Job Description
What you will be responsible for
- Collaboration with Cyber Threat Intelligence, Cyber Defense Center, and Offensive Security to conduct tactical and strategic threat hunting efforts that are pertinent to State Street, its subsidiaries and affiliates
- Leading incident response efforts for complex investigations involving Cyber Security threats.
- Performing digital forensics investigations related to Cyber Security threats.
- Working cross-functionally with team members to support and drive a collaborative team environment
- Assisting with the identification of logs sources that are valuable to threat hunting and detection
- Assist with the onboarding and tuning of log sources to provide better effectiveness
- Collaboration with the Cyber Architecture and Engineering team to assist with the design, implementation, and administration of various security technologies which relate to threat hunting, threat detection, and the overall Cyber Fusion Center
- Work closely with counterparts in IT and across the Cyber Fusion Center to align technical solutions with business needs.
- Ensure the effective management and delivery of cyber fusion services
- Support development and implementation of Cyber Fusion Center strategies aligned to key State Street risk and business needs
- Support the design and implementation of Cyber Fusion Center operating models, identifying, evaluating, and providing solutions via a threat and intelligence-based approach
- Build and nurture positive working relationships with the intention to exceed client expectations
Reports to: Cyber Fusion Advanced Threat Manager
What we value
These skills will help you succeed in this role:
- 5-10 years of experience in relevant Cyber Security roles such as Threat Hunting, Incident Response, SOC, Digital Investigations
- Experience with compromised system analysis
- Extensive knowledge of Advanced Persistent Threat (APT) groups and Tactics, Techniques, and Procedures used by APT groups
- Knowledge of the MITRE ATT&CK framework and its usage for improving threat detection and prevention capabilities
- Hands-on experience with Endpoint Detection & Response (EDR), and Security Information and Event Management (SIEM) tools
- Ability to communicate with and appropriately influence all levels of management
- Excellent interpersonal, communication (written and verbal), and presentation skills
- Excellent problem-solving abilities and organizational/time management skills.
- Strong attention to detail and worth ethic.
- Ability to work independently as well as collaboratively.
- Intellectually curious and willing to invest time in researching areas outside current knowledge base/skill set.
- Education & Preferred Qualifications
- Bachelor of Science in Computer Science, Information Security, Engineering or equivalent experience
- Relevant Industry Certifications (such as OSCP, OSCE, GREM, GCFA, GNFA, etc.)
- Additional requirements
- •Previous experience in banking industry a plus
Job ID: 126702