Cyber Threat Intelligence Analyst
Gurgaon
dunnhumby
Global leader in Customer data science, retail media and analytics, experts in working with brands, grocery retail, retail pharmacy, and retailer financial services.dunnhumby is the global leader in Customer Data Science, empowering businesses everywhere to compete and thrive in the modern data-driven economy. We always put the Customer First.
Our mission: to enable businesses to grow and reimagine themselves by becoming advocates and champions for their Customers. With deep heritage and expertise in retail – one of the world’s most competitive markets, with a deluge of multi-dimensional data – dunnhumby today enables businesses all over the world, across industries, to be Customer First.
dunnhumby employs nearly 2,500 experts in offices throughout Europe, Asia, Africa, and the Americas working for transformative, iconic brands such as Tesco, Coca-Cola, Meijer, Procter & Gamble and Metro.
Key accountabilities
- Perform deep dive analysis of malicious artefacts / IOC’s using recognized TI programmes, and the MITRE ATT&CK TI Framework.
- Analyze large and unstructured data sets to identify trends and anomalies indicative of malicious activities.
- Create security techniques and automation for internal use that enable the dunnhumby Global Information Security Team to operate at high speed, and broad scale.
- Provide situational awareness on the current threat landscape and the techniques, tactics and procedures associated with specific threats.
- Collaborate with the Group (Tesco Retail / Tesco Bank / One Stop etc.) Threat Intelligence Teams to align to Best Practice, remain abreast of any linked TI trends, intelligence etc.
- Assist the dunnhumby Global Physical Security Team with related cyber / people safety / geopolitical intelligence monitoring / live incidents, evaluation and global dissemination; when required.
- Deep dive and analyze key business performance metrics, identify gaps, create plans to mitigate and drive to closure.
- Own regular business reviews with dunnhumby Leadership to audit ongoing performance against key metrics and Programme goals.
- Cross functional coordination and alignment.
- Monitor and respond to stakeholder feedback, escalate and drive clarity on the TI Programme objectives.
What we expect from you
- Experience of cyber threat intelligence working within a global organization
- You will have 5 years of experience in Information Security, including at least two years in Cyber Threat Intelligence
- You will have working user level knowledge of a Security Information and Event Management (SIEM), a Log Management System, an Incident Response Platform (IRP), and a Threat Intelligence Platform (TIP)
- Competent at Performing ‘deep dive’ analysis of malicious artefacts using recognized programmes such as MISP, NCSC Early Warning, Digital Shadows, Cyberint, OSINT Framework, MITRE ATT&CK etc.
- You must have experience in forensic analysis
- You have working-use knowledge of intrusion protection systems, WebGateways, email security appliances, log management, and threat intelligence platform
- You will have the ability to identify IOCs, evaluate existing defences against identified attacks to determine weaknesses, correlate intelligence to identify campaigns, profile actors, and track such activities
- Strong analytical skills – Competently able to use all Microsoft Office applications (Word, Excel and PowerPoint)
- Able to read, digest and disseminate Cyber Security / Business Continuity / Physical Security incident related information in a professional and timely manner
- Able to produce concise ‘plain English’ reports, summaries and Action Plans for the dunnhumby CISO, Global Head of Physical Security and InfoSec Leadership Teams
What you can expect from us
We won’t just meet your expectations. We’ll defy them. So you’ll enjoy the comprehensive rewards package you’d expect from a leading technology company. But also, a degree of personal flexibility you might not expect. Plus, thoughtful perks, like flexible working hours and your birthday off.
You’ll also benefit from an investment in cutting-edge technology that reflects our global ambition. But with a nimble, small-business feel that gives you the freedom to play, experiment and learn.
And we don’t just talk about diversity and inclusion. We live it every day – with thriving networks including dh Gender Equality Network, dh Proud, dh Family, dh One and dh Thrive as the living proof. We want everyone to have the opportunity to shine and perform at your best throughout our recruitment process. Please let us know how we can make this process work best for you. For an informal and confidential chat please contact stephanie.winson@dunnhumby.com to discuss how we can meet your needs.
Our approach to Flexible Working
At dunnhumby, we value and respect difference and are committed to building an inclusive culture by creating an environment where you can balance a successful career with your commitments and interests outside of work.
We believe that you will do your best at work if you have a work / life balance. Some roles lend themselves to flexible options more than others, so if this is important to you please raise this with your recruiter, as we are open to discussing agile working opportunities during the hiring process.
For further information about how we collect and use your personal information please see our Privacy Notice which can be found (here)
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Automation CISO Incident response MISP MITRE ATT&CK Monitoring OSINT Privacy SIEM Threat intelligence
Perks/benefits: Flex hours Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.