|
KEY ACCOUNTABILITIES & ACTIVITIES
This section describes the principal outputs required from the job.
|
|
Key Accountabilities
|
Key Activities
|
- Cyber Threat Intelligence
|
- Collect and analyze cyber threat intelligence from relevant internal and external sources.
- Assess threat actors, techniques, indicators, and emerging cyber threats relevant to Elm.
- Produce actionable intelligence to support cybersecurity operations and decision-making.
|
- External Threat Landscape Monitoring
|
- Monitor the external cyber threat landscape for threats relevant to Elm and its digital assets.
- Analyze emerging attack campaigns, vulnerabilities, and threat trends.
- Communicate significant threats and recommended actions to relevant stakeholders.
|
- Dark Web & Digital Exposure Monitoring
|
- Monitor dark web and external digital sources for potential threats, leaked information, and malicious activities.
- Investigate identified exposures and assess their potential impact.
- Coordinate appropriate response and escalation actions.
|
- Phishing & Fraud Threat Analysis
|
- Monitor and analyze phishing campaigns, fraudulent activities, and impersonation attempts.
- Identify indicators and patterns associated with malicious campaigns.
- Recommend preventive and responsive actions to reduce exposure.
|
- Brand & Digital Asset Protection
|
- Monitor digital channels for unauthorized use, impersonation, and abuse of Elm's brand and digital assets.
- Assess identified brand protection incidents and coordinate required actions.
- Support takedown and remediation activities with relevant stakeholders.
|
- Proactive Threat Hunting
|
- Conduct proactive threat hunting activities in coordination with SOC and other cybersecurity functions.
- Develop hypotheses based on threat intelligence and identified attack patterns.
- Analyze findings and communicate actionable indicators and recommendations.
|
- Threat Intelligence Reporting
|
- Prepare strategic and operational cyber threat intelligence reports.
- Translate technical threat information into relevant security and business insights.
- Provide periodic and ad hoc threat updates to relevant stakeholders.
|
- Threat Intelligence Capability Improvement
|
- Evaluate threat intelligence sources, tools, and methodologies.
- Recommend improvements to enhance intelligence quality and operational effectiveness.
- Contribute to maintaining structured threat intelligence practices and knowledge repositories.
|
- Policies, Processes & Procedures
|
- Follow all relevant departmental policies, processes, standard operating procedures, and instructions so that work is carried out in a controlled and consistent manner.
- Comply with all relevant safety, quality, and environmental management policies, procedures, and controls to ensure a healthy and safe work environment.
|
- Information Security
|
- Comply with all relevant information security practices and standards to ensure data integrity and confidentiality.
|