Key Deliverables
• Conduct proactive threat hunting using SIEM, EDR, and network data.
• Automate threat intel collection and analysis with scripting tools like Python.
• Deliver actionable threat intelligence reports and brief stakeholders.
• Collaborate in incident response efforts by providing threat insights.
Role Responsibilities
• Monitor and analyze cyber threat feeds to identify organizational risks.
• Develop and refine TTPs for advanced threat detection.
• Stay updated on attacker techniques, malware trends, and vulnerabilities.
• Support development of detection and response playbooks and processes.
Skills Required
Ansible, Unix Administration, Shell Scripting, VMware