Support the Cyber Threat Use Case Manager, Cyber Defence Analysts, and Threat Intel Analysts in designing and implementing threat use cases
Develop and gather requirements for threat use cases to detect adversary behaviours
Maintain the threat use case library to ensure use cases are properly enriched, mapped to Mitre Attck, and operating correctly
Work closely with Threat Intelligence, Cyber Defense Center, and business stakeholders to identify potential threat scenarios and translate them into threat use cases
Work closely with other service lines to continuously enhance threat use cases as new products, logs, and capabilities are introduced to the organization
Identify and improve orchestration, data enrichment and triage capabilities through SOAR platform
Support the delivery and contribute to maturing the Security Monitoring and Analytics automation strategy.
Develop fast, scalable and secure web based tools with modern web development techniques.
Build frontend for great user experience.
Ensure proper documentation is created and maintained for playbooks, integrations, and interfaces
Our Ideal Candidate
Minimum 5-8 year experience in full stack web development with a preference in Python language.
Proficiency in Python Frameworks like Flask or Django.
Strong UI Development Skills with CSS, HTML5, Javascript and UI Frameworks like ReactJS/AngularJS.
Proficiency in working with one or more of the following components like RabbitMQ, Redis, Elastic Search / Splunk, PostgreSQL/MySQL, Nginx, Kong API Gateway.
Experience with developing in Cloud Native Environments like Kubernetes / Openshift.
Experience with OAuth2, OpenID and related authentication technologies used in securing web applications.
Excellent communication skills - oral, written and presentation; technical reporting writing across various types of target audiences.
Understanding of Cloud Services (AWS / Google / Azure).
Understanding of Machine Learning Concepts.
Good understanding of security technologies that support security operations (e.g., SIEM, Threat Intelligence Platform, Malware Analysis, Endpoint Detection and Response Solutions)
Must be motivated, independent and self-sufficient. Able to receive an assigned task and see it through to completion with minimal supervision.
Excellent communication skills - oral, written and presentation; technical reporting writing across various types of target audiences.
Good understanding of security threats across multiple platforms/environments (e.g., Windows/nix/Cloud/Mainframe)
Job Classification
Industry: Education, Teaching, TrainingFunctional Area: IT Software - Application Programming, Maintenance, Role Category: Programming & DesignRole: Programming & DesignEmployement Type: Full time
Education
Under Graduation: Any Graduate in Any SpecializationPost Graduation: Post Graduation Not RequiredDoctorate: Any Doctorate in Any Specialization, Doctorate Not Required