Threat Intelligence & Threat Hunting Analyst
Mizuho · India
Job Description
About Mizuho:
Mizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so-called Mega Banks of Japan. MGS was established in the year 2020 as part of Mizuho's long-term strategy of creating a captive global processing center for remotely handling banking and IT related operations of Mizuho Banks domestic and overseas offices and Mizuhos group companies across the globe.
At Mizuho we are committed to a culture that is driven by ethical values and supports diversity in all its forms for its talent pool. Direction of MGSs development is paved by its three key pillars, which are Mutual Respect, Discipline and Transparency, which are set as the baseline of every process and operation carried out at MGS.
What's in it for you?
- Immense exposure and learning
- Excellent career growth
- Company of highly passionate leaders and mentors
- Ability to build things from scratch
Know more about MGS: -
Job Title: Threat Intelligence & Threat Hunting Lead / Principal Analyst
Experience Required: 12+ years
Role Overview:
The Lead will own the strategic direction and execution of the threat intelligence and threat hunting function. This individual will drive advanced investigations, guide hunting programs, improve detection engineering outcomes, and serve as a senior advisor to incident response, SOC, and security leadership.
Key Responsibilities
Threat Intelligence Analysis:
- Analyze IOCs including IPs, domains, URLs, file hashes, certificates, and registry indicators.
- Correlate intelligence across internal telemetry, commercial feeds, open-source intelligence, and partner sources.
- Enrich raw intelligence into actionable context such as actor attribution, campaign linkage, and exposure assessment.
- Validate the relevance, freshness, and reliability of indicators before operational use.
Proactive Threat Hunting:
- Design and lead proactive hunting campaigns based on adversary behaviour, ATT&CK techniques, and observed trends.
- Develop hypotheses for hunting across endpoint, network, cloud, identity, and email telemetry.
- Identify stealthy or low-and-slow malicious activity that may evade traditional controls.
- Partner with SOC and IR teams to rapidly escalate confirmed threats.
Adversary Tracking:
- Track threat actors, clusters, and campaigns over time.
- Maintain adversary profiles including TTPs, infrastructure, targeting, tooling, and malware families.
- Map observed behaviours to frameworks such as MITRE ATT&CK.
- Identify overlaps between internal findings and external threat actor activity.
Trend and Campaign Analysis:
- Conduct threat trend analysis on emerging adversarial tactics, industry-targeted attacks, and geopolitical developments.
- Assess impact of trends on organizational risk posture.
- Provide strategic insights on new malware, phishing patterns, ransomware trends, supply chain threats, and exploitation campaigns.
Intelligence Reporting:
- Produce executive-ready and technical intelligence reports, briefings, and threat advisories.
- Tailor reporting for multiple audiences: security leadership, SOC, IR, vulnerability management, and IT teams.
- Present findings with clear relevance, risk implications, and recommended actions.
Detection Improvement Recommendations:
- Translate threat hunting outcomes into detection improvement recommendations.
- Work with detection engineering and SOC teams to improve SIEM rules, EDR logic, correlation logic, and alert tuning.
- Identify telemetry gaps and suggest log sources or control improvements.
- Measure the effectiveness of detection enhancements over time.
Leadership and Governance:
- Lead the development of intelligence-led hunting methodology and operational standards.
- Mentor junior analysts and contribute to capability building.
- Define prioritization criteria, reporting standards, and quality benchmarks.
- Represent the function in security reviews, risk discussions, and leadership meetings.
Required Skills and Experience:
- 12+ years of experience in cybersecurity, with significant focus on threat intelligence, threat hunting, incident response, or security operations.
- Strong experience analyzing IOCs, malware artifacts, and adversary infrastructure.
- Deep knowledge of MITRE ATT&CK, intrusion lifecycle, and common threat actor behaviours.
- Hands-on experience with SIEM, EDR/XDR, log analytics, threat intelligence platforms, and network/endpoint telemetry.
- Ability to develop and lead complex hunting campaigns using both structured and exploratory methods.
- Strong analytical writing skills with experience producing intelligence reports for technical and executive audiences.
- Experience with threat actor tracking, campaign attribution support, and trend analysis.
- Ability to provide actionable detection improvement recommendations.
- Strong collaboration and communication skills across technical and non-technical stakeholders.
Address
Mizuho Global Services India Pvt. Ltd.
16th Floor, Tower B,
Brigade World Trade Centre,
- 600 096, India.
Details
| Company | Mizuho |
| Location | India |
| Type | FULL TIME |
| Niche | general |
