Threat Intelligence Analyst (US Remote Available)

at  Splunk

Remote, Oregon, USA -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate20 Nov, 2024USD 146960 Annual22 Aug, 20243 year(s) or aboveIndicators,Open Source,Splunk,Analytical Techniques,Gap Analysis,Windows,Campaigns,Macos,Presentations,Critical Thinking,LinuxNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

Splunk is here to build a safer and more resilient digital world. The world’s leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. While customers love our technology, it’s our people that make Splunk stand out as an amazing career destination and why we’ve won so many awards as a best place to work. If you become a Splunker, we want your whole, authentic self, what we call your “million data points”. So bring your work experience, problem-solving skills and talent, of course, but also bring your joy, your passion and all the things that make you, you.

MUST-HAVE QUALIFICATIONS

  • 5 years or more of professional Information Security or Intelligence experience; or 3 years as a full-time cyber threat intelligence analyst
  • Experience with open source and threat intelligence specific vendor tooling
  • Knowledge of threat actor profiles and campaigns
  • Demonstrable understanding of structured analytical techniques including, but not limited to Quality of Information Check, Analysis of Competing Hypotheses, Key Assumptions Check, Signposts and Indicators, and Gap Analysis
  • Detailed understanding of the MITRE ATT&CK Framework, the Diamond Model of Intrusion Analysis and/or the Cyber Kill Chain
  • Solid grasp of Cloud technologies with a robust understanding of Windows, Linux and MacOS
  • Strong critical thinking and the ability to recognize and avoid biases in analysis are vital for this role as you will need to advise decision-makers on the best course of action based on often incomplete and subjective information. Ability to produce clear, concise, and timely reporting with a proven attention to detail

NICE-TO-HAVE QUALIFICATIONS

We’ve taken special care to separate the must-have qualifications from the nice-to-haves. “Nice-to-have” means just that: Nice. To. Have. So, don’t worry if you can’t check off every box. We’re not hiring a list of bullet points–we’re interested in the whole you.

  • Experience performing searching and reporting with Splunk
  • Experience with Purple Teaming
  • Ability to reduce large datasets into meaningful information
  • Loves sharing information via presentations and prose for a variety of technical and non-technical audiences

Responsibilities:

ROLE SUMMARY

This role will support the threat intelligence mission, which includes understanding the sophisticated threats that Splunk may be exposed to and contributing to the collection, analysis, and dissemination of intelligence to support internal customers. The nature of the work may occasionally include after hours support during major incidents. You are self-motivated and passionate about tracking threat actors, including a desire to automate and improve ingestion of threat data. We are a hard-working team who has fun, enjoys a good laugh but above all else thinks security first.

WHAT YOU’LL GET TO DO

  • Contribute to tactical through strategic level threat intelligence products, both cadenced and ad-hoc, for Splunk including evaluating and updating indicators, TTPs, behavioral patterns, and threat actor profiles
  • Craft responses to RFIs from internal customers that provides decision advantage
  • Assist efforts to integrate threat data into SIEM solution
  • Support the development of threat landscape reporting


REQUIREMENT SUMMARY

Min:3.0Max:5.0 year(s)

Information Technology/IT

IT Software - Other

Other

Graduate

Proficient

1

Remote, USA