APS6 Senior Cyber Threat Analyst
Core
Develops and maintains detection rules, use cases, and threat models for the SOC technology stack to identify and respond to cyber threats, including AI-related misuse.
Role type
Senior IC threat detection engineer
Builds
Detection content (rules, playbooks, threat models) for SIEM, SOAR, and EDR platforms
Domain
Cybersecurity, Threat Intelligence, Cloud & On-premise Infrastructure
Deliverable
production ML models | product features
Required skills
Threat modeling (STRIDE, ATT&CK), SIEM/EDR rule development, Incident response, Threat intelligence analysis, AI security assessment, Agile/ITIL process adherence, Cloud infrastructure knowledge
Preferred skills
Detection engineering lifecycle management, Playbook development, Architecture collaboration, Data source onboarding, Research and analysis
Technologies
SIEM, SOAR, EDR, Cloud platforms, AI platforms
Responsibilities
Develop use cases based on threat models and intelligence; Develop detection rule syntax for SIEM and EDR; Develop playbooks for alert validation; Assess emerging AI threats and develop detection content; Collaborate with architecture teams on threat modeling outcomes; Maintain threat intelligence integrations; Assist with incident response and exercises.
Seniority
Senior, hands-on IC