Vanguard propose des fonds d'investissement et des services de gestion de portefeuille aux particuliers et aux institutions.
Cyber Threat Management Analyst, Specialist
Am I a fit — voir ma compatibilitéL’analyste en cyber threat intelligence collecte, corrèle et analyse des renseignements sur les menaces pour produire des rapports, briefings et indicateurs de compromission. Il travaille avec les équipes de détection et d’analyse afin de contextualiser les menaces et de contribuer à l’identification, l’atténuation et la containment des incidents de cybersécurité. Le poste est hybride à Londres, avec trois jours par semaine au bureau, du mardi au jeudi.
Repères sur Vanguard
- Domaine officiel
- vanguard.com
- Offres ouvertes
- 29
Détails de l’offre
La description complète publiée par Vanguard.
Job Title Cyber Threat Intelligence Analyst The Role The Cyber Threat Intelligence Center provides timely situational awareness, conducts deep analysis of threats and vulnerabilities, and extracts actionable information for relevant teams. Stakeholders include cyber-security response teams, internal lines of business, leadership, and external organizations such industry peers and intelligence sharing partners. In this role you will
- Collect, analyze, and correlate cyber threat intelligence from open sources (OSINT), commercial, and government sources
- Actively monitor the threat landscape to synthesize and disseminate critical insights to relevant stakeholders
- Conduct tactical and operational threat analysis in support of ongoing campaigns, identifying new TTPs and vulnerabilities for analysis and detection opportunities
- Assist leadership in tracking threat actors, vulnerability exploitation, and other emerging and novel TTPs relevant to Vanguard’s technology footprint
- Produce actionable reports, briefings, and indicators of compromise (IOCs) for internal stakeholders
- Possess critical thinking and problem-solving abilities to find solutions, extrapolate salient artifacts, and identify correlations in threat data
- Escalate critical or important findings to managers in a timely manner with appropriate risk analysis
- Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results while also assessing the intelligence output of more junior analysts prior to dissemination
- Work with hunt and analysis teams to assist with contextualizing the threat and facilitating the identification, mitigation, and containment of cyber-security incidents
- Draft well-written analytical assessments and provide briefings to the team on key issues and provide editorial guidance to more junior analysts related to their output What it takes
- Experience working in a SOC or cyber operations environment
- Knowledge of current and emerging cyber adversaries and their techniques, tactics, and procedures (TTPs)
- Knowledge of a Cyber Threat Intelligence Platform, feed integrations, and security/process orchestration and automation
- Knowledge of threat modelling and adversary tactics and techniques frameworks, such as MITRE ATT&CK matrices, Cyber Kill Chain, ACH
- Knowledge of Common Vulnerability Scoring System (CVSS), CVE analysis, adversary exploitation techniques, attack surface management
- Proficiency in cybersecurity tools and techniques, as well as knowledge of common cyber threats and attack vectors.
- Understanding of current cybersecurity trends, threats, and concepts
- Ability to write succinct briefings, presentations, and reports to convey analysis, threat trends, threat actor profiles, indicator bulletins, vulnerability details and defensive strategies to varied audiences Special Factors
- Vanguard is not offering visa sponsorship for this position
- This is a hybrid position and would require you to work in the office 3 days per week (Tuesday, Wednesday & Thursday)
- Please note that we review applications on a rolling basis and may close this role early if there is a high level of interest. To avoid missing out, we recommend applying as soon as possible Why Vanguard? Vanguard is a different kind of investment company. It was founded in the United States in 1975 on a simple but revolutionary idea: that an investment company should manage its funds solely in the interests of its clients. This is a philosophy that has helped millions of people around the world to achieve their goals with low-cost, uncomplicated investments. It's what we stand for: value to investors. Inclusion Statement Vanguard’s continued commitment to diversity and inclusion is firmly rooted in our culture. Every decision we make to best serve our clients, crew (internally employees are referred to as crew), and communities is guided by one simple statement: “Do the right thing.” We believe that a critical aspect of doing the right thing requires building diverse, inclusive, and highly effective teams of individuals who are as unique as the clients they serve. We empower our crew to contribute their distinct strengths to achieving Vanguard’s core purpose through our values. When all crew members feel valued and included, our ability to collaborate and innovate is amplified, and we are united in delivering on Vanguard's core purpose: to take a stand for all investors, to treat them fairly, and to give them the best chance for investment success. How We
Work Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.
Prérequis
- Expérience dans un SOC ou un environnement de cyber opérations
- Connaissance des adversaires cyber et de leurs TTPs
- Connaissance d’une plateforme de Cyber Threat Intelligence
- Connaissance de la modélisation des menaces
- Maîtrise des outils et techniques de cybersécurité
- Capacité à rédiger des briefings, présentations et rapports synthétiques