Cyber Threat Intelligence Analyst Services

il y a 16 heures


Brussels, Belgique Vector Synergy Temps plein

**Location**:
Brussels, Belgium

**Security Clearance**:
NATO Secret

**Reference No**:
OCIO-0004 / Brussels

**Introduction**:
The NATO Office of the Chief Information Officer (OCIO) is responsible for Cyber Defence for the NATO Enterprise. The OCIO has been tasked to increase NATO’s Cyber Defence posture. As part of this initiative, the OCIO plans to enhance the ability of NATO’s Cyber Threat Analysis Branch (CTAB) to provide the quality and quality of cyber intelligence products required by the NATO Enterprise. The contractor will work for the OCIO, however, the CTAB has tasking authority.

The Cyber Threat Analysis Branch is responsible for providing evidence-based assessments of the cyber threat landscape to empower NATO stakeholders to make risk-informed decisions. The multidisciplinary team combines all-source data with cutting edge technologies to support and enhance the Alliance leaderships’ understanding on the nature of cyber competition and conflict. CTAB systematically identifies strategic patterns and trends in cyber space and generates tailored insights to support network defence and mission assurance with predictive analysis, cyber threat intelligence, and threat hunting..

**Skills, knowledge, experience required**:

- Experience in analysing and synthesizing threat intelligence in a high-speed environment;
- Experience producing actionable threat intelligence on targeted and advanced persistent adversaries enabling network and host defences in external organizations with demonstrable impact;
- Tracked at least two distinct cyber threat actors over a period of at least one year ascertaining and characterizing various TTPs, capabilities, infrastructure, and campaigns;
- Knowledge and experience in analysis of various threat actor groups, attack patterns and tactics, techniques, and procedures (TTPs), deep analysis of threats across the enterprise by combining security rules, content, policy and relevant datasets;
- Strategic and doctrinal geo-political knowledge of specific regions;
- Experience with threat hunting, including mandatory knowledge of operating systems and windows internals.

**Desirable**:

- Applied knowledge across all critical elements and common data types used in threat intelligence analysis, including malware used in targeted adversary campaigns; windows and Linux system internals and experience threat hunting in Enterprise environments; and network forensics including common protocols and how those are used in adversary operations;
- Applied knowledge of a variety of adversary command and control methods and protocols;
- Experience supporting incident response and deeply familiar with common incident response procedures, processes, and tools;
- Strong knowledge of malware families and network attack vectors;
- Ability to analyse attack vectors against a particular system to determine attack surface;
- Ability to produce contextual attack models applied to a scenario;
- Hands on experience on monitoring cloud services.

**Duties/role**:

- Supporting the work of the OCIO and Cyber Threat Analysis Branch and helping the development of cyber assessments and threating hunting playbooks of interest to the Alliance;
- Developing cyber threat profiles on targeted and advanced persistent threats through the use of open source and internal data;
- Producing threat hunting packages for internal network defenders to identify patterns of malicious cyber activity;
- Using external commercial threat intelligence sources (internet scan data, passive DNS, domain registrant information, malware repositories) to track and model malicious cyber activity;
- Assessing, clustering and linking disparate activity into related intrusions & campaigns in internal threat analytics platform;
- Being responsible for identifying and tracking sophisticated cyber threat actors across a geo-political region.

VECTOR SYNERGY sp. z o.o., ul. Marcelińska 90, 60-324 Poznań, NIP PL7811857270, REGON 301575740, KRS: 0000369575

Rejestr Przedsiębiorców KRS prowadzony przez Sąd Rejonowy Poznań - Nowe Miasto i Wilda w Poznaniu, VIII Wydział Gospodarczy KRS,



  • Brussels, Belgique Google Temps plein

    **Minimum qualifications**: - Bachelor's degree or equivalent practical experience. - 7 years of experience in a consulting or customer-facing role. - Experience with an operating system (e.g., Linux, Windows) and scripting capabilities in Python or Bash. - Active NATO Secret or NATO Member State equivalent security clearance to work with Government...


  • Brussels, Belgique Vector Synergy Temps plein

    **Location**: Brussels, Belgium **Security Clearance**: NATO Secret **Reference No**: OCIO-0003 / Brussels **Introduction**: The NATO Office of the Chief Information Officer (OCIO) is responsible for Cyber Defence for the NATO Enterprise. The OCIO has been tasked to increase NATO’s Cyber Defence posture. As part of this initiative, the OCIO plans to...

  • Cyber Threat Intelligence

    il y a 2 semaines


    Brussels, Belgique EGOV Select Temps plein

    **Environment de travail** **Description des tâches** La cyberstratégie belge entend faire de la Belgique l'un des pays européens les moins cybervulnérables. En tant qu'analyste CTI, vous contribuerez de manière significative à la réalisation de cet objectif. Votre tâche principale en tant qu'analyste CTI est la collecte, l'analyse et la diffusion...

  • Cyber Threat Intelligence

    il y a 2 semaines


    Brussels, Belgique EGOV Select Temps plein

    **Werkomgeving** **CCB/CyTRIS (Cyber Threat Research and Intelligence Sharing)** is het CTI departement van het CCB en waakt over de cyberdreiging en publiceert regelmatig verslagen. Het Team verzamelt, analyseert en distribueert informatie over dreigingen, kwetsbaarheden en aanvallen op de informatie **Taakomschrijving** De Belgische cyberstrategie stelt...

  • Cti Analyst

    il y a 17 heures


    Brussels, Belgique Sopra Steria Temps plein

    Sopra Steria Group, a major player in consulting, technology services and software publishing in Europe, assists its clients in the successful transformation of their business and information systems. By combining value and innovation in the solutions proposed, and delivering utmost quality and performance in the services provided, Sopra Steria Group...


  • Brussels, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: - Systems Planning and Analysis, Inc. (SPA) is a well-established and progressive defense contracting company in the Northern Virginia area just a few miles south of the Pentagon. We are a professional services firm established in 1972 that has a long-standing reputation for unrivaled technical and analytical support to some of the top decision...

  • Situational Awareness

    il y a 2 semaines


    Brussels, Belgique North Atlantic Treaty Organization Temps plein

    **NATO - North Atlantic Treaty Organisation**: **Primary Location**: **NATO Body**: NATO International Staff (NATO IS) **Schedule**: Full-time **Application Deadline**: 07-Apr-2025, 9:59:00 PM **Salary (Pay Basis)**: Grade NATO Grade G17-G20 **1. SUMMARY** The Joint Intelligence and Security Division (JISD), under the leadership of the Assistant Secretary...

  • Threat Hunter

    il y a 17 heures


    Brussels, Belgique NVISO Temps plein

    Who are we? **It all starts with the mission**: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values...


  • Brussels, Belgique HNM Solutions Temps plein

    The purpose of the “Cyber Defence’ team is to prepare and to respond to unauthorized cyber activity. This is done by providing the following services: Proactive - support & intelligence to help prepare and secure bank systems in anticipation of cyber-attacks where threat management ensures collection, assessment and sharing of threat...

  • SOC Analyst Level 2

    il y a 2 semaines


    Brussels, Belgique Proximus Temps plein

    Join Proximus Ada ! Within this Proximus’ newly created center of excellence for AI and Cybersecurity, the mission of the Security Management and CSIRT teams is to protect Proximus, its customers, its business, its operations and reputation against external and internal threats. You will be fascinated by a highly dynamic environment, the strong...