Act as a threat intelligence SME in at least one of the following areas: malware analysis, exploit/vulnerability analysis, Advanced Persistent Threats (APTs), digital forensics, incident handling, cybercrime
Support the Threat Management process providing guidance on improvements that can be made to the identification, assessment, and mitigation of threats to the environment
Collect, analyze, and assess technical (IOCs) and non-technical (HUMINT) threat, vulnerability, and security incident-related information made available from platform vendors, 3rd parties, and internal sources to help determine course of action for the Allstate environment
Partner with other security professionals to determine and implement mitigating controls
Generate ad-hoc and scheduled briefs, reports, whitepapers, and presentations on threats and associated activities necessary to protect the environment
Requirements
5+ years’ experience in either threat management, security assurance, or related field
Familiar with industry standard security best practices and threat management processes including technical and non-technical reporting
Experience with threat research, threat indicator sharing (such as STIX/TAXII), vulnerability scanning tools (such as Qualys) and other security tools
Good knowledge of operating systems security (Windows, *nix)
Understanding of secure network/systems configuration management
Understanding of networking concepts and devices (Firewalls, Routers, Switches, Load Balancers, etc.)
Experience programming and scripting
Able to effectively work independently and in a team environment
Able to interact with all levels of management, business, and IT, and is required to act in a professional and confident manner
Self-motivator possessing a high sense of urgency and a high level of integrity
Excellent analytical and problem-solving skills
Excellent communication (oral, written, presentation), interpersonal and consultative skills
Experience with GRC tools such as Archer, and Threat Intel’ tools such as ThreatConnect, helpful but not required
Bachelor’s degree in Information Systems or related field preferred
Obtained certifications in one or more of the following, or relevant experience: GIAC, GCTI, GCIH, CEH, CISSP, CISA.
Benefits
Requires background investigation
Opportunity to challenge the status quo
Support causes that mean the most to you
Opportunity to work on innovative projects
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.