Jobs and Careers
PR

Specialist, Digital Forensics & Incident Response-Threat Hunting

Prudential Financial
United Statesfull_timeVerifiedPosted 12 Jul 2024
💰 $144,900/yr($97,300/yr$144,900/yr)

About the role

Job Classification:

Technology - Information Security

Are you interested in building capabilities that enable the organization with innovation, speed, agility, scalability and efficiency? The Global Technology team takes great pride in our culture where digital transformation is built into our DNA! When you join our organization at Prudential, you’ll unlock an exciting and impactful career – all while growing your skills and advancing your profession at one of the world’s leading financial services institutions.

Your Team & Role

As a Threat Hunting Specialist within the Cyber Defense and Response organization, you will partner with other security professionals to execute threat hunting operations to proactively identify threats within the enterprise network. You will leverage your knowledge, technical skill set and creativity, to analyze and correlate various disparate events across a diverse set of security related logs and telemetry.  In addition to finding evil, you will work to identify and address visibility and logging deficiencies within the network.   

You will work on complex problems in which analysis of situations or data requires an in-depth evaluation of various factors. In addition to applied experience, you will bring excellent problem solving, communication and teamwork skills, along with agile ways of working, strong business insight, an inclusive leadership attitude and a continuous learning focus to all that you do.

Here is What You Can Expect on a Typical Day

  • Plan, document, and execute cyber threat hunting operations to proactively identify cyber related threats that have evaded enterprise defense systems.
  • Continuously research and hunt for tactics, techniques, and procedures leveraged by advanced threat groups, as well as evidence pertaining to the exploitation of emerging vulnerabilities.
  • Continuously research, explore, and document newly onboarded enterprise technologies and data sources to identify new artifacts and analytical methodologies that can be leveraged to detect cyber threats.
  • Leverage operational results to identify, communicate, and mitigate identified threats as well as implement knowledge sharing across various teams.
  • Collaborate with the Cyber Threat Detection Engineering team and assist with the development and deployment of threat detection logic.
  • Collaborate with the Cyber Threat Intelligence team to operationalize threat intelligence for threat hunting operations.
  • Identify and implement necessary tooling and infrastructure to support and evolve the program. Develop scripts, tools, and methodologies to enhance our threat hunting capabilities.
  • Identify process and resiliency improvement areas; propose changes.
  • Bring an applied understanding of relevant and emerging technologies, begin to identify opportunities to provide input to the team and coach others, and embed learning and innovation in the day-to-day
     

The Skills & Expertise You Bring

  • Proven experience executing cyber threat hunting, incident response, or other relevant security operations.
  • Experience analyzing system, network, and application logs/telemetry for attack techniques at all stages of the cyber kill chain and ATT&CK framework.
  • Direct experience working with large datasets and log analysis tools including but not limited to: SIEM, EDR, Python, PowerShell, etc.
  • Demonstrable knowledge of large enterprise environments, network protocols, network devices, operating systems (Windows, macOS, Linux, etc.), and cloud environments.
  • Experience using Splunk’s Search Processing Language (SPL) and Microsoft’s Kusto Query Language (KQL).
  • Familiarity with common enterprise scripting languages (PowerShell, Python, Bash, etc.).
  • Leverage diverse ideas, experiences, thoughts, and perspectives to the benefit of the organization.
  • Ability to learn new skills and knowledge on an on-going basis through self-initiative and tackling challenges.
  • Excellent problem solving, communication and collaboration skills.

Applied experience with several of the following:

  • Cyber Threat Hunting
  • Cyber Detection Engineering
  • Digital Forensics & Incident Response
  • Insider Risk Investigations
  • DFIR Automation & Engineering
  • Cyber Threat Intelligence

Preferred qualifications:

  • Industry relevant certifications such as OSCP, OSCE, OSWE, GPEN, GCIH, GCFA, GREM, GWAPT, or GXPN.

You’ll Love Working Here Because You Can

Join a team and culture where your voice matters; where every day, your work transforms our experiences to make lives better. As you put your skills to use, we’ll help you make an even bigger impact with learning experiences t

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Prudential Financial

View company profile →