITRE ATT&CK Framework, Cyber Kill Chain and Diamond Model. 

 

Requirements

Qualifications and Requirements:

 

Number of Openings

1

 

ECMS ID in sourcing stage

 

 

Assignment Duration

 6 Months

 

Total Yrs. of Experience

5-8 Years

 

Relevant Yrs. of experience

3-5 Years

 

Detailed JD (Roles and Responsibilities)

Job Description
This position is for a Cyber Threat Intelligence Analyst within the Quartz business unit of Infosys, which supports the connectivity and entertainment platforms of Liberty Global, the parent company to multiple major telecommunications organisations across Europe.
As a Cyber Threat Intelligence Analyst within Quartz, your role will involve providing strategic, operational and tactical intelligence to support security operations, enabling various security functions to implement timely countermeasures. Additionally, you will be responsible for the configuration and operation of multiple new threat intelligence tools.
Key Responsibilities
• Stay updated on cyber threat trends, particularly those impacting the telecommunications and technology services sectors.
• Analyse intelligence from various sources such as government agencies, security vendors, commercial threat intelligence providers, etc.
• Create threat intelligence advisories on emerging threats for operational teams.
• Supporting the incident response process as the threat intelligence SME.
• Configuring collections rules within the threat intelligence platform to automate the collection of intelligence to satisfy intelligence requirements.
• Provide vulnerability intelligence on high-risk vulnerabilities to the Vulnerability Management team to facilitate their vulnerability prioritisation process.
• Monitor and respond to Digital Risk Protection (DRP) alerts. Key examples include:
o Exposed corporate credentials
o Data leakage
o Impersonating domains and phishing webpages
• Provide threat intelligence briefings to stakeholders.
• Optimise intelligence delivery to security systems.

About you
• Proficient in intelligence analysis, analytical models and threat intelligence frameworks such as the cyber kill chain and the diamond model.
• Skilled in OSINT gathering and OSINT investigations.
• Familiar with threat intelligence tools such as threat intelligence platforms.
• Experienced with navigation and collecting information from dark web sources.
• Proficient at extracting tactics, techniques and procedures from reporting and mapping them to the MITRE ATT&CK framework.
• Familiar with the threat dynamics in the telecommunications and technology sector.
• Ideally hold a Bachelor’s degree in IT, Computer Science or other related fields is preferred but is not a requirement.
• Certifications such as GCTI, CompTIA Security+, etc, are advantageous but not mandatory.

 

Mandatory skills

• Proficient in intelligence analysis, analytical models and threat intelligence frameworks such as the cyber kill chain and the diamond model.
• Skilled in OSINT gathering and OSINT investigations.
• Familiar with threat intelligence tools such as threat intelligence platforms.
• Experienced with navigation and collecting information from dark web sources.
• Proficient at extracting tactics, techniques and procedures from reporting and mapping them to the MITRE ATT&CK framework.
• Familiar with the threat dynamics in the telecommunications and technology sector.
• Ideally hold a Bachelor’s degree in IT, Computer Science or other related fields is preferred but is not a requirement.
• Certifications such as GCTI, CompTIA Security+, etc, are advantageous but not mandatory.

Desired/ Secondary skills

• Stay updated on cyber threat trends, particularly those impacting the telecommunications and technology services sectors.
• Analyse intelligence from various sources such as government agencies, security vendors, commercial threat intelligence providers, etc.
• Create threat intelligence advisories on emerging threats for operational teams.
• Supporting the incident response process as the threat intelligence SME.
• Configuring collections rules within the threat intelligence platform to automate the collection of intelligence to satisfy intelligence requirements.
• Provide vulnerability intelligence on high-risk vulnerabilities to the Vulnerability Management team to facilitate their vulnerability prioritisation process.
• Monitor and respond to Digital Risk Protection (DRP) alerts. Key examples include:
o Exposed corporate credentials
o Data leakage
o Impersonating domains and phishing webpages
• Provide threat intelligence briefings to stakeholders.
• Optimise intelligence delivery to security systems.

Domain

 Security

Max Vendor Rate in Per Day (Currency in relevance to work location)

 6500 INR per Day

Work Location given in ECMS ID

 Bangalore

WFO/WFH/Hybrid WFO

 WFO/Hybrid WFO

BG Check (Before OR After onboarding)

 BG After onboarding

Is there any working in shifts from standard Daylight (to avoid confusions post onboarding) YES/ NO

 No

Posted By: Logic Planet It Services