Senior CTI Analyst
Barclays
Join us as a " Senior CTI Analyst" at Barclays, where you'll spearhead the evolution of our digital landscape, driving innovation and excellence. You'll harness cutting-edge technology to revolutionise our digital offerings, ensuring unapparelled customer experiences.
You may be assessed on the key critical skills relevant for success in role, such as experience skills as well as job-specific skillsets.
To be successful as a " Senior CTI Analyst", you should have experience with:
Basic/ Essential Qualifications:
- Intelligence and Analytical Aptitude – critical thinking; research and analysis; investigative mindset
- Professional Effectiveness – communication laterally and vertically; teamwork and emotional intelligence; business acumen
- Technical Literacy – enterprise IT networks; cybersecurity ecosystem and tooling; CTI terminology and methodology; roles and responsibilities of other cyber operations teams
- Cyber Threat Proficiency – drivers of defensive operations; threat intelligence concepts and frameworks; threat actors and TTPs.
- Minimum Qualification – bachelor’s degree.
Desirable skillsets/ good to have:
- If needed due to exigencies of workloads and deadlines, undertake all above duties
- Conduct in-depth analysis and supplemental research, and work cross-functionally, to provide assessments on threats, vulnerabilities, controls gaps, etc.
- Perform triage and analysis on reporting and TTP backlogs/assist with BAU
- Ensure quality control for triage and analysis, TTP descriptions and IOC ingestion; oversee indicator maintenance within the TIP
- Lead efforts aimed at process improvement, runbook creation and work instruction maintenance
- Produce initial drafts of reports, collating information and creating intelligence products for stakeholder and senior management situational awareness
- Upload and send finished products with appropriate tags/meta data for archiving and dissemination upon approval from VP
- Perform in-depth analysis to support malware incidents and add context to support analysis and inform decision-making
- Cyber intelligence support to threat hunting
- Lead cyber intelligence support for ongoing incidents
- Drive coordination and collaboration with other team members on intelligence projects, drafts of reports, analysis of adversary TTPs, etc.
- Lead engagements with external intelligence partners and peer financial institutions to share and gather relevant intelligence in a timely manner
- Train, develop and ensure all junior staff and new joiners can perform work up to expected standard
- Provide support in relation to the other team functions as and when dictated by workloads and deadlines
- Understand and evolve the technology platforms to automate prevention and detection of malicious cyber activity
- Engage with technology and vendor partners to improve performance, automation and agility of security operations teams
- Identify and collect metrics to showcase effectiveness and efficiency gains and highlight gaps
- Develop and refine technical intelligence requirements; coordinate external and internal collection capacity against these requirements; identify new potential sources of intelligence
This role will be based out of Pune.
Purpose of the role
To monitor the performance of operational controls, implement and manage security controls and consider lessons learnt in order to protect the bank from potential cyber-attacks and respond to threats.
Accountabilities
- Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage.
- Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise.
- Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats.
- Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network.
- Management of cyber security incidents including remediation & driving to closure.
Assistant Vice President Expectations
- To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/ business divisions.
- Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function. Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes
- If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L – Listen and be authentic, E – Energise and inspire, A – Align across the enterprise, D – Develop others.
- OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/ or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes.
- Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues.
- Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda.
- Take ownership for managing risk and strengthening controls in relation to the work done.
- Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function.
- Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy.
- Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively.
- Communicate complex information. 'Complex' information could include sensitive information or information that is difficult to communicate because of its content or its audience.
- Influence or convince stakeholders to achieve outcomes.
All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.