Lead Threat Detection Engineer

4 weeks ago


Chicago, Illinois, United States Blue Cross Blue Shield Association Full time
Job Description Summary

The Lead Threat Detection and Response Engineer is highly technical role that will lead the Incident Response process within BCBSA Cyber Defense team. This role acts as the DFIR subject matter expert that plans and oversees initiatives to bring the best techniques in detection and response to BCBSA. The Lead Threat Detection and Response Engineer will provide training, mentoring, and advice to other engineers and analysts.

Responsibilities include but are not limited to:

Act as a technical lead for security related incidents in the corporate environment. Provide oversight to the identification, containment, and remediation of a security incident. Execute formal root cause analysis and lessons learned to improve the effectiveness of the processes and optimize controls.

Execute formalized processes and build a technology stack to establish an advanced threat detection capability.

Develop and maintain Incident Response processes, exercises and trainings to other engineers and analysts.

Provide hands-on malware reverse engineering and forensics support (i.e., forensic artifact handling and analysis).

Enhance and integrate security solutions to automate the detection-to-remediation activities.

Develop and manage continuous testing of Detection and Response capabilities.

Design and implement tooling to support maturing capabilities, reporting, and metrics.

Required Education, Certifications and Experience

High school diploma and Bachelor's Degree in Computer Science, MIS, Computer Engineering or equivalent work experience.7 years of experience with a minimum of 4 years in one or more of the following: incident response, application security, network security, security operations, security monitoring, or security focused system's engineering.4 years scripting or programming experience in Ruby, Python, Shell/BASH scripting, Java, C/C++, Perl, or other languages.Demonstrated expert level expertise in domain of Threat Detection and Incident Response technologies and processes including experience in response activities associated with advanced attacks.Advanced knowledge and understanding of security engineering, system and network security, authentication and security protocols, cryptography, and application security.Deep experience with IR, SIEM, Threat Intelligence, and Forensics tooling.Experience with static and dynamic malware analysis.Experience in automation of tasks through scripting or programming.Experience with red teams or CTF (Capture The Flag).Knowledge of Windows, Mac and Linux operating systems and Cloud platformsExcellent written and oral communication skills.Strong sense of ownership, urgency, and drive. Preferred Education, Certifications and Experience Security related certifications such as OSCP, GCIH, GCFA, GPEN, GNFA, GCUX, GREM.

People Management No
#LI-Hybrid
  • Senior Threat Hunter

    2 weeks ago


    Chicago, Illinois, United States Bank of America Full time

    Description : Our Cyber Threat Hunting, Intelligence & Defense team within Bank of America's Cyber Security Defense function works to continuously strengthen the bank's cyber security posture through research, threat simulations, threat hunting, and offensive security engagements. This team works with partners throughout the bank to both discover and...


  • Chicago, Illinois, United States AbbVie Full time

    Job Description Please make sure you read the following details carefully before making any applications. Come to work each day with an inclusive and collaborative business technology team. As a Senior Cyber Security Engineer to join our Cyber Threat Intelligence Team in AbbVie Business Technology Solutions, you'll have opportunities to contribute to the...


  • Chicago, Illinois, United States Bank of America Full time

    Job Description:Bank of America's Global Information Security team is looking for a Adaptive Threat Simulation (Red Team) Manager.This position is responsible for helping to design, build, and deliver major components of Bank of America's red team strategy. You will work on a cross-functional team with deep knowledge of security processes and procedures,...


  • Chicago, Illinois, United States Bank of America Full time

    Job Description:Bank of America's Global Information Security team is looking for a Adaptive Threat Simulation (Red Team) Manager.This position is responsible for helping to design, build, and deliver major components of Bank of America's red team strategy. You will work on a cross-functional team with deep knowledge of security processes and procedures,...


  • Chicago, Illinois, United States MSA Security, An Allied Universal Company Full time

    Overview MSA Security, An Allied Universal Company, is a leading global provider of high consequence threat solutions. We offer customized and innovative security solutions developed and executed by a team of experienced professionals. We deploy more than 800 K9 Detection Teams nationwide to mitigate the explosive and active shooter threats. Our patented...


  • Chicago, Illinois, United States Morningstar Full time

    The Role:Working within the Endpoint Technology Configuration (ETC) team, Morningstar is seeking a dynamic and experienced MDM/endpoint engineer to lead our mobile device engineering initiatives. The responsibilities of this technology lead role include MDM architecture and design, governance, implementation, and ongoing support of our mobile device...


  • Chicago, Illinois, United States Morningstar Full time

    The Role: Working within the Endpoint Technology Configuration (ETC) team, Morningstar is seeking a dynamic and experienced MDM/endpoint engineer to lead our mobile device engineering initiatives. The responsibilities of this technology lead role include MDM architecture and design, governance, implementation, and ongoing support of our mobile device...


  • Chicago, Illinois, United States Proofpoint Full time

    It's fun to work in a company where people truly BELIEVE in what they're doingWe're committed to bringing passion and customer focus to the business.Corporate OverviewProofpoint is a leading cybersecurity company protecting organizations' greatest assets and biggest risks: vulnerabilities in people. With an integrated suite of cloud-based solutions,...


  • Chicago, Illinois, United States American College of Surgeons Full time

    About the American College of SurgeonsThe American College of Surgeons (ACS) is a professional and educational organization of surgeons that was founded in 1913 to raise the standards of surgical practice and improve the quality of care for surgical patients. The College is dedicated to the ethical and competent practice of surgery. Its achievements have...

  • Jr. SOC Analyst

    1 month ago


    Chicago, Illinois, United States RKON Full time

    RKON Security Operations Center - Security Analyst Job DescriptionRole and ResponsibilitiesAbout us: RKON is an ISO27001 and AICPA SOC 2 Type II certified company that specializes in providing IT migration and transformation services for the Mergers and Acquisitions market. RKON was recently recognized as one of the 100 best places to work in IT,...

  • Jr. SOC Analyst

    2 weeks ago


    Chicago, Illinois, United States RKON inc Full time

    RKON Security Operations Center - Security Analyst Job Description Role and ResponsibilitiesAbout us:RKONis an ISO27001 and AICPA SOC 2 Type II certified company that specializes in providing IT migration and transformation services for the Mergers and Acquisitions market. RKON was recently recognized as one of the 100 best places to work in IT, highlighting...

  • Jr. SOC Analyst

    4 weeks ago


    Chicago, Illinois, United States RKON Full time

    RKON Security Operations Center - Security Analyst Job DescriptionRole and ResponsibilitiesAbout us: RKON is an ISO27001 and AICPA SOC 2 Type II certified company that specializes in providing IT migration and transformation services for the Mergers and Acquisitions market. RKON was recently recognized as one of the 100 best places to work in IT,...


  • Chicago, Illinois, United States Danaher Full time

    At first glance, you'll see Danaher's scale. Our 65,000+ associates work across the globe at more than 15 unique operating companies within three platforms—life sciences, diagnostics, and biotechnology.Look again and you'll see the opportunity to build a meaningful career, be creative, and take risks with the support you need to be successful. You'll find...


  • Chicago, Illinois, United States Danaher Full time

    At first glance, you'll see Danaher's scale. Our 65,000+ associates work across the globe at more than 15 unique operating companies within three platforms—life sciences, diagnostics, and biotechnology.Look again and you'll see the opportunity to build a meaningful career, be creative, and take risks with the support you need to be successful. You'll find...


  • Chicago, Illinois, United States TAG - The Aspen Group Full time

    The Aspen Group (TAG) is one of the largest and most trusted retail healthcare business support organizations in the U.S.and has supported over 20,000 healthcare professionals and team members at more than 1,300 health and wellness offices across 48 states in four distinct categories: dental care, urgent care, medical aesthetics, and animal health.Working in...


  • Chicago, Illinois, United States Tempus AI Full time

    Passionate about precision medicine and advancing the healthcare industry?Recent advancements in underlying technology have finally made it possible for AI to impact clinical care in a meaningful way. Tempus' proprietary platform connects an entire ecosystem of real-world evidence to deliver real-time, actionable insights to physicians, providing critical...


  • Chicago, Illinois, United States Tempus AI Full time

    Passionate about precision medicine and advancing the healthcare industry?Recent advancements in underlying technology have finally made it possible for AI to impact clinical care in a meaningful way. Tempus' proprietary platform connects an entire ecosystem of real-world evidence to deliver real-time, actionable insights to physicians, providing critical...


  • Chicago, Illinois, United States Crowe Global Full time

    Your Journey at Crowe Starts Here:At Crowe, you have the opportunity to deliver innovative solutions to today's complex business issues. Crowe's accounting, consulting, and technology personnel are widely recognized for their in-depth expertise and understanding of sophisticated process frameworks and enabling technologies, along with their commitment to...

  • Cloud Operations

    6 days ago


    Chicago, Illinois, United States Motion Recruitment Full time

    Residence in or near Chicago is requiredJob Description:Residence in or near Chicago is required. We are a professional services firm dedicated to delivering exceptional support for our global Applications Platforms. Our team is committed to maintaining high standards of service for our colleagues and clients through continuous monitoring, optimization, and...


  • Chicago, Illinois, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...