Gsoc Cti Senior Cyber Threat Hunter
hace 5 días
Company Description
Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime.
We have 20,000 people operating across 44 countries and every day we’re investing in new technologies, talented people, and innovation to help all our clients maximize every opportunity.
**Job Description**:
Experian GSOC is seeking a Senior Cyber Threat Hunter to be part of a global Cyber Threat Intelligence (CTI) team that promotes timely and actionable threat intelligence information. This is an incredible opportunity to be part of a world class organization and join a global team of highly skilled and innovative people to help us stay ahead of adversaries. The CTI team focuses on defending against emerging threats, supporting cyber investigations, and delivering situational awareness to the business.
The primary responsibility for the Senior Cyber Threat Hunter is to proactively investigate security events to identify artifacts of a cyber-attack. They will also be expected to participate in several different areas within Security Operations and Incident Response process; these activities can include malware reversing, digital forensics, use case development, security control testing, and hunt plan development.
The Senior Cyber Threat Hunter serves as a member of the GSOC CTI team. Perform all aspects of cyber threat intelligence with a focus on cyber threat hunting, to include:
- Assist with developing core foundational components of the Cyber Threat Hunting program.
- Dedicate primary daily focus to hunt the Experian environment for threats and anomalies with intelligence gathered from CTI sources.
- Develop content that will drive GSOC monitoring and detection (use cases, priority, actionable and relevant intelligence) this includes the creation of Threat Hunting Products (CTITH) to describe and detail analysis.
- Develop processes and procedures for tactical information collection, analysis and dissemination.
- Ensure assignments are managed and completed in an efficient and effective fashion.
- Follow all processes and procedures outlined in the Wiki.
- Closely monitor critical vulnerabilities, threat actors, threat campaigns and threat actor TTPs.
- Develop greater holistic insight and adversarial mapping to MITRE ATT&CK tactics and techniques, Common Vulnerabilities and Exposures (CVEs), Indicators of Attacks (IOAs) / Indicators of Compromise (IOCs).
- Develop a repository of SOPs, playbooks, and checklists for hunting that aligns to MITRE ATT&CK techniques and the availability of current data.
- Save past "hunts" or queries for tracking and collaboration purposes (saved work can transform one-time hunts into persistent queries).
- Assist with Incident Response analysis and forensic investigations when requested.
**Qualifications**:
- 5+ years of experience in a technical security role in one of the following areas: threat detection, incident response, malware analysis, exploit development, and/or red team experience.
- Strong understanding of incident response process, specifically with detection and containment.
- Working knowledge of the Cyber Kill Chain Model, Diamond Model, Course of Action Matrix, and MITRE ATT&CK Matrix and how each methodology can be applied to threat hunting.
- Experience in detecting advanced attack methodologies via log analysis and/or endpoint tools. Experience using event management tools (example: ArcSight, Splunk, or QRadar for analysis and use case development.)
- Understanding of packet analysis and how deep packet inspection toolsets can be used to support threat identification.
- Experience with at least one common scripting or programming languages, such as Python, JavaScript, and/or PowerShell.
- Strong understanding of the Windows file system and registry functions or *NIX operating systems and command line tools.
- Knowledge of common tactics used by attackers and methods for detection.
- Capable of developing detection signatures (YARA, SNORT).
Additional Information
Our benefits include: Medical, life and dental insurance, Asociación Solidarista, International Share Save Plan, Flex Work/Work from home, Paid time off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more.
LI-GJ1
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
- Experian is proud to be an Equal Opportunity and Affirmative Action employer. Our goal is to create a thriving, inclusive and diverse team where people love their work and lo
-
Cfc Cti Senior Cyber Threat Hunter
hace 1 semana
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...
-
Cfc Cti Senior Cyber Threat Hunter
hace 7 días
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Cfc Cti Cyber Threat Hunter
hace 6 días
Heredia, Costa Rica Experian A tiempo completoFull-timeEmployee Status: RegularRole Type: HybridDepartment: Legal & ComplianceSchedule: Full TimeShift: Day Shift**Company Description**:Experian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we...
-
Cfc Cti Cyber Threat Hunter
hace 6 días
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Senior Threat Detection Engineer
hace 6 días
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionAbout us, but we'll be briefExperian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society.We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for.In addition, for the last five years we've been...
-
Sr. Insider Threat Investigator
hace 7 días
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Sr. Cyber Incident Response Analyst
hace 7 días
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Cyber Incident Response Team Lead
hace 11 horas
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...
-
Cyber Incident Response Team Lead
hace 7 días
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Senior Cyber Incident Response Coordinator
hace 7 días
Heredia, Costa Rica Ibm A tiempo completo**Introduction**As an IBM Cloud Senior Cyber Incident Response Coordinator, you will coordinate with IBM CSIRT, the Security Operations Center (SOC), and other security teams to investigate and recover from cyber related threats / incidents.You will oversee the Root Cause Analysis process and ensure preventative actions are in place with the responsible...
-
Cyber Security Engineer
hace 1 semana
Heredia, Costa Rica Equifax A tiempo completo**Equifax is where you can power your possible. If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you. **As a critical team member of the Equifax Cyber Countermeasures Team, you will drive our incident response and analytic capabilities,...
-
Latam Enterprise Operations
hace 7 días
Heredia, Costa Rica Citi A tiempo completo**You're the brains behind our work.** You’re ready to bring your knowledge from the classroom to the boardroom, and Citi wants to help you get there. Whether it’s honing your skills or building your network, we know that success can’t come without growth. Our programs equip you with the knowledge and training you need to play a valuable role on your...
-
Latam Enterprise Operations
hace 6 días
Heredia, Costa Rica Citi A tiempo completo**You're the brains behind our work.**You're ready to bring your knowledge from the classroom to the boardroom, and Citi wants to help you get there.Whether it's honing your skills or building your network, we know that success can't come without growth.Our programs equip you with the knowledge and training you need to play a valuable role on your team, and...
-
Cyber Security Data Engineer
hace 2 semanas
Heredia, Costa Rica Stryker A tiempo completo**Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: **Who we Want**: - ** Dedicated...
-
Cyber Incident Response Delegate
hace 2 semanas
Heredia, Costa Rica IBM A tiempo completo**Introduction** **Your Role and Responsibilities** - Act as a delegate to the IBM Cloud CISO by overseeing cyber incidents in collaboration with IBM CSIRT, Legal, and other various security teams within IBM. - Provide final approvals for the Root Cause Analysis performed post-incident and ensure preventative actions are in place with the responsible...
-
Senior Cyber Analyst Mergers And Acquisitions
hace 7 días
Heredia, Costa Rica Sysco Costa Rica A tiempo completoThis role is responsible for executing Cybersecurity M&A due diligence and leading cyber integration planning, coordination, and reporting while partnering across multiple Cyber, business, and technology cross function teams.**Requirements**:- Execute Cybersecurity M&A due diligence activities partnering with business and technology deal teams to identify...
-
Cti Enterprise Command Center
hace 7 días
Heredia, Costa Rica Citi A tiempo completoThe Infrastructure Group Manager is a senior management-level position responsible for managing and guiding a team that ensures efficient and effective Citi infrastructure in coordination with the Technology Team.The overall objective of this role is to use infrastructure technology knowledge and identified policies to process data, resolve issues and...
-
Cyber Security Awareness Analyst
hace 7 días
Heredia, Costa Rica Stryker Corporation A tiempo completo**Why join Stryker?**:Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific.**Know someone at Stryker?**:**Who we Want**:- ** Analytical problem...
-
Senior Information Security Consultant
hace 7 días
Heredia, Costa Rica Dhl A tiempo completo**About the role**:We're looking for an experienced and passionate Consultant, Information Security "Threat and Vulnerability Management" to join our Information Security Services team!Being part of this team, you will drive our threat and vulnerability management across the technology stack.Your job is to identify and help remediating security threats and...
-
Cyber Security Operations Analyst Intermediate
hace 6 días
Heredia, Costa Rica Equifax A tiempo completo**Cyber Security Operations Analyst**As a Security Operation Center Analyst, you will be required to respond to security incidents, create and maintain documentation and participate in security investigations.You will be able to work with various teams across the organization and around the world and will need to support the Security Operations Center...