Jobs

Threat Intelligence Analyst


Job details
  • BAE
  • Leeds
  • 2 days ago

 

Location(s): UK, Europe & Africa : UK : Leeds 

 

BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.

Job Title:Lead Cyber Threat Intelligence and Vulnerability Analyst 
Requisition ID: 121483

Location: Leeds (this is a 100% office based role due to the nature of the project)

 

Grade: GG10 - GG11

Referral Bonus: £5,000

 

Role Description

BAE Systems have been contracted to undertake the day to day operation of (and incremental improvement of) a dedicated Security Operations Centre (SOC) to support the defence of a major UK Critical National Infrastructure (CNI) organisation.  The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected.  The customer is committed to development of this improved SOC to be a benchmark of best practice and excellence in reflection of the significant threat that the protected systems are subject to.

The SOC will be staffed by a blend of customer and BAE Systems staff, based in multiple locations, but with the day to day operations based from our Leeds office.

This role requires a minimum of DV clearance.

This role reports to the Cyber Threat Intelligence and Vulnerability Lead.

 

The Role

You will:

  • Monitor, investigate and report potential cyber threats and key vulnerabilities daily.
  • Responsible for maintaining an Indicator of Compromise (IOC) database tailored to the client’s estate, directed by the Cyber Threat Intelligence and Vulnerability Lead.
  • Interpret and collate tactical and operational threat intelligence into threat reports on a regular schedule (monthly, quarterly and annually).
  • Research, assess and report on specific cyber threat actor’s capabilities, motivations and Tactics, Techniques and Procedures (TTPs).
  • Collaborate with a range of stakeholders and teams to address key vulnerabilities across the client’s estate and support the incident response function.
  • Drafting and production of technical threat hunt hypothesis which are realistic and pose a justifiable threat to the client.
  • Ensure all relevant 0-Day, critical and high vulnerabilities sourced from internal tooling and open source feeds are tracked in a vulnerability register, and draft an alert and warning notice on an ADHOC basis when approved by the Cyber Threat Intelligence and Vulnerability Lead.

Requirements

Technical

  • 1+ years’ experience in threat intelligence, vulnerability management or conducting research and investigating cyber threats in a technical capacity.
  • A strong understanding of current and emerging threats related to government and critical national infrastructure.
  • Excellent Open-Source research skills.
  • Intermediate knowledge of Windows and Linux operating systems and the use of command line terminals.
  • Intermediate knowledge of core networking concepts and technologies (eg. TCP/IP).
  • Intermediate knowledge of and experience operating within cloud platforms (eg. AWS/Azure).
  • Proven analytical skills capable of solving new and complex technical problems.

 

 

Non-Technical

  • Bachelor’s Degree in Cybersecurity, Computer Science or equivalent experience in a SOC/Threat Intelligence/Vulnerability Management field.
  • Excellent written and verbal communication skills with the ability to communicate the risk, potential impact and importance of detailed technical information to non-technical and senior stakeholders.
  • Team player and adept at working in a multi-disciplinary and diverse team.
  • Self-motivated and motivates others, keeping morale and performance high.

 

 

Life at BAE Systems Digital Intelligence 

Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.

Sign up for our newsletter

The latest news, articles, and resources, sent to your inbox weekly.

Similar Jobs

Graduate Threat Intelligence Analyst (Position located in Cheltenham, United Kingdom)

About KnowBe4KnowBe4, the provider of the world's largest security awareness training and simulated phishing platform, is used by tens of thousands of organizations around the globe. KnowBe4 enables organizations to manage the ongoing problem of social engineering by helping them train employees to make smarter security decisions, every day.Fortune has...

KnowBe4 Cheltenham

Senior Cyber Threat Intelligence Analyst

Join Centrica's IT Security Team as a Cyber Threat Intelligence Lead! 🚀Are you ready to drive the UK's energy transformation? Centrica is seeking a skilled Cyber Threat Intelligence Lead to join our IT Security team. You'll monitor and analyse information sources to identify actionable insights, supporting proactive and reactive cyber...

Windsor

Senior Cyber Threat Intelligence Analyst

Join us, be part of more. We’re so much more than an energy company. We’re a family of brands revolutionising how we power the planet. We're energisers. One team of 21,000 colleagues that's energising a greener, fairer future by creating an energy system that doesn’t rely on fossil fuels, whilst...

Centrica Windsor

Catastrophe Modeller – Cyber

Description:We are seeking a talented individual to join our Cyber Analytics team at Guy Carpenter. This role will be based in London. This is a hybrid role that has a requirement of working at least three days a week in the office.The Cyber Analytics team currently consists of a diverse...

GB001 Marsh Ltd London

Security Engineering and Automation Manager

Security Engineering and Automation ManagerPermanent - Strong salary + benefitsLocation: Hybrid - CambridgeYour new companyA NASDAQ-listed semiconductor organisation in the UK are currently looking for a Security Engineering and Automation Manager to join their ranks. The organisation are very well known in their world and offer strong benefits and hybrid...

Cambridge

Intelligence Analyst Intern - Technical Analysis Cell (Remote)

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed - we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. Our customers span all industries, and they count on...

CrowdStrike