Job
- Level
- Senior
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Oberkochen
- Working Model
- Onsite
Job Summary
In this role, you analyze global cyber threats, develop TTP profiles, configure Threat Intelligence tools, and create actionable reports to enhance defense strategies.
Job Technologies
Your role in the team
- In this role, you serve as a senior technical expert within the Cyber Defense Center. You are responsible for identifying, analyzing, and assessing global cyber threats, transforming complex data from diverse sources into actionable insights to proactively strengthen our defense strategies.
- Your main responsibilities include:
- Intelligence Collection & Analysis: Collect, process, and analyze information from various sources, including open-source intelligence (OSINT), dark web forums, and commercial threat intelligence feeds.
- TTP & Actor Profiling: Develop and maintain a comprehensive understanding of threat actors, their tactics, techniques, and procedures (TTPs), and their potential impact on the organization.
- Advanced Tooling & Automation: Configure and maintain the Threat Intelligence Platform (TIP) and utilize industry-standard tools such as Google Threat Intel (GTI), MISP, and Microsoft Defender Threat Intelligence (Defender TI) to automate and enrich data.
- Actionable Reporting: Generate threat intelligence products for diverse audiences, including technical reports and recommendations for defensive measures.
- Strategic Collaboration: Collaborate closely with the SOC, CIRT, and other business representatives to identify areas where threat intelligence provides the most benefit.
- Risk Assessment: Use structured analytic techniques to identify trends, assess risks, and escalate critical technical findings to the Incident Commander.
- Capability Enhancement: Research and evaluate new tools, techniques, and data sources to enhance overall threat intelligence capabilities.
- Documentation & Governance: Ensure complete and structured documentation of all activities, including the creation of playbooks, policies, and procedures.
This text has been machine translated. Show original
Our expectations of you
Qualifications
- Technical Deep-Dive: Strong knowledge of IT infrastructures, networks, operating systems, and cloud environments.
- Framework Proficiency: Solid understanding of attacker TTPs and the ability to map observed activity to frameworks such as MITRE ATT&CK, NIST, or SANS.
- Communication: Ability to communicate technical findings clearly and concisely to different stakeholder groups and translate threats into organizational requirements.
- Resilience: A structured, reliable, and resilient working style, especially when supporting threat mitigation efforts in critical situations.
Experience
- Several years of experience in threat intelligence environments, SOC or DFIR.
- Specific Tool Expertise: Proven hands-on experience with Google Threat Intel, MISP, or Microsoft Defender TI to drive proactive security measures.
- Analytical Mindset: Proven experience in handling complex or high-severity incidents and identifying emerging cyber threats and vulnerabilities.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
Carl Zeiss AG
ZEISS is a world-leading technology company that is active in the fields of optics and optoelectronics. In the last financial year, ZEISS generated sales revenues of more than 6.4 billion euros through its four segments Semiconductor Manufacturing Technology, Industrial Quality & Research, Medical Technology and Consumer Markets (as at 30 September 2019).
Description
- Company Size
- 50-249 Employees
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Industry, Production
Dev Reviews
by devworkplaces.com
Total
(1 Review)3.7
Culture
4.0Workingconditions
4.6Career Growth
3.6Engineering
2.7