6000-10000元
天府软件园
岗位职责:
1. Proactively monitor and communicate cyber threat trends, vulnerabilities, indicators of compromise (IOCs), and tactics, techniques, and procedures (TTPs).
积极主动监控和交流网络威胁趋势、漏洞、入侵指标(IOC)、战术、技术和程序(TTP)
2. Monitor external data sources and leverage resources to gather cyber threat and setup cyber threat intelligence infrastructure and payloads associated with priority threats.
监控外部数据源,借助资源收集网络威胁,建立网络威胁情报基础设施和与重点威胁相关的Payloads。
3. Familiarity with deep and dark web, covert communication channels, social media platforms, and other OSINT sources.
熟悉深网与暗网、隐蔽通信渠道、社交媒体平台及其他开源情报(OSINT)来源。
4. Develop and produce intelligence reports focused on cyber events and trends, industry-level analysis of developing cybersecurity threats, and geopolitical events.
编制并发布聚焦网络事件与趋势、针对演进中网络安全威胁的行业级分析以及地缘政治事件的情报报告。
5. Analyze cyber-threat actors, groups, and events to report on prioritized TTPs, behaviors, motivations, malware analysis, etc.
分析网络威胁行为体、组织及事件,形成针对优先级TTPs(战术、技术及程序)、行为模式、攻击动机、恶意软件分析等的专项报告。
6. Disseminate finished tactical, operational, and strategic threat intelligence products (reports, briefings, etc.).
分发完成的战术、作战和战略威胁情报产品(报告、简报等)。
7. Provide threat intelligence support for security incidents and respond to requests for information (RFIs) and participate in the drafting and production of company threat assessments.
为安全事件提供威胁情报支持,响应信息请求(RFIs),参与公司威胁评估的起草和制作。
8. Support creation of deliverables including but not limited to Security/Incident Alerts, Intelligence Reports, Trend and summary reports, Client briefings
支持撰写各类交付成果物,包括但不限于安全事件警报、情报分析报告、趋势研判与态势综述报告、客户专项简报等。
任职要求:
1. University degree majoring in information security, information systems, computer science, and/or information management;
本科及以上学历,信息安全、计算机科学或信息管理专业;
2. Relevant experience in the field of threat intelligence
具备威胁情报领域相关经验
3. Solid understanding of MITRE ATT&CK,
对MITRE ATT&CK有深刻的理解
4. Experience in programming, SIEM integration or blue team preferred
有编程、SIEM集成或蓝队经验者优先
5. Communication skills in both oral and written English and Chinese
优秀的英文书写、阅读能力和良好的中文沟通能力;
6. Flexible, self-starter possessing intellectual curiosity;
工作灵活主动,具有求知欲;
以担保或任何理由索取财物,扣押证照,均涉嫌违法,请提高警惕