Cfc Cti Senior Cyber Threat Hunter
hace 5 horas
Company Description
Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime.
We have 20,000 people operating across 44 countries and every day we’re investing in new technologies, talented people, and innovation to help all our clients maximize every opportunity.
**Job Description**:
Experian Cyber Fusion Center (CFC) is seeking a Senior Cyber Threat Hunter to be part of a global Cyber Threat Hunting (CTH) team that promotes timely and actionable threat intelligence information. This is an incredible opportunity to join a world-class organization and join a global team of highly skilled and innovative people to help us stay ahead of adversaries. The CTH team focuses on defending against emerging threats, supporting cyber investigations, and delivering situational awareness to the business.
The Senior Cyber Threat Hunter serves as a member of the CTH team. Perform all aspects of cyber threat hunting from preparation, hunting, and reporting to include:
- Develop or contribute to developing core foundational components of the Cyber Threat Hunting program
- Dedicate primary daily focus to hunt the Experian environment for threats and anomalies with intelligence gathered from Cyber Threat Intelligence sources
- Brief findings to senior level management, technical and non-technical leaders, as well as cybersecurity, risk, human resources, legal, and information technology practitioners
- Conduct proactive and targeted hunting activities to identify and mitigate advanced threats that have bypassed traditional security controls with intelligence gathered from Cyber Threat Intelligence (CTI) sources, incident response, and forensic teams
- Develop content that will drive CFC monitoring and detection (use cases, priority, actionable and relevant intelligence) this includes the creation of CTH products to describe and detail analysis
- Develop processes and procedures for tactical information collection, analysis, processing, production, and dissemination
- Develop greater holistic insight and adversarial mapping to MITRE ATT&CK® tactics and techniques, Common Vulnerabilities and Exposures (CVEs), Indicators of Attacks (IOAs) / Indicators of Compromise (IOCs)
- Ensure assignments are completed in an efficient and effective fashion; follow all processes and procedures outlined in the Wiki, SharePoint, and MS Teams
- Closely monitor critical vulnerabilities, threat actors, threat actor campaigns, threat actor TTPs, and changes in the cyber threat landscape
- Save past "hunts" or queries for tracking and collaboration purposes (saved work can transform one-time hunts into persistent queries)
- Develop and maintain a repository of SOPs, playbooks, and checklists for hunting that aligns with MITRE ATT&CK® techniques and the availability of current data
- Assist with Incident Response analysis and forensic investigations when requested
**Qualifications**:
- 8+ years of experience or equivalent skill level in a technical security role with a focus on threat hunting, threat intelligence, incident response, digital forensics, or related areas
- In-depth knowledge of advanced threat actors, attack techniques, and malware analysis
- Strong understanding of incident response processes, specifically with detection, response, and containment
- Working knowledge of the Cyber Kill Chain Model, Diamond Model, Course of Action Matrix, and MITRE ATT&CK Matrix® and how each methodology can be applied to cyber threat hunting
- Extensive experience in detecting advanced attack methodologies via log analysis and/or endpoint tools, as well as event management tools, such as ArcSight, Splunk, or QRadar
- Deep understanding of and ability to conduct packet analysis with deep packet inspection toolsets to support threat identification
- Experience with at least one common scripting or programming language, such as Python, JavaScript, and/or PowerShell
- Strong understanding of the Windows, Linux / *NIX, and macOS operating systems, as well as command-line tools
- Strong knowledge of common tactics, techniques, and procedures used by threat actors and the tools and methods to detect and find them
- Capable of developing detection signatures (YARA, SNORT)
Additional Information
Our benefits include: Medical, life and dental insurance, Asociación Solidarista, International Share Save Plan, Flex Work/Work from home, Paid time off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more.
LI-GJ1
Experian Careers - Creating a better tom
-
Sr. Insider Threat Investigator
hace 1 semana
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...
-
Cyber Intelligence Threat Modeler
hace 7 meses
Heredia, Costa Rica Stryker A tiempo completo**Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: As a Threat Modeler at Stryker, you play a...
-
Senior Cyber Incident Response Coordinator
hace 2 semanas
Heredia, Costa Rica IBM A tiempo completo**Introduction** As an IBM Cloud Senior Cyber Incident Response Coordinator, you will coordinate with IBM CSIRT, the Security Operations Center (SOC), and other security teams to investigate and recover from cyber related threats / incidents. You will oversee the Root Cause Analysis process and ensure preventative actions are in place with the responsible...
-
Cyber Security Engineer
hace 1 día
Heredia, Costa Rica Equifax A tiempo completo**Equifax is where you can power your possible. If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you. **As a critical team member of the Equifax Cyber Countermeasures Team, you will drive our incident response and analytic capabilities,...
-
Cyber Security Data Engineer
hace 3 días
Heredia, Costa Rica Stryker A tiempo completo**Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: **Who we Want**: - ** Dedicated...
-
Senior Insider Risk Analyst
hace 8 meses
Heredia, Costa Rica Experian A tiempo completoFull-time Employee Status: Regular Role Type: Hybrid Department: Legal & Compliance Schedule: Full Time Shift: Day Shift **Company Description**: - Experian is the world’s leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society. We are thrilled to share that FORTUNE...
-
Senior Insider Risk Analyst
hace 8 meses
Heredia, Costa Rica Experian A tiempo completo**Company Description** Experian is the world’s leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society. We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for. In addition, for the last five years we’ve been named in the 100...
-
Cti Enterprise Command Center
hace 3 semanas
Heredia, Costa Rica Citi A tiempo completoThe Infrastructure Group Manager is a senior management-level position responsible for managing and guiding a team that ensures efficient and effective Citi infrastructure in coordination with the Technology Team. The overall objective of this role is to use infrastructure technology knowledge and identified policies to process data, resolve issues and...
-
Cyber Incident Response Delegate
hace 2 días
Heredia, Costa Rica IBM A tiempo completo**Introduction** **Your Role and Responsibilities** - Act as a delegate to the IBM Cloud CISO by overseeing cyber incidents in collaboration with IBM CSIRT, Legal, and other various security teams within IBM. - Provide final approvals for the Root Cause Analysis performed post-incident and ensure preventative actions are in place with the responsible...
-
Senior Cyber Analyst Mergers and Acquisitions
hace 7 meses
Heredia, Costa Rica Sysco Costa Rica A tiempo completoThis role is responsible for executing Cybersecurity M&A due diligence and leading cyber integration planning, coordination, and reporting while partnering across multiple Cyber, business, and technology cross function teams. **Requirements**: - Execute Cybersecurity M&A due diligence activities partnering with business and technology deal teams to...
-
Senior Information Security Consultant
hace 2 semanas
Heredia, Costa Rica DHL A tiempo completo**About the role**: We’re looking for an experienced and passionate Consultant, Information Security “Threat and Vulnerability Management” to join our Information Security Services team! Being part of this team, you will drive our threat and vulnerability management across the technology stack. Your job is to identify and help remediating security...
-
Cybersecurity Incident Response
hace 6 días
Heredia, Costa Rica Re:Sources Global A tiempo completoCompany Description **Job Description**: The Senior Associate, Information Security is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to...
-
Intern
hace 7 meses
Heredia, Costa Rica Moody's A tiempo completoFunctional Responsibilities: - Investigate security incidents and events, using SIEM and other tools; collect evidence and work with different teams to isolate and/or remediate as necessary. - Analyze, correlate and action on data from subscription and public cyber intelligence services, develop tactics to combat future threats. - Communicate and escalate...
-
Sr. Cyber Incident Response Analyst
hace 3 semanas
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...
-
Cybersecurity Technical Team Lead
hace 7 meses
Heredia, Costa Rica Sysco Costa Rica A tiempo completo**Requirements**: - Ensure incident identification, assessment, quantification, reporting, communication, mitigation, and monitoring. - Work collaboratively with other cybersecurity teams and business units. - Drive the implementation of emerging threat intelligence (IOCs, updated rules, etc.) to identify affected systems and the scope of the attack. -...
-
Cybersecurity Tier 2
hace 7 meses
Heredia, Costa Rica Sysco Costa Rica A tiempo completoCyber Security Analyst is responsible for the real-time identification and alerting of information security events that pose an immediate risk to Sysco’s employees, customers, suppliers, shareholders, partners, or business operations. **Requirements**: - Cybersecurity SOC Tier 2 analyst must be able to do the following: - Correlate threat data from...
-
Senior Application Support Specialist
hace 7 días
Heredia, Costa Rica DHL A tiempo completoWould you like to be part of DHL IT Services?** **Our Solution Support team is looking for a new team member. As a Senior Application Support Specialist you will provide on-site, on-call support activities for Customer Service Module of ServiceNow Application and ensure that all agreed targets, SLA's and Metrics are met. **What you will do**: - Prioritize...
-
Unix Risk
hace 7 meses
Heredia, Costa Rica Citi A tiempo completo**Who are we?**: Citi Technology Infrastructure (CTI) provides the products and services that enable Citi's workforce, along with the majority of the financial solutions that Citi's customers rely on. We provide the critical technical foundation for Citi's operations through the infrastructure that runs business and general user computing services. We do...
-
Senior Security Operations Analyst
hace 2 semanas
Heredia, Costa Rica Encora A tiempo completoThis is an exciting time for our Information Security team. In this position you will be an integral part of a developing enterprise Information Security Program. Your focus will be on security threat identification and incident escalation activities, as well as working with engineers to design and implement more effective security monitoring solutions. As a...
-
Security Lead Engineer
hace 2 semanas
Heredia, Costa Rica Auxis A tiempo completoJob Summary: Security Lead Engineer is responsible for the provisioning, deployment, configuration, and administration of many different pieces of network and security-related hardware and software. Security Lead Engineer is also responsible to mitigate any potential threats that become evident, but also to strategize and prepare before any security threat...