As the manager of the global threat hunting team in Cybersecurity Operations Attack Analysis you will be leading a talented team of threat hunters distributed globally and contribute significantly to safeguarding the organization's digital assets and infrastructure by proactively detecting, assessing, and responding to threats, vulnerabilities, and security incidents. You will regularly collaborate with cross-functional teams to develop a coordinated approach to security, ensuring the integrity, confidentiality, and availability of sensitive data and systems. You will apply advanced analytical, technical, and problem-solving skills to enable operational excellence and implement innovative solutions to address complex security challenges. As the manager of the Global Threat Hunting Operations team you will develop and execute a threat hunting strategy aligned to the wider global security operations function.
Job responsibilities
Provide technical guidance and mentorship to a global team of threat hunters, ensuring effective management and support in their roles. Develop a threat hunting strategy to lead an already mature threat hunting team within the global security operations team Execute and influence the design of comprehensive security strategies, policies, and procedures to enhance threat detection capabilities and protect the organization's digital assets and infrastructure from cybersecurity threats Proactively monitor and analyze complex data and systems to identify indicators of vulnerabilities and compromises, utilizing advanced tools and techniques to detect anomalies and contribute to the development of strategies for security investigation, threat mitigation, and incident response Collaborate with cross-functional teams to ensure a coordinated approach to security, sharing insights, and promoting best practices across the organization Evaluate and enhance the organization's security posture by staying current with industry trends, emerging threats, and regulatory requirements, driving innovation and process improvementsRequired qualifications, capabilities, and skills
5+ years of experience in cybersecurity operations, with a focus on threat detection, incident response, and security infrastructure management Experience managing technical teams, preferably globally distributed technical team. Excellent verbal and written communication skills and the ability to communicate and brief senior leadership. Demonstrated expertise in multiple security domains, including network security, malware analysis, threat hunting, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques. Experience with analyzing Endpoint Detection & Response (EDR) telemetry and excellent knowledge of operating system internals (Windows, Linux, macOS). Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-prem, cloud, or hybrid environments Excellent written and verbal communication skills with the ability to describe security event details and technical analysis to audiences within the cybersecurity organization and other technology groups. Strong understanding of attack techniques and how these are employed by threat actors to compromise systems and networks.Preferred qualifications, capabilities, and skills
Threat hunting in a large, enterprise network both as an individual and as a member of a global threat hunting team. Managing a technical and mature threat hunting team.