Senior Threat Hunter (Remote)
Job Description
Ensuring that no human adversary can operate silently begins with experts harnessing the powerful optics provided by Microsoft 365 Defender, across the attacker kill-chain, coupled with world-class detections. We are looking for a leader to help us harness the power of Microsoft's trillions of security signals to quickly identify and report the latest human adversary behaviors, drive critical context-rich alerts, build new tools and automations in support of hunting objectives, and drive innovations for detecting advanced attacker tradecraft.Responsibilities
- Explore and correlate large data sets to uncover novel attack techniques, monitor and catalog changes in activity group tradecraft, and generate custom alerts for enterprise customers.
- Work with customer support teams to support investigation and response during an enterprise's time of need.
- Collaborate with our data science and threat research teams to develop and maintain accurate and durable cloud-based detections.
- Build hunting tools and automations for use in the discovery of human adversaries.
- 5 + years of experience in a technical role in the areas of Security Operations, Threat Intelligence, Cyber Incident Response, or Penetration Testing/Red Team .
- Advanced knowledge of operating system internals and security mechanisms .
- Experience analyzing attacker techniques that leverage email and cloud-service tactics .
- Skilled working with extremely large data sets, using tools and scripting languages such as: Excel, SQL, Python, Splunk, and PowerBI .
- K nowledge of operating system internals, OS security mitigations & understanding of Security challenges in Windows, Linux, Mac, Android & iOS platforms
- K nowledge of kill-chain model, ATT&CK framework, and modern penetration testing techniques
- Excellent cross-group and interpersonal skills, with the ability to articulate business need for detection improvements
- K nowledge of major cloud and productivity platforms as well as identity systems and related security concerns
- Experienced with curation of Threat Intelligence
- Experienced with direct customer communication in a service delivery role
- A bility to use data to 'tell a story'
- Experience with reverse engineering, digital forensics (DFIR) or incident response, or machine learning models
- Experience with system administration in a large enterprise environment including Windows and Linux servers and workstations, network administration, cloud administration
- Experience with offensive security including tools such as Metasploit, exploit development, Open Source Intelligence Gathering (OSINT), and designing ways to breach enterprise networks
- Additional advanced technical degrees or cyber security certifications such as CISSP, OSCP, CEH, or GIAC certifications
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to, the following specialized security screenings
- Microsoft Cloud Background Check : This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
Date Posted
09/24/2022
Views
6
Similar Jobs
Senior Software Engineer (Java) - NCR Corporation
Views in the last 30 days - 6
NCR Corporation is a leading software and servicesled enterprise provider in the financial retail and hospitality industries They are looking for a Se...
View DetailsSenior Software Engineering Manager - NCR Corporation
Views in the last 30 days - 5
NCR Corporation is a leader in transforming connecting and running technology platforms for selfdirected banking stores and restaurants They are looki...
View DetailsFP&A Manager - Remote - Sharecare
Views in the last 30 days - 6
The job description is for a Manager FP A at Sharecare a digital health company The role involves providing financial reporting and analysis partnerin...
View DetailsSr. Data Analyst/Engineer - Remote - Sharecare
Views in the last 30 days - 11
Sharecare is a digital health company that helps people manage their health They are seeking a Sr Data AnalystEngineer to contribute to a new platform...
View DetailsSr. Director, Data Integration - Remote - Sharecare
Views in the last 30 days - 6
The Sr Director Data Integration is responsible for partnering with thirdparty vendors for data sourcing and managing all businessfunctional and imple...
View DetailsSenior Product Manager - Client - CharterUP
Views in the last 30 days - 6
CharterUP is a leading charter bus platform aiming to disrupt the massive and fragmented bus industry by using proprietary technology to connect bus c...
View Details