CofenseCO

Cyber Threat Intelligence Analyst I

Cofense, formerly PhishMe, is the leading provider of human-driven phishing defense solutions worldwide.

Cofense

Employee count: 201-500

United States only

Reporting to the Manager of Intelligence Operations, the Cyber Threat Intelligence Analyst I is responsible for identifying, collecting, analyzing, and documenting the indicators and observables from phishing campaigns and malware binaries to produce actionable, timely intelligence to our broad range of customers.

Essential Duties/Responsibilities

  • Analyze email-based threats, including phishing attempts, spear-phishing campaigns, and social engineering tactics to identify malicious activity.
  • Analyze attachments, links, and payloads associated with phishing emails, identifying and documenting malware and/or credential phishing payloads and associated artifacts.
  • Identify and document indicators of compromise (IOCs) from phishing emails, credential phishing campaigns, and malware samples (e.g., IP addresses, domain names, hashes) for use in identification and remediation efforts.
  • Perform opensource based investigations of credential phishing sites and associated infrastructure.
  • Stay up to date with evolving phishing tactics, techniques, and procedures (TTPs), emerging malware, and cybersecurity best practices.
  • Contribute to analysis reporting on more sophisticated malware and credential phishing, with guidance.
  • Contribute insight to in-depth strategic reporting on attacker trends and TTPs.
  • Author threat assessments that assist customers in understanding threat’s relevance and potential impact.
  • Analyze phishing campaigns and related threats to identify patterns, changes, and anomalies.
  • Other duties as assigned.

Knowledge, Skills and Abilities Required

  • Strong attention to detail and analytical skills.
  • Ability to document findings clearly and concisely.
  • Excellent communication skills, with the ability to document findings clearly and collaborate with cross-functional teams.
  • Self-motivated, eager to learn, and committed to growth in the cybersecurity threat intelligence and analysis field.
  • Ability to work in a fast-paced, team-oriented environment.
  • Basic understanding of email protocols, headers, and related encoding formats.
  • Familiarity with programming and scripting languages (e.g., Python, JavaScript, Visual Basic).
  • Basic understanding of malicious software, malware families, and their behaviors.
  • Basic familiarity with tactics, techniques, and procedures (TTPs) used in phishing campaigns.
  • Quick learner with the ability to adapt to new tools and tradecraft standards.
  • Ability to learn and quickly implement tradecraft standards.
  • Basic knowledge of common malware families, email-based threats, and tactics used in phishing campaigns.

Education and/or Experience:

A Bachelor’s degree in a related field such as Computer Science, Computer Forensics, or Justice Science preferred, but not required.

  • At least 1-2 years of experience in cyber threat intelligence research, analysis, and/or threat correlation is strongly preferred.
  • Knowledge and basic with Linux, Mac, and Windows based OS’s is strongly preferred.
  • Experience with TCP/IP packet capture and investigation software, e.g. Wireshark, HTTP debuggers is preferred.
  • Experience with malware analysis, credential phishing analysis, and/or reverse engineering is a plus.
  • Experience with open-source phishing investigation tools such as: URLScan, Shodan, and VirusTotal is a must.
  • Experience with analyzing email headers, attachments, and links for signs of malicious behavior is strongly preferred.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Entry-level

Location requirements

Hiring timezones

United States +/- 0 hours

About Cofense

Learn more about Cofense and their company culture.

View company profile
Cofense, formerly PhishMe, is the leading provider of human-driven phishing defense solutions worldwide. We deliver a collaborative approach to cybersecurity by enabling organization-wide engagement to active email threats. Our collective defense suite combines best-in-class incident response technologies with timely attack intelligence sourced from employees to stop attacks in progress faster and stay ahead of breaches.

From driving awareness to security automation and orchestration, our solutions are designed to anticipate and disrupt the attack kill chain at delivery to quickly mitigate the impacts from spear phishing, ransomware, malware, and business email compromise.

Today this is all made real for thousands of global organizations in the defense, energy, financial services, healthcare, and manufacturing sectors that understand how changing user behavior will improve security, aid incident response, and reduce the risk of compromise.

Employee benefits

Learn about the employee benefits and perks provided at Cofense.

View benefits

Company events

Company-sponsored events and teambuilding events.

Paid parental leave

Paid family leave for all parents to support you and your family.

Flexible working hours

We accommodate all kinds of lifestyles and life stages. Come work on your terms.

Disability insurance

Cofense provides Short Term and Long Term Disability to US employees at no cost.

View Cofense's employee benefits
Claim this profileCofense logoCO

Cofense

Company size

201-500 employees

Founded in

2011

Chief executive officer

Rohyt Belani

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

5 remote jobs at Cofense

Explore the variety of open remote roles at Cofense, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Cofense

Remote companies like Cofense

Find your next opportunity by exploring profiles of companies that are similar to Cofense. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan
Cofense hiring Cyber Threat Intelligence Analyst I • Remote (Work from Home) | Himalayas