Department Description:
The formation of the Group Information Security function is to ensure EmiratesNBD information and data is resilient against external and internal security threats embed information security mindset as a core element of organization business strategy and provide an independent objective view of EmiratesNBD Security posture to the management committees The unit exists to provide secure banking environment for our customer and employees
Brief Description: The Manager Threat Intelligence is responsible for managing cyber intelligence collection analysis dissemination and correlation combined with effective reporting for senior management
They will also act as standby resources for managing the incident processes to ensure they are well drilled and effective Maintain acceptable cyber hygiene levels and ensure the goals of the unit are met
Detailed Description: The Manager Threat Intelligence is responsible for managing cyber intelligence collection analysis dissemination and correlation combined with effective reporting for senior management
They will also act as standby resources for managing the incident processes to ensure they are well drilled and effective Maintain acceptable cyber hygiene levels and ensure the goals of the unit are met
Job Requirements: Collect and analyze open source intelligenceOSINT
Develop technical expertise on threat actors attack trends and attack tactics techniques and proceduresTTPs
Draft edit and review threat intelligence analysis from multiple sources
Develop intelligence on characterize and track threat actors activities ranging from tactical level capabilities to global operations
Produce intelligence reportingranging from short to longer reports on threat and threat actor activities
Maintain current knowledge of tools and bestpractices in advanced persistent threats tools techniques and proceduresTTPs of threat actors
In collaboration with other members on the team identify and hunt for related TTPs and Indicators of CompromiseIOCs across all internalexternal repositories
Correlate collected intelligence to build upon a larger knowledge base of tracked threat activity
Provide both technical and executive level intelligence briefings presentations
IOC collection and management
Trace attacker paths and detect suspicious patterns of threat actors
Research innovative methods for making Threat Hunting more efficient and effective
Additional Details: 5 years of experience in incident response cyber hunt or other technical Information Security positions and 710 years of technology experience overall
Knowledge of current adversary techniques vulnerability disclosures data breach incidents and security analysis techniques
Experience in analyzing gathering intelligence on developing and documenting threat group activities
Experience in analyzing malware offensive tools and threat actor tactics techniques and procedures to characterize threat actors technical methods for accomplishing their objectives or missions
Demonstrated understanding of remediation and counter measures for challenging information security threats
Moderate to advanced technical experience in network communication protocols
Conducting forensic analysis on and data captures from networks packet capture hostsvolatilelive memory electronic media log data and network devices in support of intrusion analysis or enterprise level information security operations
Expert understanding of a companys business processes technology and information systems
Must have knowledge on application and infrastructure security threats and mitigating measures
Deep knowledge on all aspects of Information Security concepts from broad range of technical and non technical areas
Ability to understand regulatory requirements and process efficiency frameworks and the details of ground level security issues and its management
Ability to monitor and enforce improvements when necessary in line with regulatory requirements or best practices
Good knowledge of risk management frameworks and how to identify manage and mitigate risk
Ability to create and review security policies standards procedures and hardening baselines
Qualifications AS Mentioned in the JD