Senior Cyber Threat Hunter

Detalles de la oferta

ROLE SUMMARY

The Pfizer Global Information Security (GIS) organization protects critical information assets by employing world-class talent, implementing top security controls, providing outstanding leadership, and maintaining a culture of colleague empowerment that supports Pfizer's mission of delivering breakthroughs that change patients' lives. GIS teams continuously work to detect threats faster, respond decisively, and make Pfizer harder to hack.

The Cyber Threat Hunting (CTH) team is responsible for identifying unrealized threats to the company that may have evaded security controls and driving improvements to our security posture. This team uses vast collections of data, a comprehensive toolset, and creative investigative techniques to identify & analyze potential threats. In collaboration with other GIS teams, the CTH team also contributes to the development and implementation new security controls and detections.

The incumbent will be a senior member of the Pfizer GIS Cyber Threat Hunting team. They will leverage an advanced level of knowledge & experience to perform threat hunts using a dynamic collection of tools, data, and processes. They will assist with the development of new threat hunting exercises and management of the team backlog. The incumbent will contribute to the development of new detections and alerts that identify adversary activity. They will also contribute to - and may lead - various team projects and perform additional duties related to the CTH mission.

GIS leadership strives to maintain a positive, fun, welcoming, collaborative, flexible, and supportive culture of enablement that lifts people up and helps them realize their full potential. This is achieved by maintaining an ongoing focus on our company values - Courage, Excellence, Equity, and Joy - and by maintaining a strong culture of enablement. This is a great place to work where colleagues are provided with opportunities to grow, receive acknowledgement of their achievements, and are rewarded for hard work.

This is an individual contributor technical role that reports to the Senior Manager of Cyber Threat Hunting & Automation Enablement within the GIS Cyber Threat Analysis & Response organization. The position involves engagement with cross-functional colleagues and external business partners.

ROLE RESPONSIBILITIES
- Maintain awareness of threats targeting pharmaceutical companies and related industries, such as manufacturing and healthcare.
- Contribute to the identification of new, relevant threat hunting opportunities.
- Contribute to the management of the team backlog.
- Perform all work in accordance with documented policies & procedures.
- Maintain current, accurate, and complete documentation for all phases of threat hunting exercises.
- Independently perform accurate & complete analysis of cyber threat hunt findings using defensible & creative investigative techniques.
- Leverage cyber threat hunt outcomes to develop detections & other security controls that proactively mitigate risk.
- Conceptualize and develop solutions for moderately complex challenges encountered by the team.
- Contribute to the identification, design, and/or development of new automation capabilities and process improvements that help mature the CTH program.
- Provide training & support to junior members of the team.
- Contribute to the ongoing development & improvement of the CTH program.
- Perform all work in alignmentwith the Agile operating model established by the organization and adopted by the team.
- Maintain awareness of team procedures, emerging threats, organization announcements, technical solution operating practices, and team communication by regularly reviewing information from various forms of documentation, threat intelligence, & business communication.

BASIC QUALIFICATIONS
- BS in Information Security, Computer Sciences, Information Systems, Engineering, Sciences, or related field
- Level of professional experience consistent with 3+ years of employment in a corporate environment supporting information security, information technology, or related functions
- Experience querying, correlating, & analyzing large-scale datasets using tools such as Splunk, SQL, Python, and/or Microsoft Excel
- Extensive experience performing analysis of activity on Microsoft Windows endpoints, including process, network, registry, and file system events, along with related forms of activity
- Demonstrated history of being a creative thinker, curious, detail-oriented, and collaborative
- Ability to clearly communicate potentially complex information in a concise, accurate, and complete manner in both written and verbal form
- Ability to communicate effectively in a team setting and establish a rapport with a diverse, globally dispersed group of information security professionals
- Commitment to training, self-paced study, and maintaining proficiency in the cybersecurity domain

PREFERRED QUALIFICATIONS
- Level of experience consistent


Salario Nominal: A convenir

Fuente: Whatjobs_Ppc

Requisitos

Maintenance Technician

Our client is an environmental company which provides services throughout Canada. - **Qualifications**:_ - Post-Secondary education in Mill Wright - Heavy eq...


Kavin Group - San José

Publicado a month ago

Digital Tools Analyst

Importante Multinacional del Sector de Consumo Masivo busca para su equipo de trabajo el siguiente perfil: DIGITAL TOOLS ANALYST PARA COSTA RICA El propósit...


Intalent - San José

Publicado a month ago

Backend Engineer

We value diverse opinions and open dialogue to spur ideas. We believe in working closely together to achieve our goals, and since our launch, we have been fl...


Sysdig - San José

Publicado a month ago

Global Process Integration And Controls Manager

ROLE SUMMARY The Meetings, External Engagements, & Travel (MEET) Process Integration & Controls Manager is responsible for overseeing the implementation and...


Pfizer - San José

Publicado a month ago

Built at: 2024-11-15T01:48:32.972Z