About the role
AI summarisedThe role is for an AVP/SA Cyber Threat Hunter in the Information Security Services division of a bank's Group Technology function. The position involves proactively hunting for advanced cyber threats, analyzing security incidents, and improving detection capabilities.
BusinessFull-timeGeneral
Key Responsibilities
- Proactively hunt for advanced cyber threats and anomalies across the bank's network, endpoints, and cloud environments.
- Develop and execute threat hunting hypotheses based on threat intelligence and emerging attack patterns.
- Analyze security events and logs to identify indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs).
- Collaborate with incident response teams to contain and remediate identified threats.
- Create and maintain threat hunting playbooks and standard operating procedures.
- Provide recommendations to enhance detection and monitoring capabilities.
- Stay current with the latest cyber threat landscape, attack methodologies, and defensive technologies.
Requirements
- Minimum 5 years of experience in cyber security, with at least 2 years in threat hunting or incident response.
- Strong understanding of network protocols, operating systems, and security architectures.
- Proficiency in using security information and event management (SIEM) tools and log analysis.
- Experience with threat intelligence platforms and frameworks such as MITRE ATT&CK.
- Knowledge of scripting languages (e.g., Python, PowerShell) for automation and data analysis.
- Relevant certifications such as CISSP, GIAC, or OSCP are preferred.
- Excellent analytical and problem-solving skills.
- Strong communication and teamwork abilities.