Manager of Threat Analysis Security Research

2 weeks ago


Reston, Virginia, United States Palo Alto Networks Full time
Palo Alto Networks is expanding its world-class applied security research team and is seeking a Manager of Threat Research.


Palo Alto Networks has a widely deployed security platform that provides access to an immense volume of globally sourced threat data.

We use this data to better protect our customers and as a source for our research to identify and adapt to adversaries, campaigns, and evolutions in the threat landscape.


The core mission of this team is to improve detection and response for our enterprise customers through applied threat intelligence.

This is accomplished by combining internal and external threat data to assess and remediate gaps in the coverage and capabilities of the Palo Alto enterprise security platform.

Palo Alto Networks and the security research team believe in raising the cost of operations for the adversary by creating durable and contextually rich countermeasures.

As a member of this team you will be expected to consistently strive to Automate, Innovate, and Collaborate with some of the best security minds on the planet.


DESCRIPTION:
The Manager of Threat Research will drive the normalization, correlation and integration of internal and external threat intelligence sources.

Your team will be primarily responsible for applying the analysis of threat actors, threat campaigns, and the cooresponding TTPs (tactics, techniques, and procedures) to contextually enrich alerting across the Palo Alto security platform.

A strong focus on automation, adversary and targeting analysis, and countermeasure creation is desired.

RESPONSIBILITIES:


Lead team to produce durable signatures and indicators of compromise sets based on internal and externally sourced data and information.

Translate complex information sets into concise labels which may be leveraged by customers to improve their incident response efficacy.

Collect open source information for aggregation into our intelligence repository.

Analyze malware and attacker tools to assess their functionality, origin and purpose.

Develop tools to assist with automation of collection and processing of data.

Present new research at conferences and at customer meetings as desired.

Respond to Requests for Information (RFIs) from our consumer organizations within Palo Alto Networks.

QUALIFICATIONS:
Strong leadership skills with experience leading highly motivated subject matter experts, research teams and projects

Strong collaboration skills for a distributed R&D organization, adaptability in a fast-paced environment

Strong creative thinker and problem solver

Excellent written and verbal communication skills and experience leading threat research teams, onsite and remote.

Demonstrated experience leading complex projects and initiatives across multiple teams.


Demonstrated capability as a threat team or SOC lead growing a small team rapidly, while prioritizing analysis and development efforts.

Strong understanding of computer science fundamentals, specifically networking, databases and tool development.

Strong understanding of security operations:
perimeter defense, forensics, incident response, kill chain analysis, risk assessment and security metrics.

Understanding of malware construction, usage and detection techniques.

Experience developing profiles of actors and groups based on data.

Experience performing OSINT research.

Learn more about Palo Alto NetworksHEREand check out ourFAST FACTS

#J-18808-Ljbffr

  • Reston, Virginia, United States ECS Full time

    Cyber Threat Analyst 2 Position at ECSLocation: Fairfax, VAAbout the Job: Join our team at ECS as a Cyber Threat Analyst 2. We are a leading provider of managed cybersecurity services with a focus on protecting our corporate and customer networks. As part of our dynamic and agile team, you will play a crucial role in addressing technical challenges,...


  • Reston, Virginia, United States FS-ISAC Full time

    BACKGROUND:The Financial Services Information Sharing and Analysis Center (FS-ISAC), was created by and for members and operates as a member-driven 501(c)(6), not-for-profit entity. FS-ISAC serves as a bi-directional information and intelligence organization leading the Financial Services Sector efforts to protect against and mitigate cyber and physical...


  • Reston, Virginia, United States FS-ISAC Full time

    BACKGROUND:The Financial Services Information Sharing and Analysis Center (FS-ISAC), was created by and for members and operates as a member-driven 501(c)(6), not-for-profit entity. FS-ISAC serves as a bi-directional information and intelligence organization leading the Financial Services Sector efforts to protect against and mitigate cyber and physical...

  • Threat Analyst

    2 weeks ago


    Reston, Virginia, United States VetJobs Full time

    Job Description ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization works with partner companies to source qualified talent for their open roles. The following position is available to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spouses, Wounded Warriors, and their Caregivers. If you have the required skill set,...


  • Reston, Virginia, United States AIG EMPLOYEE SERVICES, INC. Full time

    Vice President, IT Security Operations (Reston, Virginia): Conduct investigations into potential and actual cyberattacks affecting global business units, lines of business, and information technology infrastructure. Investigate potential cyberattacks and intrusion attempts, and lead containment, eradication, recovery, and analysis of actual incidents....


  • Reston, Virginia, United States ECS Corporate Services Full time

    ECS is seeking an Elastic SIEM Security Analyst to work in our Fairfax, VA office.Job Description: As a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. The Professional Services Team is responsible for working with our customers to understand their needs and delivering a complete...


  • Reston, Virginia, United States ECS Corporate Services Full time

    ECS is seeking an Elastic SIEM Security Analyst to work in our Fairfax, VA office.Job Description: As a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. The Professional Services Team is responsible for working with our customers to understand their needs and delivering a complete...


  • Reston, Virginia, United States Microsoft Full time

    OverviewThe Microsoft Security organization accelerates Microsoft's mission and bold ambitions to ensure that our company and industry is securing digital technology platforms,devices,and clouds in our customers' heterogeneous environments, as well as ensuring the security of our own internal estate. We arelooking for aSenior Director Threat Technical...


  • Reston, Virginia, United States Applied Research Associates (ARA) Full time

    The Capital Area Division (CAD) of Applied Research Associates, Inc. (ARA) has an outstanding opportunity for an exceptional Weapons of Mass Destruction (WMD) Analyst with experience identifying, characterizing, and assessing global WMD- and CBRN-related threats, developments, and trends. This position routinely contributes to Defense Intelligence Enterprise...


  • Reston, Virginia, United States Softworld, a Kelly Company Full time

    Job Title:Info Security Analyst IV (Cyber Detection Engineer)Job Location:Fairmont West Virginia 20190Onsite Requirements:SIEMSecurity SensorsANY SOC experience.Job Description:The Cyber Detection Engineer will develop detections based on intelligence available, then research and assist in implementing new detection methods.This Detection Engineer will...


  • Reston, Virginia, United States Cytech Services Full time

    Job Title: Information System Security AnalystCompany: Cyber Technology Services, Inc.Cyber Technology Services, Inc. is assisting a U.S. Government client on a vital project to create, maintain, and enhance a network operations environment while integrating new cyber capabilities to combat evolving threats. They are currently seeking a Senior Cyber Security...


  • Reston, Virginia, United States SAP Full time

    We help the world run better At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and...


  • Reston, Virginia, United States SAP Full time

    We help the world run better At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and...


  • Reston, Virginia, United States SAP Full time

    We help the world run better At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and...


  • Reston, Virginia, United States SAP Full time

    We help the world run better At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and...


  • Reston, Virginia, United States Bayonne Technologies LLC Full time

    Job Title: Systems Architect with Full Scope Polygraph ClearanceAbout Us:At BayonTek, we pride ourselves on delivering innovative solutions that push the boundaries of technology. As a leading provider in mission-critical systems, we are seeking a highly skilled Systems Architect with a Full Scope Polygraph Clearance to join our dynamic team. This role...


  • Reston, Virginia, United States Base-2 Solutions, LLC Full time

    The Security Incident Analyst is responsible for the mitigation of security incidents on information systems. The Security Incident Analyst investigates incidents involving information technology assets and personnel to the Computer Network Defense Center (DCNDC) and Information Systems Security Managers (ISSM) for situationalawareness and tracking purposes....


  • Reston, Virginia, United States Tevora Full time

    Information Security Consultant (Mobile and Web Application Penetration)About UsTevora is a tight-knit community of professionals with a shared passion for our craft. Every day, we combine in-depth knowledge of cybersecurity, technology, and compliance to help create more secure digital environments. To Tevorans, every problem is a puzzle in need of...

  • Security Analyst

    3 months ago


    Reston, Virginia, United States Atechstar Full time

    Job description Required Skills & Experience2 to 5 years of full-time experience within a Security Operations Centre (SOC) or incident response teamStrong interest in information security including awareness of current threats and security best practicesFamiliarity with system administration and security controls on Microsoft Windows and LinuxExperience...

  • Security Analyst

    4 weeks ago


    Reston, Virginia, United States Atechstar Full time

    Job description Required Skills & Experience2 to 5 years of full-time experience within a Security Operations Centre (SOC) or incident response teamStrong interest in information security including awareness of current threats and security best practicesFamiliarity with system administration and security controls on Microsoft Windows and LinuxExperience...