Principal Threat Intelligence Analyst in Multiple Locations, France

Microsoft Corporation

vacanciesin.eu

Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity.

Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions.

The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate.

Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.

The Microsoft Threat Intelligence Center (MSTIC) is recruiting experienced nation-state threat hunters – with highly honed threat intelligence analysis skills. MSTIC provides unique insight on threats to protect Microsoft and our customers and is responsible for delivering timely threat intelligence across our product and services teams.

Responsibilities

As a threat intelligence analyst, you will track sophisticated adversaries and use your technical knowledge of adversary capabilities, infrastructure, and techniques.

You will define, develop, and implement techniques to discover and track current adversaries and identify the attacks of tomorrow.

You will produce actionable intelligence and proactively drive hunting and detection capabilities. In this role you will be responsible for collaborating with stakeholders from MSTIC and key engineering groups across Microsoft, working in partnership with them to protect both Microsoft assets and Microsoft’s customer base through improved product and services offerings.

You will strengthen existing partnerships and build new ones with key organizations to deliver benefits to Microsoft and its customers. 

Qualifications

 6+ years producing actionable threat intelligence on targeted and advanced persistent threats enabling network and host defences in external organizations with demonstrable impact

Expertise tracking APT adversaries leveraging the Diamond Model to identify and characterize various TTPs, capabilities, infrastructure, and operational campaigns .

Strong understanding in at least one of the following:

(1) cloud intrusion analysis in adversary operations;

(2) analysing sophisticated malware samples used in targeted attacks against large corporate or government entities;

(3) analysing host forensic and log data associated with advanced targeted adversaries  

Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defences  

Experience with Azure incident response investigations

Expertise in cloud networking, cloud application development & cloud APIs 

Experience in enterprise incident response and in handling multiple data sets using languages such as Python, Python and scripting knowledge, Jupyter Notebooks  Network penetration testing and intrusion remediation experience  Visualization tools 

Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:

Microsoft Cloud Background Check:

  • This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:

Microsoft Cloud Background Check: – This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter.

#MSFTSecurity #MSFTSecurity #MSTIC #MSecR

Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations (https://careers.microsoft.com/v2/global/en/accessibility.html) .


Apply Now

To help us track our recruitment effort, please indicate in your cover//motivation letter where (vacanciesin.eu) you saw this job posting.

Job Location