Full-Time

Threat Intelligence Analyst

Confirmed live in the last 24 hours

Trellix

Trellix

1,001-5,000 employees

Consumer Software
Cybersecurity
AI & Machine Learning

Expert

Reston, VA, USA + 1 more

More locations: Columbia, MD, USA

US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Required Skills
Political Science

You match the following Trellix's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • At least 10 years of intelligence gathering, analysis, and reporting experience.
  • Bachelor’s degree in information security, cyber discipline, political science or a related analytical field.
  • DoD 8570.01 Information Assurance Technical (IAT) Level II, required (or a willingness to achieve IAT Level II within six months of hiring)
  • DOD Top Secret clearance with SCI eligibility.
Responsibilities
  • Serve as a cyber threat intelligence subject matter expert and trusted advisor.
  • Integrate with customers’ operations-intelligence cycles to inject cyber threat intelligence.
  • Develop information/intelligence requirements and associated priorities.
  • Identify intelligence gaps and opportunities to improve intelligence sharing and utility.
  • Create tailored strategies for research, data collection, analysis, and reporting focused on customers’ areas of interest.
  • Communicate with the OCONUS customer at irregular hours frequently.
  • Develop comprehensive responses to customer requests for information/intelligence (RFIs).
  • Perform all-source research and analysis using Trellix tools and data sets, third-party tools, and open sources.
  • Develop comprehensive written and oral reporting, including peer review and quality assurance.
  • Identify relationships between malicious cyber activity and world events such as geopolitical events, natural disasters, crises, etc.
  • Deliver oral and written threat intelligence reports and presentations to customer teams comprised of representatives of varying organizational levels up to senior executive level (general officers, flag officers, SES/SIS, and C-Suite).
  • Maintain current knowledge of the cyber threat landscape, including advanced persistent threats, including motivations, attack vectors, tools, and tactics, techniques, and procedures (TTPs) of attackers.
Desired Qualifications
  • Self-motivated and passionate about cybersecurity.
  • Keen interest in tracking threat actors.
  • Strong understanding of structured analytical techniques, including but not limited to Quality of Information Check, Analysis of Competing Hypotheses, Key Assumptions Check, and Gap Analysis.
  • Strong critical thinker with the ability to avoid biases.
  • Ability to produce clear, complete, and concise reporting in a timely manner with extreme attention to detail.
  • Expertise with cyber threats, attack vectors, detection capabilities, and associated countermeasures.
  • Experience with open-source intelligence collection and associated methods and tools.
  • Experience working with the Security Operations Center to monitor security alerts, respond and remediate detected issues.
  • Clear understanding of organizational Incident Management processes in relation to threats and vulnerabilities.
  • Knowledge and experience with XDR/EDR, Endpoint Security tools (AV, whitelisting, etc.) and Threat Hunting.
  • High-level understanding of malware types, malware detection methods, and malware analysis techniques.
  • Knowledge of MITRE ATTACK and DEFEND frameworks along with Kill Chain methodology and the Diamond Model.
  • Experience with identifying and mitigating cyber threats, including detection and countermeasures strategies and tools.
  • Understanding of technical vulnerabilities and associated risks.
  • Experience with SIEM tools and working with SIEM Analyst.
  • Experience with event correlation and analysis.
  • Willingness to travel internationally as frequently as every quarter per year.

Company Stage

Growth Equity (Venture Capital)

Total Funding

$423.1M

Headquarters

Plano, Texas

Founded

2021

Simplify Jobs

Simplify's Take

What believers are saying

  • Trellix's partnership with the US Navy highlights its credibility in government cybersecurity.
  • The DOD IL5 certification enhances Trellix's reputation for high-level security standards.
  • Expansion in the Asia-Pacific region, with a new MD, boosts Trellix's market presence.

What critics are saying

  • Recent security flaw in Enterprise Security Manager may affect customer trust.
  • Strategic shifts from new CPO could disrupt current product development focus.
  • Integration with Amazon GuardDuty may expose Trellix to third-party vulnerabilities.

What makes Trellix unique

  • Trellix offers a broad AI-powered cybersecurity platform, setting it apart from competitors.
  • The company integrates multiple security functions into a single solution, enhancing user experience.
  • Trellix's DLP capabilities address increasing regulatory pressures, differentiating it in data protection.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

401(k) Retirement Plan

Paid Vacation

Paid Parental Leave

Flexible Work Hours