Remote job
Threat Intelligence Intern
Job details
About this role
Role overview
Help research and document cyber threats, vulnerabilities, threat actors, and indicators of compromise as part of a cybersecurity team. Under the guidance of experienced security professionals, you will contribute to threat intelligence collection and analysis, producing findings that can inform security operations and investigations.
Responsibilities
- Monitor trusted sources for emerging threats, vulnerabilities, campaigns, and threat actor activity. - Collect, validate, and analyze indicators such as suspicious IP addresses, domains, URLs, and file hashes. - Conduct open-source intelligence research using approved sources and tools. - Examine phishing campaigns, malware activity, attacker infrastructure, and associated tactics, techniques, and procedures. - Map relevant threat activity to the MITRE ATT&CK framework under guidance. - Prepare intelligence alerts, advisories, summaries, and reports; maintain clear records and share useful context with security teams during investigations.
Requirements
- Be a graduate or final-year student in cybersecurity, computer science, information technology, or a related field. - Understand cybersecurity fundamentals, networking, and common cyber threats. - Have familiarity with indicators of compromise, attacker techniques, malware, phishing, vulnerabilities, and threat actors. - Have a basic understanding of MITRE ATT&CK and the threat intelligence lifecycle. - Be interested in OSINT and cyber threat research, with knowledge of Windows or Linux and networking concepts such as DNS, HTTP/S, IP addresses, and ports. - Bring strong research and analytical skills, attention to detail, and the ability to document technical findings clearly.
Nice to have
- Projects, labs, CTF participation, or training related to threat intelligence, SOC work, malware analysis, or incident response. - Familiarity with threat intelligence platforms or tools such as VirusTotal or MISP.