Lead Global Threat Intelligence Analyst

Dyson (Posted 16 Feb 22)

About The Role You'll be a part of our Global Cyber Fusion Center, a global team with presence in SG (Global HQ), USA & UK. As a Lead Analyst for Global Threat Intelligence, the major focus is to assist with planning the roadmap, capabilities, and services, responsible for building, handover (operational threat intelligence services to the SOC), operate (strategic threat intelligence) and govern cyber threat intelligence services while supporting our partners with tactical analysis, to achieve CFC objectives. In addition, help progress CDC investigations against cyber aggressors, collaborate and perform cyber threat hunting to sniff out highly sophisticated cyber threats. This role will be very exciting in providing continuous learning opportunities (i.e. convergence of IT, OT and IoT) in latest technology platforms and equally challenging to capture “indication and warning” threat signals. Our Global Cyber Security programme is anchored around Cyber Threat Intelligence led Cyber Security; you will make great impact to the business. You are the defenders of the Dyson network, the guardians of our secrets. Experience And Accountabilities Our Cyber Threat Intelligence team is tasked to support and enhance Dyson security posture by providing situational awareness thorough understanding of the cyber threat landscape through the delivery of timely and actionable threat intelligence that is relevant to Dyson. By combining technical expertise with a thorough understanding of the geopolitical and strategic landscape, playing a supporting role in Threat Hunting, the team ensures depth and breadth of coverage of cyber threats and events, and contextualizes them (the “so what”, connecting the dots, etc) to drive forward planning for the leadership teams in Global Cyber Security. The candidate for this role is the most senior member of our Cyber Threat Intelligence team, with in-depth knowledge on the cyber threat landscape, including threat actors, their attack tactics, techniques and procedures with major focus on “indication and warning” (proactive) methodology through intelligence and hunting. Supported by our partners delivering day-to-day intelligence services, you will functionally lead threat intelligence topics globally in Dyson, focusing on high-valued responsibilities and acting as the subject matter expert on any threat intelligence matters globally. To be a Lead Analyst for Global Threat Intelligence at Dyson, we would like candidates to demonstrate experience in:

  • Leading the topics and projects, ensure intelligence capabilities being planned, build, and handed over are timely and relevant to the ever-changing threat landscape.

  • Provide an oversight governance in ensuring our partners are providing quality delivery and develop, maintain and periodically validate the cyber threat intelligence SOPs and runbooks.

  • Work with our partners to drive process and documentation improvement in threat intelligence, triage and escalation procedures.

  • Collecting information and conducting analysis to develop intelligence to continuously mature “indication and warning” capability.

  • Enrich with contextual information and produce finished intelligence to define Dyson strategic threat intel products, in a pre-defined timeframe (yearly, half-yearly, etc.) with relevance to Dyson, for key stakeholders’ consumption.

  • Correlate intelligence to develop deeper understanding of tracked threat activity to influence investments in protection and detection controls (i.e. delivering business justification for new use-cases).

  • Be part of a wider team and support threat hunting duties.

  • Regularly collaborate with CDC, DFIR and other supporting functions to respond to incidents and aid in investigations.

  • Maintain strategic relationship with local and federal government agencies as well as industry organizations to establish information sharing capabilities

About You: You’ll Bring The Following We are looking for team members with an exceptional track-record of delivering security to a range of business types and sizes.

  • Minimum 8+ years of experience within an intelligence function.

  • Preferred 3 to 5 years team lead experience for cyber security teams(preferred).

  • Working together with the manager, be willing to coach and/or mentor junior analyst joining the team.

  • Excellent writing and presentation skills to communicate findings and recommendations to different audiences and stakeholders.

  • Experience conducting intelligence investigations and familiarity with investigative tools.

  • Experience in establishing and maintain intelligence lifecycle.

  • Proven track record of MITRE ATT&CK, Cyber Kill Chain, Diamond Model and able to develop threat models based on the frameworks.

  • Experience in use of cyber security products such as threat intelligence platforms, cloud security, endpoint security and open source products such as Shodan, Virus total, etc.

Our culture is unique. It's not easy or comfortable. It's certainly not for everyone, but if you thrive on challenge and are excited by change – it could be for you.

Last updated