LOG IN
SIGN UP
Canary Wharfian - Online Investment Banking & Finance Community.
Sign In
or continue with e-mail and password
Forgot password?
Don't have an account?
Create an account
or continue with e-mail and password
By signing up, you agree to our Terms & Conditions and Privacy Policy.

Threat Hunter - Senior

ExperiencedNo visa sponsorship
Ernst & Young logo

at Ernst & Young

Big Four

Posted 6 days ago

No clicks

**Senior Threat Hunter - Cybersecurity** EY seeks a senior-level Threat Hunter to bolster our cybersecurity team. Key responsibilities include monitoring tailored threat intelligence feeds using tools like ZeroFox and Digital Shadows, drafting analytic reports with meticulous detail, and integrating findings into Microsoft Sentinel. The role requires a proactive individual with at least three years of threat intelligence monitoring experience, expertise in Python, Azure, and Linux scripting, and proficiency in OSINT, IOC lookup and validation, and other cyber intelligence gathering techniques. Proficiency in reporting, data visualization, and effective communication in English is essential. This role involves evening shifts (EST) and being on-call for high-priority tasks, with an emphasis on strong collaboration with Managed Security Service Providers (MSSPs) and presenting to stakeholders.

Compensation
Not specified

Currency: Not specified

City
Not specified
Country
India

Full Job Description

At EY, were all in to shape your future with confidence. 

Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. 

Join EY and help to build a better working world. 

 

Job Description: Senior Cyber Threat Intelligence Analyst

Position Overview: We are seeking a highly skilled and experienced Senior Cyber Threat Intelligence Analyst to join our cybersecurity team. The ideal candidate will have a strong background in threat intelligence monitoring, report writing, and the use of various threat intelligence platforms. This role requires a proactive individual who can develop and sustain custom threat intelligence feeds, integrate them into SIEMs, and provide in-depth reporting tailored to client needs. The candidate must be comfortable working in the EST timezone (evening shift for overlap with onshore/client team ) and be on-call for high-priority urgent tasks.

 

Key Responsibilities:

  • Monitor and analyze threat intelligence using tools such as ZeroFox, Digital Shadows, or similar platforms.
  • Write comprehensive and technical cybersecurity reports with strong attention to detail.
  • Utilize OSINT, IOC lookup and validation, Domain Registrar lookups, VirusTotal, and Dark Web search for threat intelligence gathering.
  • Develop, sustain, and enrich custom threat intelligence feeds using platforms like MISP, with scripting in Python, Azure, and Linux.
  • Manage threat intelligence feeds using platforms such as Anomali, ThreatQ, Cyble, Cyware, OpenCTI, and MISP.
  • Integrate threat intelligence feeds into common SIEMs, particularly Microsoft Sentinel.
  • Execute domain and social media account takedowns as necessary.
  • Create custom, in-depth reports specific to client requirements.
  • Apply knowledge of MITRE ATT&CK, D3F3ND frameworks, and the Cyber Kill Chain in threat analysis.
  • Utilize Excel and/or Power BI for data visualization and graph creation.
  • Experience with excel data cleansing, VLookups, Pivot Tables
  • Prepare and deliver PowerPoint presentations and reports to stakeholders.
  • Maintain strong verbal and written communication skills in English.
  • Work independently under pressure and prioritize tasks effectively.
  • Be available for on-call duties for high-priority urgent tasks.
  • Collaborate with Managed Security Service Providers (MSSPs) for backend and client-facing work.

 

Qualifications:

  • Minimum of 3 years of experience with threat intelligence monitoring tools.
  • At least 1 year of experience in threat intelligence report writing.
  • Proficiency with OSINT, IOC lookup and validation, Domain Registrar lookups, VirusTotal, and Dark Web search.
  • Experience with scripting in Python, Azure, and Linux.
  • Familiarity with one or more threat intelligence platforms for feed management.
  • Experience integrating threat intelligence feeds into SIEMs, especially Microsoft Sentinel.
  • Proven experience with domain and social media account takedowns.
  • Strong understanding of MITRE ATT&CK, D3F3ND frameworks, and the Cyber Kill Chain.
  • Excellent English writing skills.
  • Proficiency in Excel and/or Power BI for data visualization.
  • Strong experience with PowerPoint presentations and reporting.
  • Strong verbal English and presentation skills.
  • Cybersecurity certifications (e.g., COMPTIA, SANS GIAC, ISC, EC-Council) are a plus.
  • Certifications specific to cyber threat intelligence are an asset.
  • Ability to work in the EST timezone (evening shift for overlap with onshore/client team ).
  • Strong analytical skills and ability to prioritize tasks effectively.
  • Experience working with MSSPs for backend and client-facing work.

 

Preferred Skills:

  • Experience with additional threat intelligence platforms.
  • Advanced technical writing and reporting skills.
  • Strong analytical and problem-solving abilities.
  • Ability to work independently and as part of a team.

 

EY | Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

Threat Hunter - Senior

Compensation

Not specified

City: Not specified

Country: India

Ernst & Young logo
Big Four

6 days ago

No clicks

at Ernst & Young

ExperiencedNo visa sponsorship

**Senior Threat Hunter - Cybersecurity** EY seeks a senior-level Threat Hunter to bolster our cybersecurity team. Key responsibilities include monitoring tailored threat intelligence feeds using tools like ZeroFox and Digital Shadows, drafting analytic reports with meticulous detail, and integrating findings into Microsoft Sentinel. The role requires a proactive individual with at least three years of threat intelligence monitoring experience, expertise in Python, Azure, and Linux scripting, and proficiency in OSINT, IOC lookup and validation, and other cyber intelligence gathering techniques. Proficiency in reporting, data visualization, and effective communication in English is essential. This role involves evening shifts (EST) and being on-call for high-priority tasks, with an emphasis on strong collaboration with Managed Security Service Providers (MSSPs) and presenting to stakeholders.

Full Job Description

At EY, were all in to shape your future with confidence. 

Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. 

Join EY and help to build a better working world. 

 

Job Description: Senior Cyber Threat Intelligence Analyst

Position Overview: We are seeking a highly skilled and experienced Senior Cyber Threat Intelligence Analyst to join our cybersecurity team. The ideal candidate will have a strong background in threat intelligence monitoring, report writing, and the use of various threat intelligence platforms. This role requires a proactive individual who can develop and sustain custom threat intelligence feeds, integrate them into SIEMs, and provide in-depth reporting tailored to client needs. The candidate must be comfortable working in the EST timezone (evening shift for overlap with onshore/client team ) and be on-call for high-priority urgent tasks.

 

Key Responsibilities:

  • Monitor and analyze threat intelligence using tools such as ZeroFox, Digital Shadows, or similar platforms.
  • Write comprehensive and technical cybersecurity reports with strong attention to detail.
  • Utilize OSINT, IOC lookup and validation, Domain Registrar lookups, VirusTotal, and Dark Web search for threat intelligence gathering.
  • Develop, sustain, and enrich custom threat intelligence feeds using platforms like MISP, with scripting in Python, Azure, and Linux.
  • Manage threat intelligence feeds using platforms such as Anomali, ThreatQ, Cyble, Cyware, OpenCTI, and MISP.
  • Integrate threat intelligence feeds into common SIEMs, particularly Microsoft Sentinel.
  • Execute domain and social media account takedowns as necessary.
  • Create custom, in-depth reports specific to client requirements.
  • Apply knowledge of MITRE ATT&CK, D3F3ND frameworks, and the Cyber Kill Chain in threat analysis.
  • Utilize Excel and/or Power BI for data visualization and graph creation.
  • Experience with excel data cleansing, VLookups, Pivot Tables
  • Prepare and deliver PowerPoint presentations and reports to stakeholders.
  • Maintain strong verbal and written communication skills in English.
  • Work independently under pressure and prioritize tasks effectively.
  • Be available for on-call duties for high-priority urgent tasks.
  • Collaborate with Managed Security Service Providers (MSSPs) for backend and client-facing work.

 

Qualifications:

  • Minimum of 3 years of experience with threat intelligence monitoring tools.
  • At least 1 year of experience in threat intelligence report writing.
  • Proficiency with OSINT, IOC lookup and validation, Domain Registrar lookups, VirusTotal, and Dark Web search.
  • Experience with scripting in Python, Azure, and Linux.
  • Familiarity with one or more threat intelligence platforms for feed management.
  • Experience integrating threat intelligence feeds into SIEMs, especially Microsoft Sentinel.
  • Proven experience with domain and social media account takedowns.
  • Strong understanding of MITRE ATT&CK, D3F3ND frameworks, and the Cyber Kill Chain.
  • Excellent English writing skills.
  • Proficiency in Excel and/or Power BI for data visualization.
  • Strong experience with PowerPoint presentations and reporting.
  • Strong verbal English and presentation skills.
  • Cybersecurity certifications (e.g., COMPTIA, SANS GIAC, ISC, EC-Council) are a plus.
  • Certifications specific to cyber threat intelligence are an asset.
  • Ability to work in the EST timezone (evening shift for overlap with onshore/client team ).
  • Strong analytical skills and ability to prioritize tasks effectively.
  • Experience working with MSSPs for backend and client-facing work.

 

Preferred Skills:

  • Experience with additional threat intelligence platforms.
  • Advanced technical writing and reporting skills.
  • Strong analytical and problem-solving abilities.
  • Ability to work independently and as part of a team.

 

EY | Building a better working world

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.