Threat Hunting Analyst

3 weeks ago


مصر, Egypt SSC Egypt Full time

1. Collection and analysis of Indicators of Compromise (IOCs) to support the refine detection and response efforts.
2. Validate and provide recommendations on changes to security controls to detect and/or protect against emerging security threats.
4. Correlate and group Indicators of Compromise (IoCs) to determine the scope and severity of incidents over Threat Intelligence Platform (TIP) solution and assist in threat hunting activity prioritization.
5. Assist incident response teams in understanding the nature and source of security incidents and provide guidance on containment and mitigation strategies.
6. Conduct systematic and targeted searches across CIB hosted and extended infrastructure according to defined hypothesis.
7. Investigate the existence of indicators of compromise (IoCs) to uncover hidden threats and vulnerabilities.
8. Perform Threat Hunting activities to detect tactics, techniques, and procedures (TTPs) of the tracked adversary groups.
9. Perform threat hunting activities utilizing multiple security infrastructure, such as (but not limited to); EDR, NDR, Attack Surface Management, Endpoint AV, WAF, SOAR, TIP, Deception solution.
10. Maintain detailed records of threat hunting activities, findings, and outcomes.
11. Assist in design use cases and rules that can detect and identify the threat according to the collected logs
12. Perform data driven threat hunting activities while abiding to Threat Intel and Hunting frameworks
13. Assist in developing hypothesis to identify potential security threats by conducting systematic and targeted searches across the network and systems.
14. Prepare and deliver comprehensive threat hunting reports to management, highlighting findings and recommended actions
15. Assist in designing SOC metrics, dashboards, scorecards, executive dashboards to be presented and reported based on the SOC Process document.
Create threat hunting dashboards for data visualization and security posture visibility.
Follow all relevant department policies, processes, standard operating procedures and instructions so that work is carried out in a controlled and consistent manner
Follow the day-to-day operations related to own jobs in the Security & Resilience Management department to ensure continuity of work.
Comply with all relevant CBE regulations, banking laws, AML regulations and internal CIB policies and code of conduct in order to maintain CIB’s sound legal position and mitigate any potential risks.

**Requirements**:

- Bachelor Degree of Engineering, Computer Science or equivalent.
- Minimum 3 - 5 years of experience in IT, Information Security or any related fields (5 - 7 years of experience for senior)
- Experience with analysing security intelligence threats and threat actors.
- Knowledge of packet capture and analysis
- Knowledge of dynamic malware analysis, log analysis, and digital forensics
- Experience in incident response and remediation
- Experience in EDR, FWs, WAF, NDR, SIEM and TIP solutions
- Proficiency in threat hunting tools and platforms, as well as data analysis tools
- Knowledge of cyber threat landscapes, attack vectors, and malware analysis is beneficial
- Experience with scripting languages (e.g., Python) and familiarity with automation for threat hunting tasks

**- Recommended - one or more
- of the below certifications**:

- CISM
- CISSP
- Certified Threat Hunting Professional (CCTHP)
- GIAC Certified Incident Handler (GCIH)
- GIAC Certified Forensic Analyst (GCFA)

**Skills**:

- Very good command of English and Arabic languages
- Very good Analytical Skills
- Good Leadership Skills
- Very good Communication skills


  • Threat Intelligence

    5 days ago


    مصر, Egypt اورنچ مصر Full time

    About the job Threat Intelligence & Hunting Analyst **Key Responsibilities** Performs threat hunting within the existing technology environments to uncover indicators of threat activities. - Support SIEM use case management process. - Supports the development of tactics, techniques, and procedures in providing proactive threat hunting and analysis against...

  • Threat Intelligence

    3 days ago


    مصر, Egypt Orange Egypt Full time

    **Key Responsibilities** Performs threat hunting within the existing technology environments to uncover indicators of threat activities. - Support SIEM use case management process. - Supports the development of tactics, techniques, and procedures in providing proactive threat hunting and analysis against the available information sources. - Supports the...


  • مصر, Egypt M-KOPA Full time

    **We are looking for an Associate Threat Intelligence Analyst to join our Threat Intelligence Team; **which serves to collect, analyze and produce actionable intelligence, leveraged by teams to understand risk and make decisions regarding viability in selling M-KOPA products across different regions.**: - As an Analyst, you would be responsible for...

  • Security Intelligence

    3 weeks ago


    مصر, Egypt SSC Egypt Full time

    1. Supervise the process of data collection to analyse the deployment of Indicators of Compromise (IOCs) to support the refine detection and response efforts. 2. Validate and provide recommendations on changes to security controls to detect and/or protect against emerging security threats. 3. Provide intelligence briefings to SOC team on threats or threat...

  • SOC Analyst L3

    5 days ago


    مصر, Egypt اورنچ مصر Full time

    About the job SOC Analyst L3 **Key Responsibilities** - Manage the scoping, containment, remediation, reporting, and root cause analysis for Security Incidents within the customer infrastructure. - Provide guidance on control implementation for post-incident risk reduction. - Support Use Case development cycle. - SOC level 3 Investigation and Follow-up of...

  • Cybersecurity Analyst

    4 weeks ago


    مصر, Egypt Capgemini Full time

    Your primary role would be to support and coordinate global and internal initiatives. In your primary role you would be responsible for the end-to-end management of cybersecurity major incidents, leading and presenting all elements of the incident response lifecycle including identification, containment, and eradication. You will work with the wider team to...

  • Senior Threat Hunting

    3 weeks ago


    مصر, Egypt MigrationIT Full time

    **Job Information**: Industry - BankingWork Experience - 5+ yearsCity - New CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Proactively search for and respond to security events and incidents from SIEM, Firewall (FW), Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Antivirus (AV), Network Access Control (NAC),...

  • Threat Hunting

    3 weeks ago


    مصر, Egypt MigrationIT Full time

    **Job Information**: Industry - BankingWork Experience - 4-5 yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Proactively search for and respond to security events and incidents from SIEM, Firewall (FW), Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Antivirus (AV), Network Access Control (NAC), Anti...


  • مصر, Egypt MigrationIT Full time

    **Job Information**: Industry - BankingWork Experience - 4-5 yearsCity - New CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 113111- Monitor the external web and identify zero day threats and new and evolving threats 2- Analyze the threats and develop flash, advisory and operations reporting templates, etc. 3- Coordinate with CSOC analysts...


  • مصر, Egypt Orange Egypt Full time

    Runs vulnerability scans and reviews vulnerability assessment reports. Manages and configures security monitoring tools. Reviews security trouble tickets generated by Tier 1 Analyst(s). Leverages emerging threat intelligence (IOCs, updated rules, etc.) to identify affected systems and the scope of the attack. Reviews and collects asset data (configs,...

  • SOC Analyst L3

    3 days ago


    مصر, Egypt Orange Egypt Full time

    **Key Responsibilities** - Manage the scoping, containment, remediation, reporting, and root cause analysis for Security Incidents within the customer infrastructure. - Provide guidance on control implementation for post-incident risk reduction. - Support Use Case development cycle. - SOC level 3 Investigation and Follow-up of threats / events / incidents...


  • مصر, Egypt Dell Technologies Full time

    Cyber Security Project: The project involves triaging alerts from security platforms (Taegis XDR, Microsoft Sentinal) and requires leveraging all available data sources, security tools and threat trends to assist with the creation of investigations, proposing customer actions & recommendations that optimize the monitoring capability. This project also...


  • مصر, Egypt Siemens Digital Industries Software Full time

    About the role As part of the Cybersecurity Operations team, you will help to secure our intellectual property and other digital assets of the Digital Industries Software (DI SW) division of Siemens from cybersecurity threats. You will join a cyber-focused team that handles the holistic landscape of protecting a software research and development...


  • مصر, Egypt Siemens Digital Industries Software Full time

    **Job Family**: Cybersecurity **Req ID**: 365609 About the role As part of the Cybersecurity Operations team, you will help to secure our intellectual property and other digital assets of the Digital Industries Software (DI SW) division of Siemens from cybersecurity threats. You will join a cyber-focused team that handles the holistic landscape of...


  • مصر, Egypt Siemens Full time

    About the role As part of the Cybersecurity Operations team, you will help to secure our intellectual property and other digital assets of the Digital Industries Software (DI SW) division of Siemens from cybersecurity threats. You will join a cyber-focused team that handles the holistic landscape of protecting a software research and development...


  • مصر, Egypt Siemens Full time

    About the role As part of the Cybersecurity Operations team, you will help to secure our intellectual property and other digital assets of the Digital Industries Software (DI SW) division of Siemens from cybersecurity threats. You will join a cyber-focused team that handles the holistic landscape of protecting a software research and development...

  • SOC Analyst T2

    3 days ago


    مصر, Egypt ITS Information Technology Solutions Full time

    **Job Title: SOC Analyst T2** **Company Overview**: ITS Information Technology Solutions is a leading IT solutions provider based in Giza, Egypt. We offer a wide range of services including network security, cloud computing, and data management solutions to businesses of all sizes. Our team of experts is dedicated to providing innovative and reliable...


  • مصر, Egypt SSC Egypt Full time

    1. Follow up with the major adversary groups targeting the enterprise in term of motivation, tools and methods to be updated with resent threats and risks. 2. Identify and classify cyber threats facing the organization, map the adversary’s objective to which the bank’s assets that are likely to be targeted and translate which cyber threats are possible...


  • مصر, Egypt SSC Egypt Full time

    2. Coordinate with the respective stakeholders to conduct regular network scans (active and/or passive) to identify security gaps and vulnerabilities across all the bank’s critical assets. 3. Run scheduled vulnerability scans using the provided tools and identify areas of vulnerability that need remediation to ensure on-going remediation of the...


  • مصر, Egypt Vultara Inc. Full time

    **IMPORTANT!!!! Indeed has a bug which always displays "Pay" in USD currency. Our listed "pay" or "salary" is always in the listing country's local currency. Ignore "USD" or "$" anywhere you see in this job posting unless that position is listed for the US.** Vultara is a web and cloud-based security risk management tool for cyber-physical systems. It is...