24 Aug
|
TheDriveGroup
|
Melbourne
24 Aug
TheDriveGroup
Melbourne
We're looking for a highly technical Senior Threat Intelligence & Threat Hunting Specialist to join a large critical infrastructure organisation and take ownership of a newly established threat intelligence and threat hunting capability.
This isn't a traditional Threat Intelligence role focused primarily on research and reporting.
You'll be responsible for understanding the threats facing the organisation, identifying how those adversaries could operate within the environment and then proactively hunting for evidence of that activity across IT, OT and cloud environments.
Initially joining as a standalone SME, you'll have the chance to build the capability from the ground up, with genuine scope to grow and ultimately lead the function as it develops.
What you'll be doing
- Build and mature the organisation's Threat Intelligence and Threat Hunting capability.
- Analyse emerging threats, threat actors, vulnerabilities and attacker TTPs.
- Turn threat intelligence into actionable hunting hypotheses and investigations.
- Conduct hands-on threat hunting across endpoint, network, identity, cloud and OT environments.
- Use SIEM, EDR/XDR and security telemetry to proactively identify suspicious or malicious activity.
- Investigate Windows and Linux forensic artefacts to understand and contextualise potential compromise.
- Use MITRE ATT&CK; and adversary behaviours to develop hunting methodologies and use cases.
- Support complex incident response and cyber investigations when malicious activity is identified.
- Develop and improve detections based on intelligence, hunting outcomes and lessons learned.
- Work closely with Cyber Defence, Offensive Security, Network Security and OT Security teams.
- Produce actionable threat intelligence for both technical teams and senior stakeholders.
What we're looking for
You'll ideally come from a Threat Intelligence, Threat Hunting, Threat Management,
Cyber Defence or DFIR background and have strong hands-on investigation experience.
Most importantly, you need to be able to take external threat intelligence and translate it into:
"What does this mean for our environment, and how do we actively look for it?"
Strong experience across:
- Cyber Threat Intelligence
- Hands-on Threat Hunting
- Incident Response / Cyber Investigations
- Windows and Linux forensic evidence
- Threat actor behaviours and TTPs
- MITRE ATT&CK;
- SIEM and EDR/XDR technologies
- Endpoint, network, identity and cloud telemetry
- Indicators of compromise and threat analysis
- Hypothesis-driven investigations
- Detection development and improvement
Exposure to OT/ICS, critical infrastructure, energy, utilities, mining or another highly regulated environment would be highly regarded.
Why this opportunity?
This is an opportunity to do more than join an established threat intelligence team.
You'll become the organisation's dedicated SME, with the autonomy to define how threat intelligence and threat hunting are delivered, establish methodologies and help shape the organisation's wider cyber defence strategy.
As the capability matures, there is genuine potential to grow the function around you and progress into broader technical leadership.
If you're a hands-on threat intelligence or threat hunting professional who wants the opportunity to build, own and grow a capability, apply now for a confidential discussion.
For more information, please contact Hayley Bee at TheDriveGroup on ••••@thedrivegroup.com.au.
TheDriveGroup is 100% committed to improving meaningful diversity in the technology industry. We partner with clients who embrace diversity and seek candidates across all backgrounds, abilities, genders, sexualities, cultures and beliefs.
If you would like to find out more about TheDriveGroup and our opportunities, please visit our website or follow us on LinkedIn.
📌 Senior Threat Intelligence & Threat Hunting Specialist (Melbourne)
🏢 TheDriveGroup
📍 Melbourne