Cyber Threat Intelligence Principal Specialist
1 week ago
The Cyber Threat Intelligence Principal Specialist will be responsible for tracking the tactics, techniques and procedures (TTPs) used by threat actors in their malicious campaigns and distribution of malware. The individual will provide intelligence analysisin the form of timely alerts, briefings and analytical assessments. Focusing on threats related to information technology environments, the Principal Specialist will produce actionable intelligence in a clear and concise manner. The individual will reporton top security threats by providing situational awareness, alerts, indicators of compromise, technical information and operational readiness briefings.
The Cyber Threat Intelligence Principal Specialist will contribute to, and work as part of, a multi-disciplined security community with clear vision and direction, as well as top down support across the business. They will help the wider community in fosteringa culture which is both security aware and a great place to come to work.
**The Role**
Provide support to Information Cyber Security from across the business by undertaking activities which include:
- Collect, analyse and interpret qualitative and quantitative, technical and non-technical data in all-source intelligence analysis.
- Conduct security research - identify and navigate relevant online sources, including cyber security websites, forums, social media and traditional sources to support research processes.
- Perform open source intelligence (OSINT) collection and analysis, identifying the most relevant and immediate cyber threats, malicious code, suspicious domains and security vulnerabilities.
- Conduct Threat Intelligence activities, including the use of advanced analytical techniques in supporting incident response at WTW.
- Provide timely, comprehensive and accurate deliverables to key stakeholders in both written and verbal communications.
- Produce assessments on cyber threats, attacks and external incidents of interest to WTW.
- Create written and verbal intelligence products for internal stakeholders to assist in proactively addressing cyber threats and mitigating risk.
- Work with third parties developing shared intelligence including government, law enforcement agencies and peer institutions operating in industry sectors relevant to WTW.
- Ensure timely response to any cyber incident to minimise risk exposure and production down time by collaborating closely with incident response colleagues.
- Add threat intelligence enrichment and support to the investigation of suspected security incidents, including operating with malware and indicators of compromise (IoCs).
- Analyse and correlate incident data to develop a preliminary root cause and corresponding remediation strategy.
**The Requirements**:
- Vast experience in cyber security.
- Must have strong verbal and written communication skills, interpersonal collaborative skills and the ability to communicate security and risk-related concepts to both highly technical and non-technical audiences.
- Experience in developing and maintaining Threat Intelligence, ability to review information to determine its significance, validate its accuracy and assess its reliability.
- Ability to compile data from both open and closed sources, drawing analytical conclusions to shape recommendations for key internal decision-makers.
- Knowledge of Cloud security and incident response activities in a Cloud environment.
- Excellent understanding of Lockheed Martin’s Cyber Kill Chain, the Diamond Model of Intrusion Analysis and the MITRE Att&ck framework. Ability to implement threat modelling in support of Threat Intelligence activities.
- Understanding of assets and data of value to threat actors and how organisations are compromised.
- Experience working in one or more of Threat Intelligence, Cyber Security Operations or Digital Forensics.
- Experienced in analysing malware, hacking tools and threat actor tactics, techniques and procedures (TTPs) to characterise threat actors’ technical methods for accomplishing their goals.
- Experience of tracking threat actors and building up a repository of threat knowledge.
- Knowledge of privilege escalation, persistence and lateral movement techniques deployed by threat actors.
- Experience of working and communicating within a global team environment.
**Equal Opportunity Employer
-
Senior Cyber Security Engineer
1 week ago
Reigate, United Kingdom Noir Full time**Senior Cyber Security Engineer** An award winning and industry pioneers are seeking an experienced savvy Cyber Security Engineer to join their tech heavy consulting practice. This is a great time to be part of a huge transformation project with a massive emphasis for the Cyber Security Engineer to be integral in ensuring delivery of business-critical...
-
Microsoft Cloud Security Architect Lead
2 weeks ago
Reigate, United Kingdom Willis Towers Watson Full timeJob Description We are seeking a visionary Lead Microsoft Cloud Security Architect to join WTW's Global Information and Cyber Security Defence (ICSD) function. This role is pivotal in designing and implementing next‑generation cloud security architectures, securing WTW cloud environments, and driving automation and intelligence within Cyber Defense...
-
Microsoft Cloud Security Architect Lead
6 days ago
Reigate, United Kingdom WTW Full timeOverviewWe are seeking a visionary Lead Microsoft Cloud Security Architect to join WTW's Global Information and Cyber Security Defence (ICSD) function. This role is pivotal in designing and implementing next-generation cloud security architectures securing WTW cloud environments and driving automation and intelligence within Cyber Defence Security Platforms...
-
Fraud Intelligence Officer
1 week ago
Reigate, United Kingdom esure Full timeesure have a fantastic opportunity for a Fraud Intelligence Officer to join our Financial Crime department, on a full-time permanent basis. **The day to day**: - Ensure that external intelligence received is reviewed and actioned effectively to progress an investigation, increase general awareness and / or ensure capture in IT systems to assist in the...
-
Microsoft Cloud Security Architect Lead
1 week ago
Reigate, United Kingdom WTW Full timeDescriptionWe are seeking a visionary Lead Microsoft Cloud Security Architect to join WTWs Global Information and Cyber Security Defence (ICSD) function. This role is pivotal in designing and implementing next-generation cloud security architectures securing WTW cloud environments and driving automation and innovation with WTWs ICS Function. The candidate...
-
Cyber Security Engineer
3 days ago
Reigate, United Kingdom Intrum Full timeAt Intrum, you will grow by making a difference. You will do it in a highly international environment and in a supportive culture where effort counts.You don’t become the industry leader with average IT hires.We’re on the hunt for a hands-on Cyber Security Engineer — someone who lives and breathes security and is ready to protect, monitor, and...
-
Talent Sourcing
4 days ago
Reigate, United Kingdom WTW Full timeWe are growing our team in Europe and are looking for a team member with experience in talent sourcing and labor market intelligence. We are flexible with the country and work-style setup (remote or hybrid). **Your Daily Activities** - Build and implement creative sourcing strategies to identify and attract a diverse group of talent - Conduct intake...
-
Project Engineer | Reigate
16 hours ago
Reigate, United Kingdom Intec Group Full timeAnnual leave 20 days, increasing with level of serviceUp to £50,000, depending on experienceReports toHead of Project ManagementSweethaven is part of the inTEC GROUP. We are education technology specialists and have a proven track record working with independent schools and colleges to deliver enterprise-grade IT systems, support and knowledge that enable...
-
Technology Operations Manager
4 days ago
Reigate, United Kingdom The Curve Group Full time**Technical Operations Manager - Microsoft technology stack experience** This award-winning Financial Services Company are seeking an experienced Technical Operations Manager who's eager to use and grow their technological skills in a role that provides the opportunity to make a difference. In this role, the successful individualwill lead the team who...
-
SEN TA
1 week ago
Reigate, United Kingdom Randstad Staffing Full timeAre you a compassionate and patient person? Do you enjoy working with SEN learners and making a difference to their lives? Can you provide a safe and positive school experience for students with complex needs and learning difficulties? A specialist school providing day support for children and young people with Autism spectrum conditions or additional...