New York City Office of Technology & Innovation · 6 hours ago
Senior Technical Intelligence Analyst
The New York City Office of Technology & Innovation (OTI) leverages technology to improve public safety and government operations. The Senior Technical Intelligence Analyst will support the Cyber Threat Intelligence program by analyzing and disseminating actionable intelligence, coordinating between teams, and assisting in threat response efforts.
Information Technology
Responsibilities
Lead the creation of strategic, operational, and tactical intelligence relevant to stakeholders within the City of New York and its dissemination in briefings and written reports
Lead in the development of relevant, timely, and accurate threat intelligence support to network defenders at NYC3: provide analyst support to NYC3 operators and disseminate analysis through threat intelligence platform
Lead the delivery of products and services in alignment with intelligence requirements: capture intelligence requirements and capture metrics on intelligence requirements serviced
Oversee the college aid and internship programs and provide use cases for project development
Manage operation and improvement of the threat intelligence and analysis platform in coordination with the Content Manager and other analysts: carry out upkeep activities and disseminate indicators from platform
Lead cross team collaboration for emerging threat workstreams
Create and document detailed standard operating procedures and playbooks
Lead the intake and implementation of relevant feedback for technical intelligence products and services and map feedback to Intelligence Requirements
Lead the research and tracking of threat actors, malware, and campaigns: ensure analysts are properly tracking threats tied to intelligence requirements and coordinate with intelligence analysts and other teams within NYC3
Maintain relationships with existing and new vendors that provide intelligence support, analytical support, and toolsets
Handle special projects and initiatives as assigned
Qualification
Required
A baccalaureate degree from an accredited college and four years of satisfactory full-time experience related to projects and policies required by the particular position; or
Education and/or experience which is equivalent to '1' above
Preferred
Ability to work independently and function effectively as part of a team in a dynamic environment
Extensive experience working in a security environment and/or supporting security teams from a technical standpoint
Extensive experience in the extraction and analysis of tactical intelligence from investigations
Prior experience working in intelligence and knowledge of intelligence tradecraft, including the intelligence cycle, structured analytic techniques, and intelligence writing and briefing
Strong written and verbal communication skills including organization, presentation and facilitation skills
Proficient analytical qualities that include logical reasoning, critical thinking, and problem solving
Proficient with applications such as Microsoft Office or comparable products
Demonstrate a clear understanding of the component parts of intelligence-driven threat hunting
Knowledge of the current cyber threat landscape, with a specific focus on the technical aspects of adversarial Tactics, Techniques and Procedures (TTPs) and their relation to the cyber kill chain and other analytical models
Knowledge of standard monitoring, detection, and response security functions
Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, and non-repudiation)
Understanding of foundational threat intelligence analysis frameworks, including the Diamond Model and Kill Chain
Working knowledge of intelligence analysis applications, tools, and systems including Maltego and OpenCTI
Familiarity with various technologies such as SIEM, IDS/IPS, Proxy, Endpoint, and enterprise incident management systems
Understanding of vulnerability and exploitation concepts, or experience in penetration testing
Extensive experience in host and network-based forensics, or Incident Response best practices
Strong understanding of dynamic/behavioral malware analysis methods and technology
Extensive experience in host and network-based defense, or monitoring and detection best practices
Demonstrate an ability to actively work with vendors who provide intelligence support, analytical support, and toolsets
Ability to obtain a security clearance
Benefits
Public Service Loan Forgiveness
Company
New York City Office of Technology & Innovation
The Office of Technology and Innovation (OTI) leverages technology to drive opportunity, improve public safety, and help government run better across New York City.