Bachelor's Degree with concentration in information security, networking or development / computer science
Two (2) Years of Relevant Experience with Information Technology (networking, development, or systems), Cybersecurity, or Threat Intelligence
Four (4) years related experience may be considered in lieu of a degree
Relevant IT/Security related Certifications or Training (CompTIA, SANS, etc) (Preferred)
Understanding of the MITRE ATT&CK framework and threat modeling methodologies (Preferred)
Experience working with a threat intelligence platform (TIP), such as Anomali, ThreatConnect, or ThreatQuotient (Preferred)
Strong writing and briefing skills for both technical and executive audiences (Preferred)
Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means
Skills / Knowledge - Having wide-ranging experience, uses professional concepts and company objectives to resolve complex issues in creative and effective ways
Job Complexity - Works on complex issues where analysis of situations or data requires an in-depth evaluation
Responsibilities
Identify emerging cyber threats, vulnerabilities, and attack trends based on information from various sources, including open source research, dark web forums, and threat intelligence feeds
Help the Threat Operations team gain insight into attacker behavior from analyzing malware samples, phishing emails, and other threat artifacts to better understand threat actor TTPs
Synthesize threat information from multiple sources, disciplines, agencies, and data aggregators to help define the threat landscape
Conduct proactive research to anticipate and mitigate potential cyber threats and vulnerabilities that target Global Payments, its customers, and the financial industry vertical
Interpret and recommend action associated with imminent or hostile intentions or activities which may impact Global Payments objectives, resources, or capabilities
Utilize information and assessments for the purposes of informing leadership and customers, developing and refining objectives, supporting operation planning and execution, and assessing the effects of operations on Global Payments' interests
Participate in the process of coordination, validation, and management of all-source threat intelligence collection requirements, plans, and/or activities, and assist with the identification of intelligence collection shortfalls
Produce actionable intelligence to the security teams by following the Threat intelligence lifecycle framework
Collaborate with other blue team elements to provide additional insights and intelligence-driven assessments
Develop and maintain threat profiles for key adversaries, including their tactics, techniques, and procedures (TTPs), motivations, and capabilities
Develop and deliver threat briefings to both technical and non-technical audiences