This role supports the Threat Intelligence Data & Engineering (TIDE) function in State Street’s Cyber Threat Intelligence (CTI) team and will report to the manager of the TIDE function. The ideal candidate will possess: deep experience in developing critical insights from the aggregation, processing, and analysis of disparate data, significant knowledge of data visualization technologies, technical abilities to automate data collection and processing, and has above-average knowledge of cyber threat intelligence concepts. Cyber operations experience, including but not limited to prior collaboration with security, engineering, and architecture teams required. Experience with threat intelligence platforms, data collection utilities and technologies, scripting calls to API endpoints, and data visualization tools required.
What you will be responsible for
As Cyber Threat Intelligence Analyst – TIDE Analyst, AVP you will:
- Operationalize the use of tools, data, databases, visualizations, and analytic techniques to derive impactful insights
- Integrate disparate, internal and external data sets into dashboards and visualizations that inform senior leadership of a global cyber security organization
- Interrogate data to identify anomalous results and develop and test hypothesis that identify root causes for those anomalies.
- Leverage data to develop metrics that successfully capture the intelligence and assurance impact provided by the CTI team
- Support empirical assessments of program maturity, development, and impact
- Represent CTI in integration, evaluation, and process development efforts with partners across the organization’s big data efforts
- Maintain and strengthen critical relationships with third-party data and technology partners
What we value
These skills will help you succeed in this role
- A collaborative team member that possesses deep technical expertise and an ability to work across an organization to deliver unique outcomes
- Prior experience analyzing cybersecurity data as a primary job function (>= 75%) required; in the financial services sector preferred
- Prior experience supporting cyber security operations at a large enterprise
- Technical subject matter expertise with a variety of data science and analytics tools and applications including, but not limited to, databases, visualization suites, data architecture, and API scripting
- Uniquely familiar with the intersection of data analytics and cyber security technologies and platforms (SIEMs, TIPs, SOARs, etc.)
- Demonstrated achievements with process and technology automation (Python, Postman, REST API, JSON, etc.) are essential
- An innate curiosity to go deeper than the surface-level insights; Not just measure the curve, but to understand the slope of the curve
Education & Preferred Qualifications