1. 5+ years of hands-on experience in cyber security research, threat hunting, or cyber threat adversarial investigations.
2. Map threat actor behavior to MITRE ATT&CK framework, identifying, tracking and analyzing specific APT groups, their infrastructure, and evolving TTPs over time.
3. Proven ability to connect disparate pieces of intelligence to form a cohesive understanding of a threat actor's campaign.
4. Serve as an escalation point for complex security incidents and mentor junior threat analysts on advanced research methodologies.
5. Deep understanding of STIX objects and relationships (SDO, SCO, SRO), malware analysis techniques (dynamic, static) and reverse engineering.
6. Hands on experience with tools like – Maltego, MISP, Shodan, OpenCTI or equivalent Threat Intelligence Platforms, VirusTotal, IDA Pro/Ghidra, Wireshark, etc.
7. Familiarity with darkweb investigations, forums, and threat marketplaces.
8. Excellent communication and collaboration skills to work across teams.
9. Knowledge of threat intelligence methodologies and industry standard frameworks.
10.Strong scripting (e.g., Python, PowerShell) and automation skills.
11.Experience writing YARA or IDS/IPS signatures.
12.Excellent reporting and analytical skills: Able to author comprehensive, actionable threat intelligence reports and briefings to effectively share insights.