- Location
- Bangalore - Bagmane Tridib, India
- Type
- Full-time
- Department
- Engineering
- Experience
- 3+ years
- Source
- Workday
Description
Description:
The CTI Level III Tactical Engineer is responsible for building automations to assist with the day-to-day CME Group tactical threat intelligence activities and operations including analysis, collection, and dissemination of threat intelligence products. This role will primarily focus on building automations, and leveraging AI in order to support the larger Cyber Defense team and streamline Cyber Threat Intelligence processes.
Key responsibilities include:
Leverage a mix of AI and automations to streamline Cyber Threat Intelligence processes
Coordinate with security operations and incident response staff to tune and improve detection capabilities or to aid in investigations or respond to incidents
Consume and analyze threat intelligence reports in order to assist in the creation of signatures, queries, or other analytics that will be deployed for detection and prevention purposes
Analyze new vulnerabilities for potential impact and attack vectors
Basic Qualifications:
3+ years of experience in the field of information security, computer science, computer forensics, or information assurance
Familiarity with AI and mechanisms of integrating AI into workflows.
Familiar with the MITRE ATT&CK framework
Experience with collecting, analyzing, and interpreting threat intelligence data from multiple sources
Experience with cyber incident response and digital forensics, security engineering, security operations, computer network operations, information operations, information warfare, or topical cyber
Intermediate knowledge of Cyber threat intelligence processes and tradecraft to include the Cyber Kill Chain and Diamond Model of Intrusion Analysis
Experience with multiple scripting languages, including Python and PowerShell.
Familiar with Linux operating system, including using the Linux terminal
Experience with key security operations technologies such as SIEM and log aggregation
Experience with host and network log sources to apply to investigation, IR methodology in investigations, and the groups behind targeted attacks and tactics, techniques, and procedures (TTPs)
Knowledge of attacker tactics, techniques, and procedures and common attack vectors and vulnerabilities
BA or BS degree in Computer Science, Cyber Security, or related field
Additional Qualifications:
Experience with performing advanced static and dynamic malware analysis and with setting up and leveraging automated malware analysis platforms
Possession of excellent oral and written communication skills
Experience working in an Intelligence Community or similar intelligence experience.
Experience working in cloud environments
Formal Education & Certifications
BA/BS in Computer Science, Cyber Security, or related field or related work experience
GIAC Python Coder (GPYC), GIAC Security Essentials (GSEC), GIAC Certified Enterprise Defender (GCED), other relevant GIAC Certification, or other technical industry certifications
Threat Intelligence Courses
CME Group: Where Futures are Made
CME Group is the world’s leading derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it – all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we’re looking for more.
At CME Group, we embrace our employees' unique experiences and skills to ensure that everyone’s perspectives are acknowledged and valued. As an equal-opportunity employer, we consider all potential employees without regard to any protected characteristic.
Important Notice: Recruitment fraud is on the rise, with scammers using misleading promises of job offers and interviews to solicit money and personal information from job seekers. CME Group adheres to established procedures designed to maintain trust, confidence and security throughout our recruitment process. Learn more here.