Talent.com
Senior Threat Hunter
Senior Threat HunterAllstate Insurance • Chicago, IL, United States
Senior Threat Hunter

Senior Threat Hunter

Allstate Insurance • Chicago, IL, United States
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

At Allstate, great things happen when our people work together to protect families and their belongings from life's uncertainties. And for more than 90 years our innovative drive has kept us a step ahead of our customers' evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection.

Job Description

We are seeking an experienced Senior Threat Hunter to perform, intelligence-driven network defense supporting the monitoring and incident response capabilities and advise governance, technical, and business leadership on results, vulnerabilities, and solutions to mitigate. The role will involve analysis of large amounts of data from vendors and internal sources, including various indicator feeds, SIEM, and several threat intelligence tools, etc.

This individual will perform the functions of threat operations and hunting and serve as a liaison for Threat Services for the Global Security Fusion Center (GSFC), and mentor the incident handling, incident response, and forensics teams.

Key Responsibilities

Design and run custom analysis models on security event information to discover active threats.

Identify (hunting) security nuances and abnormalities in the environment.

Develop use cases and actionable content to identify security issues that are currently not alerted within the environment.

Lead projects and assignments

Provide custom tool design to assist in analysis and investigations.

Perform as an Information Security resource in three or more of the following areas :

Threat Intelligence

Incident Response

Log analysis (statistical modeling, correlation, pattern recognition, etc.)

Microsoft platform (Server, workstation, applications)

Open Systems platforms (Linux, UNIX, VMWare ESX, Nutanix)

Web Application

Networking (firewalls, IDS / IPS, packet capture)

Databases (Oracle, SQL Server, DB2, IMS)

SIEM

Reverse Engineering / Malware analysis

Collaborate and support teammates and outside teams with regard to threat hunting techniques / issues.

Communication / build rapport with other divisions and various peers

Identify needs, drivesolutions, and provide guidance in an autonomous manner.

Job Qualifications

5+ years overall technical experience in threat hunting, threat intelligence, incident response, security operations, or related information security field

2+ years' experience in penetration testing, ethical hacking, exploit writing, and / or vulnerability management

Bachelor's and / or Master's Degree in IT Security, Engineering, Computers Science, or related field / experience

Deep understanding of common network and application stack protocols, including but not limited to TCP / IP, SMTP, DNS, TLS, XML, HTTP, etc.

Advanced experience with security operations tools, including but not limited to :

SIEM (e.g., Splunk, ArcSight)

Network analysis (e.g., Net Witness, Palo Alto)

Signature development / management (e.g., Spunk rules, Snort rules, Yara rules)

EDR solutions (e.g., CrowdStrike, Tanium, Defender)

Broad experience with various common security infrastructure tools (NIDS, HIPS, EDR, etc.

Scripting experience related to system administration and security operations (Python, Bash, PowerShell, Perl, C / C++)

Excellent analyticaland problem-solving skills, a passion for research and puzzle-solving

Strong communication (oral, written, presentation), interpersonaland consultative skills

Leadership and mentorship skills

Additional Desirable Criteria

Experience hunting in AWS and / or Azure environments

Deep understanding of large, complex corporate network environments

Strong knowledge or experience in penetration testing, ethical hacking, exploit writing, and / or vulnerability management

Knowledge or experience in application design / engineering, including but not limited to programming / scripting, Windows / Linux system administration, RDBMS / NoSQL database administration, etc.

Recent experience with malware analysis and reverse engineering

Obtained certifications in several of the following : SANS GIAC courses, CEH, CISSP, OSCP, or tool-specific certifications

#LI-JJ1

Skills

Cyber Incident Response, Cybersecurity Operations, Cyber Threat Analysis, Cyber Threat Hunting, Cyber Threat Intelligence, Endpoint Detection and Response (EDR), IT Problem Solving, IT Security Operations, Penetration Testing, Results-Oriented, Scripting, Security Incident Response, SIEM Tools, Stakeholder Management, Threat Detection

Compensation

Compensation offered for this role is $95,700.00 - 170,925.00 annually and is based on experience and qualifications.

The candidate(s) offered this position will be required to submit to a background investigation.

Joining our team isn't just a job - it's an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger - a winning team making a meaningful impact.

Allstate generally does not sponsor individuals for employment-based visas for this position.

Effective July 1, 2014, under Indiana House Enrolled Act (HEA) 1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a member of a reserve component.

For jobs in San Francisco, please click " here " for information regarding the San Francisco Fair Chance Ordinance.

For jobs in Los Angeles, please click " here " for information regarding the Los Angeles Fair Chance Initiative for Hiring Ordinance.

To view the "EEO is the Law" poster click " here ". This poster provides information concerning the laws and procedures for filing complaints of violations of the laws with the Office of Federal Contract Compliance Programs

To view the FMLA poster, click " here ". This poster summarizing the major provisions of the Family and Medical Leave Act (FMLA) and telling employees how to file a complaint.

It is the Company's policy to employ the best qualified individuals available for all jobs. Therefore, any discriminatory action taken on account of an employee's ancestry, age, color, disability, genetic information, gender, gender identity, gender expression, sexual and reproductive health decision, marital status, medical condition, military or veteran status, national origin, race (include traits historically associated with race, including, but not limited to, hair texture and protective hairstyles), religion (including religious dress), sex, or sexual orientation that adversely affects an employee's terms or conditions of employment is prohibited. This policy applies to all aspects of the employment relationship, including, but not limited to, hiring, training, salary administration, promotion, job assignment, benefits, discipline, and separation of employment.

serp_jobs.job_alerts.create_a_job

Senior Threat Hunter • Chicago, IL, United States

Job_description.internal_linking.related_jobs
Remote Sales & Trading Associate - AI Trainer ($50-$60 / hour)

Remote Sales & Trading Associate - AI Trainer ($50-$60 / hour)

Data Annotation • Calumet City, Illinois
serp_jobs.filters.remote
serp_jobs.job_card.full_time +1
We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel CT Technologist

Travel CT Technologist

Malone Healthcare - Nursing • Hazel Crest, IL, US
serp_jobs.job_card.full_time
Malone Healthcare - Nursing is seeking a travel CT Technologist for a travel job in Hazel Crest, Illinois.Job Description & Requirements. CT experience in hospital setting.Active BLS, ARRT-CT, a...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

AlliedTravelNetwork • Zion, IL, US
serp_jobs.job_card.full_time
AlliedTravelNetwork is working with LRS Healthcare to find a qualified MRI Tech in Zion, Illinois, 60099!.Ready to start your next travel adventure? LRS Healthcare offers a full benefits package, 2...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel Interventional Radiology Technologist

Travel Interventional Radiology Technologist

Alliance Services, Inc. • Hazel Crest, IL, US
serp_jobs.job_card.full_time
Interventional Radiology Technologist for a travel job in Hazel Crest, Illinois.Job Description & Requirements.Interventional Radiology Technologist. The ideal candidate must have at least 2 yea...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Travel Interventional Radiology (IR) - $2,964 per week in Hazel Crest, IL

Travel Interventional Radiology (IR) - $2,964 per week in Hazel Crest, IL

Medical Solutions • Hazel Crest, IL, US
serp_jobs.job_card.full_time
A facility in Hazel Crest, IL is seeking its next amazing IR Technologist (Interventional Radiology).Read on if this sounds like your perfect fit!. Nurses and allied healthcare professionals are in ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel Physical Therapist

Travel Physical Therapist

CompHealth Inc. • Highland Park, IL, US
serp_jobs.job_card.permanent
Physical Therapist for a travel job in Highland Park, Illinois.Job Description & Requirements.Some locum assignments can be as short as a day, others, years. Some are far from home, others are l...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Travel Physical Therapist (PT) - $1,820 to $3,000 per week in Highland Park, IL

Travel Physical Therapist (PT) - $1,820 to $3,000 per week in Highland Park, IL

CompHealth • Highland Park, IL, US
serp_jobs.job_card.full_time
Some locum assignments can be as short as a day, others, years.Some are far from home, others are local.Whatever it is you're looking for, we offer true opportunities, not just postings.CompHealth ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel Physical Therapist (PT) - $2,045 per week in Highland Park, IL

Travel Physical Therapist (PT) - $2,045 per week in Highland Park, IL

Triage Staffing LLC • Highland Park, IL, US
serp_jobs.job_card.full_time
Travel Rehab : Physical Therapy Highland Park.Location : Highland Park.Shift Details : 8H Days (12 : 00 AM-12 : 00 PM).Length : 13 WEEKS 13 weeks. Apply for specific facility details.serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
CT Technologist I - Multiple Locations

CT Technologist I - Multiple Locations

Endeavor Health • Highland Park, Illinois, US
serp_jobs.job_card.full_time +1
The hourly pay rate offered is determined by a candidate's expertise and years of experience, among other factors.Not specific to one campus! hiring at multiple locations •.CT Technologist openings ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

LRS Healthcare • Zion, IL, US
serp_jobs.job_card.full_time
Ready to start your next travel adventure? LRS Healthcare offers a full benefits package, 24 / 7 support, and a responsive, traveler-first culture. What are you waiting for? Apply today!.Valid license...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel Speech Language Pathologist (SLP) in Zion, IL

Travel Speech Language Pathologist (SLP) in Zion, IL

Titan Medical Group • Zion, IL, US
serp_jobs.job_card.full_time
Travel - Speech Language Pathologist.Titan Medical is looking for travelers to fill a Travel Speech Language Pathologist position for a 13 week assignment in Zion, IL! Call Titan for additional det...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Associate, FRM Risk Advisory Services

Senior Associate, FRM Risk Advisory Services

The Options Clearing Corporation • Chicago, IL, United States
serp_jobs.job_card.full_time
Work with the Credit Risk, Market Risk and Default, Pricing and Margins, Stress Testing and Liquidity and Quantitative Risk Management teams to support analytical activities around controls rationa...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Travel Echo Tech - $2,620 to $2,928 per week in Palos Heights, IL

Travel Echo Tech - $2,620 to $2,928 per week in Palos Heights, IL

Prime Time Healthcare • Palos Heights, IL, US
serp_jobs.job_card.full_time
Now Hiring : Allied Healthcare Ultrasound Echo - Palos Heights, IL.Contact us for Pay Information.Actual amount dependent upon market adjustments. Are you a passionate Allied Healthcare professional ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel MRI Tech - $2302 / Week

Travel MRI Tech - $2302 / Week

LRS Healthcare - Allied • Zion, IL, US
serp_jobs.job_card.full_time
LRS Healthcare - Allied is seeking an experienced MRI Tech for an exciting Travel Allied job in Zion, IL.Shift : Inquire Start Date : ASAP Duration : 13 weeks Pay : $2302 / Week.Ready to start your nex...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel Behavioral Health RN

Travel Behavioral Health RN

Fusion Medical Staffing • Harvey, Illinois, United States
serp_jobs.job_card.full_time
Fusion Medical Staffing Location : .Facility in Harvey, Illinois Job Details.Fusion Medical Staffing is seeking a skilled Behavioral Health RN for a 13-week travel assignment in Harvey, Illinois.As a...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel Nurse RN - Endoscopy - $1,996 to $2,196 per week in Highland Park, IL

Travel Nurse RN - Endoscopy - $1,996 to $2,196 per week in Highland Park, IL

TravelNurseSource • Highland Park, IL, US
serp_jobs.job_card.full_time
TravelNurseSource is working with Titan Medical Group to find a qualified Endoscopy RN in Highland Park, Illinois, 60037!. Travel Nurse RN - GI / Endoscopy.Highland Park, IL, United States.Titan Medic...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

AlliedTravelCareers • Zion, IL, US
serp_jobs.job_card.full_time
AlliedTravelCareers is working with LRS Healthcare to find a qualified MRI Tech in Zion, Illinois, 60099!.Ready to start your next travel adventure? LRS Healthcare offers a full benefits package, 2...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Threat Intelligence & Incident Response

Threat Intelligence & Incident Response

TEKsystems • Chicago, IL, United States
serp_jobs.job_card.full_time
Monitor and analyze security events, incidents, and vulnerabilities to identify potential threats and risks to the organization's IT infrastructure. Support the Threat Intel and Incident Response te...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted