Responsibilities
- Examine and categorize suspicious email messages to detect phishing attempts, malware, spam, and non-malicious incidents using internal analysis tools.
- Identify and record indicators of compromise such as URLs, domains, file hashes, and sender metadata from email headers, content, and attachments.
- Monitor and investigate active email-based cyber campaigns, linking observed tactics to MITRE ATT&CK framework mappings.
- Develop and update internal threat intelligence resources, including detection rules and research records.
- Work closely with senior analysts during threat assessment meetings to exchange findings and improve detection accuracy.
- Continuously expand knowledge, share insights, test new analysis methods, and support team-wide capability growth.
Work Arrangement
Remote
Team
collaborative environment with experienced security researchers
Team
Structure: collaborative environment with experienced security researchers