Cyber Threat Analyst
Current• Investigate ransomware attacks, business email compromises (BECs), nation-state threats, etc., targeting various industries and operating systems and draft tactical and strategic intelligence products that identify threat actors, trends, indicators of compromise (IOCs), and tactics, techniques, and procedures (TTPs)• Analyze malware signatures, logs, email headers, IP addresses and domains, financial statements and reports, and telecommunication records to identify evidence of malicious activity and provide guidance to affected industries• Write and review FBI and US Intelligence Community reports that strategically analyze the cyber domain, including threat actors and their TTPs, IOCs, emerging threats, attack trends, and mitigating controls• Conduct research in internal and external databases and open source intelligence (OSINT) repositories on names, phone numbers, email addresses, bank account numbers, etc.• Analyze and present research findings in concise tactical and strategic intelligence reports and oral briefings that highlight actionable intelligence and generate investigative leads• Prepare and serve legal requests and orders to financial institutions and telecommunication providers and use analytical techniques and innovative problem-solving to interpret raw data returned, including financial statements and toll records• Assist in determining the scope and strategy of cyber investigations, ranging from incident response to indictment• Prepare and deliver cyber briefings that detail common threat vectors and best cyber preparedness practices and are tailored to various audiences, such as local and state governments, real estate companies, school systems, law firms, and hospitals• Coordinate with local, state, and federal law enforcement agencies, government agencies, and businesses across various industrial sectors to develop a robust information-sharing network and enhance deconfliction capabilities