Technical Cyber Threat Intelligence Analyst

19 hours ago


Pretoria, South Africa Kamo Placement Full time

Gauteng, Tshwane (Pretoria)
- Annually Cost To Company (Market related, Negotiable)

The main purpose of this position is to facilitate predictive and early reactive cyber defence through the analysis or creation of technical and tactical threat intelligence

**JOB DESCRIPTION**
- Collect, analyse and interpret cyber-threat data from multiple technical information sources for the development of actionable intelligence.
- Perform malicious software (malware) analysis on artefacts flowing from the incident response process in order to identify the behaviours and indicators of compromise.
- Liaise with internal and external technical stakeholders, providing intelligence regarding threat actor techniques, tactics and procedures in order to ensure correct and timely focused threat detection and mitigation.
- Work closely with technical owners and administrators to define and rationalise corrective actions based on assessment outcomes.
- Produce high-quality technical and tactical threat intelligence reports highlighting vulnerabilities covering the cyber-threat landscape.
- Proactively hunt for cyber-threats through the in-depth analysis of internal technical incident and system information.
- Identify, imbed and support cyber technical threat intelligence tools and technologies in the company

**JOB REQUIREMENTS**
- A Bachelor’s degree (NQF7) in Security/Information Technology or an equivalent qualification;
- Five to eight years’ relevant cybersecurity work experience, of which at least two years must be as a cyber threat intelligence expert;
- A security certification in one of the following: Certified Incident Handler, Certified Forensic Analyst, Network Forensics Analyst, Offensive Security (OSCP/OSCE) or any other relevant certifications (an ethical hacking certification would be an added advantage);
- Sound knowledge of cyber threat intelligence processes and tradecraft (e.g. the Cyber Kill Chain and Diamond Model of Intrusion Analysis);
- An understanding of networking (including the OSI Model, TCP/IP, DNS, HTTP, HTTPS, SMTP);
- Experience working in a Blue team;
- Knowledge of intelligence technologies, including Silo breaker,,, Anomaly, Maltego, VirusTotal Intelligence, MISP);
- Knowledge of threat intelligence conventions, including YARA, OpenIOC and STIX frameworks; and
- Knowledge of programming or scripting languages such as Python, Perl, Powershell and R. (Advantageous)

For more information please contact:

- Ntombizonke Memela



  • Pretoria, South Africa South African Reserve Bank Full time

    -The main purpose of this position is to facilitate predictive and early reactive cyber defence through the analysis or creation of technical and tactical threat intelligence. -Detailed Description - Collect, analyse and interpret cyber-threat data from multiple technical information sources for the development of actionable intelligence. -- Perform...


  • Pretoria, South Africa Professional Sourcing Full time

    A leading financial services group is seeking a Financial Sector Cyber Threat Analyst to support the sharing of cyber threat intelligence and conduct research analysis. Candidates should have a bachelor’s degree in Cybersecurity Risk Management and 5-8 years of relevant experience in the financial sector. The role offers a comprehensive benefits package...


  • Pretoria, South Africa Professional Sourcing Full time

    Introduction Financial Sector Cyber Threat Analyst Preference will be given to previously disadvantaged candidates. Location: Pretoria Gauteng. Position Overview There is an exciting vacancy available for a Financial Sector Cyber Threat Analyst at a leading financial services group within their Group Security Management Department. Duties & Responsibilities...


  • Pretoria, South Africa Kamo Placements Full time

    A recruitment agency is seeking an experienced cybersecurity threat analyst to facilitate the development and maintenance of financial sector cyber threat intelligence sharing mechanisms. The ideal candidate will have a Bachelor's degree, five to eight years of experience in threat analysis, and a strong background in the financial sector. Responsibilities...


  • Pretoria, South Africa Kamo Placements Full time

    JOB DESCRIPTION Facilitate the development and maintenance of joint financial sector cyber threat intelligence sharing mechanisms. Collate, analyse and process cyber threat information received from all sector stakeholders. Maintain an accurate national financial sector cyber threat landscape and associated cyber risk profile. Identify and liaise with key...


  • Pretoria, South Africa Kamo Placements Full time

    JOB DESCRIPTION Facilitate the development and maintenance of joint financial sector cyber threat intelligence sharing mechanisms. Collate, analyse and process cyber threat information received from all sector stakeholders. Maintain an accurate national financial sector cyber threat landscape and associated cyber risk profile. Identify and liaise with key...


  • Pretoria, South Africa Kamo Placements Full time

    JOB DESCRIPTIONFacilitate the development and maintenance of joint financial sector cyber threat intelligence sharing mechanisms.Collate, analyse and process cyber threat information received from all sector stakeholders.Maintain an accurate national financial sector cyber threat landscape and associated cyber risk profile.Identify and liaise with key...


  • Pretoria, South Africa South African Reserve Bank Full time

    **Brief description** The main purpose of this position is to facilitate and support sharing and integration of industry cyber threat intelligence, as well as to conduct research, analysis and reporting on cyber threats within the financial sector. **Detailed description** - Facilitate the development and maintenance of joint financial sector cyber threat...


  • Pretoria, South Africa Financial Intelligence Centre Full time

    Open-Source Intelligence Specialist Financial Intelligence Centre Job Purpose: To provide proactive and reactive strategic and operational intelligence reports to domestic and international stakeholders in order to combat money laundering and terrorist financing. Key Performance Areas Identify user specifications for the acquisition of technical equipment...


  • Pretoria, South Africa Financial Intelligence Centre Full time

    Open-Source Intelligence Specialist Financial Intelligence Centre Job Purpose: To provide proactive and reactive strategic and operational intelligence reports to domestic and international stakeholders in order to combat money laundering and terrorist financing. Key Performance Areas Identify user specifications for the acquisition of technical equipment...