Lead Cyber Threat Hunt Detection Response Engineer

at  Raymond James Financial Inc

Vancouver, BC, Canada -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate14 Oct, 2024USD 240000 Annual14 Jul, 2024N/AGood communication skillsNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

LEAD CYBER THREAT HUNT DETECTION RESPONSE ENGINEER

  • 2402251
    At Raymond James, we develop, we collaborate, we decide, we deliver, and we improve together.
    Raymond James Ltd. is Canada’s leading independent investment dealers offering high quality investment products and services to Canadians seeking customized solutions to their wealth management needs.

TO QUALIFY FOR THIS OPPORTUNITY YOU POSSESS:

  • S. in Computer Science, Computer Engineering, MIS, or related degree and a minimum of three (3) years of related experience in Information Security or an equivalent combination of education, training and experience. Experience should include a minimum of two (2) years in conducting Cyber Network Defense and a minimum of three (3) years of experience with incident response methodologies, malware analysis, penetration testing, scripting and/or forensics.
  • Preferred experience includes a minimum of four (4) years in conducting Cyber Network Defense, a minimum of three (3) years of experience with incident response methodologies, malware analysis, penetration testing, scripting and/or forensics and four (4) years of experience with in-depth forensic and intrusion analysis
  • Proficient with adversary techniques, tactics and procedures and can effectively map a TTP to the MITRE attack framework.
  • Systems administrator experience in Linux, Unix, Windows or OSX operating systems
  • Knowledge of networking and the common network protocols
  • Demonstrated ability to create complex scripts, develop tools, or automate processes in Splunk SPL, PowerShell, or Python
  • One or more of the following certifications or the ability to obtain within 1 year:
  • OSCP – Offensive Security Certified Professional
  • OSCE – Offensive Security Certified Expert
  • GXPN – Exploit Researcher and Advanced Penetration Testing
  • GREM – GIAC Reverse Engineering Malware
  • GCFA – GIAC Certified Forensic Analyst
  • CISSP - Certified Information Systems Security Professional
  • Knowledge of the following highly preferred:
  • Knowledge of vulnerabilities and a comfort in manipulating exploit code for analysis
  • Operating systems, such as Windows, Linux, or OSX
  • Forensic and analytical techniques
  • Networking and the common network protocols
  • Demonstrated ability to create complex scripts, develop tools, or automate processes
  • Demonstrated ability to perform static and dynamic malware analysis
  • Demonstrated ability to analyze large data sets and identify anomalies
  • Demonstrated ability to quickly create and deploy countermeasures under pressure
  • Familiarity with common infrastructure systems that can be used as enforcement points

How To Apply:

Incase you would like to apply to this job directly from the source, please click here

Responsibilities:

HOW DOES THE ROLE IMPACT THE ORGANIZATION?

The financial services industry is constantly under attack by sophisticated cyber adversaries that range from nation states to criminals. In response, Raymond James trusts the Cyber Threat Center (CTC) with ensuring all equities are secure against all tiers of cyber adversaries. We are the central hub for Computer Network Operations and are on the front lines of security incident response, threat hunting, and intelligence. You will be working with emerging technologies to solve challenging security problems in a fast-paced and continuously evolving environment, while helping steer the direction and evolution of the team. This highly visible team within the organization evaluates threats to the environment and dynamically adjusts to the ever-changing threat landscape by applying practical security knowledge to developing new detective measures to protect the firm.

WHAT WILL YOUR ROLE BE RESPONSIBLE FOR?

  • Role is highly focused on finding the unknown using a keen sense of awareness, deep understanding of system operations, networks, and adversaries’ techniques. You are highly motivated to search for the “needle in the haystack.”
  • Design, develop and maintain threat detection content for Raymond James enterprise.
  • Applies business knowledge and acute critical thinking to understand the usage of applications and systems when investigating anomalies.
  • Serves as a primary member of the CTC who can be a technical escalation point of contact for incident handlers in a fast-paced environment.
  • Writes clear and in-depth technical documentation on threat hunting activities during threat hunting operations.
  • Mentors CTC analysts while contributing to the fulfillment of both the CTC’s mission and leadership’s vision
  • Maintains situational awareness for cyber threats across the global firm and act where necessary
  • Daily responsibilities include, but are not limited to:
  • Signature creation and content development across various technologies and languages.
  • In depth malware and exploit analysis.
  • Organize threat actor techniques, tactics, and procedures against Cyber Threat Center detection capabilities
  • Intrusion monitoring and response
  • Data analysis and threat research
  • Maintains knowledge of security principles and best practices. Must remain current with emerging threats and trends
  • Leads or participates in information security related projects or in managing strategy
  • Develop new forensic detective and investigative capabilities using current technical solutions
  • Work with various business units and technical disciplines in a security consultant role for cyber threats
  • Shares an on-call rotation and acts as an escalation point for Major cyber security incidents.


REQUIREMENT SUMMARY

Min:N/AMax:5.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Software Engineering

Graduate

Information security or an equivalent combination of education training and experience

Proficient

1

Vancouver, BC, Canada