This employer will not sponsor applicants for the following work visas: F-1 student, H-1B worker, O-1 worker, TN worker, E-3 worker.
Summary:
The Cyber Intel Threat Hunter Expert reviews security events to identify and prioritize potential threats and identify trends utilizing various tools and technologies. Analyze available data sources, security tools, and threat trends to identify attacks against the enterprise. Perform incident response, issue resolution, and assessment or communication of security risks to the enterprise. Cyber Intel Threat Hunter Expert will recommend and implement defensive measures in security technologies including WAF, NAC, IPS/IDS, NGFW, Anti-Virus, etc. You will work closely with other teams within Cybersecurity and with IT Operations.
Duties and Responsibilities:
Provide leadership and training opportunities for entry level Incident Response AnalystsProactively identify, remediate, and communicate security threats occurring in the Huntington environmentParticipate in the day-to-day security operations monitoring and response from the Cybersecurity Operations Center.Perform malware analysis, reverse engineering, and de-obfuscation techniquesEvaluate, respond, and mitigate alerts that originate from the SIEM and the Cybersecurity product suite, e.g. NGFWs, IDS/IPS, Anti-virus, Web Application Firewalls, NAC Solution, etc.Implement or recommend mitigations including the creation and development of new alerts and rules within the various cyber security tools.Be able to analyze and identify malicious activity during the various attack stages.Maintain a high level of technical expertise on Cyber Security defense-in-depth technology and best practices by performing ongoing research and engagement to maintain awareness of industry trends, best practices.Collaborate with the Cyber Security Engineering and IT Operations teams.Participate in the day-to-day security operations monitoring and response from the Cyber Security Operations Center.Perform malware analysis, reverse engineering, and de-obfuscation techniques .Implement or recommend mitigations including the creation and development of new alerts and rules within the various cyber security tools.Performs other duties as assigned.Basic Qualifications:
Bachelors Degree5+ years of experience in Cybersecurity1+ years data analytics experience5 years Threat HuntingPreferred Qualifications:
Expert understanding of common attack vectors, DDoS attacks, Phishing, web & application attacks, and malwareFamiliarity with memory captures and analysis of themExperience and familiarity with tactical triage of binaries for surface and run time analysis for incident response purposesExpert knowledge of common critical network protocols and layer 7 technologies such as SMTP, HTTP, HTTP/S, SSL/TLS, DNS, FTP, SSH, and othersExpert knowledge of a SIEM and various cyber security technologies such as EDR, AV, IDS/IPS, and WAFsExpert Knowledge with advanced persistent threats and their tactics, techniques, and proceduresExpert Knowledge with the incident response Kill ChainFundamental understanding of Windows, Mac OSX, and Linux operating systemsFundamental understanding of OSI model, basic networking and troubleshooting conceptsExperience with programming or scripting, including PowerShell, Bash, Python, Yara, and PerlExpert knowledge of incident response frameworks and handling proceduresUnderstanding and knowledge of various log formats from a variety of network and computer devicesKnowledge of Cyber risks and threats related to Cyber attackersKnowledge of recent Cyber events and interpreting kill chain process and threat impactsExcellent presentation, analytical, and critical-thinking skillsOccasional travel may be required (<10%)#LI-SG1
#LI-BM1
Exempt Status: (Yes = not eligible for overtime pay) (No = eligible for overtime pay)
Workplace Type:
OfficeOur Approach to Office Workplace Type
Certain positions outside our branch network may be eligible for a flexible work arrangement. We’re combining the best of both worlds: in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team.
Huntington is an Equal Opportunity Employer.
Tobacco-Free Hiring Practice: Visit Huntington's Career Web Site for more details.
Note to Agency Recruiters: Huntington Bank will not pay a fee for any placement resulting from the receipt of an unsolicited resume. All unsolicited resumes sent to any Huntington Bank colleagues, directly or indirectly, will be considered Huntington Bank property. Recruiting agencies must have a valid, written and fully executed Master Service Agreement and Statement of Work for consideration.