Phoenix Cyber is looking for a Threat Intelligence Analyst, with Operational Technology (OT) focus, to join our client delivery team.
Job Description: - Collects, reviews, and identifies cybersecurity threat intelligence from open source and intelligence reporting to analyze and provide actionable threat reporting and briefings for cybersecurity analysts.
- Provides support to content developers and cybersecurity engineers in identifying gaps in protection and detection of systems.
- Reviews log and network events and alerts related to systems for signs of attack or Advanced Persistent Threats.
- Performs root cause analysis and supports remediation efforts for incidents related to Operational Technology cybersecurity incidents.
- Acts as the Subject Matter Expert on OT cybersecurity related issues.
Requirements:- Minimum 6 years of relevant IT experience
- Minimum 2 years of hands-on experience analyzing, securing, or threat-modeling Operational Technology (OT), Industrial Control Systems (ICS), or SCADA environments (Experience limited to enterprise IT security will not satisfy this requirement.)
- Working understanding of common industrial communication protocols and lower-level control architecture.
- Demonstrated experience applying ATT&CK for ICS, SPARTA, or Cyber Kill Chain for ICS to dissect adversary campaigns and analyze cyber-physical attack paths.
- Understanding of the NIST Framework
- Understanding of threats and vulnerabilities in OT environments.
- Must have an active Top Secret Security Clearance