SrManager - Information Security - Threat Management & Response

4 weeks ago


Nashville, Tennessee, United States Marriott Full time

Job Number

Job Category Information Technology

Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States

Schedule Full-Time

Located Remotely? Y

Relocation? N

Position Type Management

JOB SUMMARY

Seeking a seasoned cybersecurity professional to lead and coordinate red team exercises, external engagements, and ongoing purple team initiatives aimed at uncovering vulnerabilities and enhancing the organization's security posture. Collaborate closely with cross-functional teams to conduct continuous purple team exercises, sharing insights and knowledge to strengthen defenses. Analyze and prioritize findigs from red and purple team activities, providing data-driven recommendations for security enhancements. Produce comprehensive reports detailing exercise results and proposed mitigations. Offer guidance and support for implementing security controls and enhancements, while staying abreast of emerging threats and trends to ensure proactive proactive dfense measures.

This role is part Marriott Global Cybersecurity organization with our primary offices in Bethesda, MD, and Singapore and with teams elsewhere in the US, Europe and Asia.

CANDIDATE PROFILE

Education and Experience

Required:

  • Bachelor's degree in Computer Sciences or related field or equivalent experience/certification
  • 7+ years of progressive information technology leadership experience
  • 4+ years' information security experience that includes:
  • Red teaming, threat emulation experience
  • Creation of threat reports for executive (non technical) and technical stakeholders
  • Experience in threat data analysis and response planning.

Preferred:

  • Current information security certification, including Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or Certified Information Systems Security Professional (CISSP)
  • Technical leadership experience in a sourced environment
  • Project management skills
  • Excellent communication skills and problem solving ability
  • Demonstrated ability to work independently and with others
  • Ability to manage the details and compliance with standards and expectations
  • Technical infrastructure operations, administration, or engineering background

CORE WORK ACTIVITIES

  • Lead and organize red team exercises, external red team engagements, and ongoing purple team exercises to identify vulnerabilities, control gaps, and potential attack vectors in the organization's information systems.
  • Collaborate closely with various teams to conduct continuous purple team exercises, sharing insights and knowledge to enhance overall security posture.
  • Analyze and prioritize findings from red and purple team exercises, offering data-driven recommendations to improve the organization's security measures.
  • Produce high-quality reports detailing exercise results, including vulnerabilities, risks, proposed mitigations, and thematic improvement opportunities.
  • Provide guidance and support for implementing recommended security controls and enhancements.
  • Utilize threat intelligence to identify detection opportunities and develop, test, and tune detection content for both host and network-based log sources.
  • Demonstrate expertise in scripting capabilities, utilizing languages such as PowerShell, Pythin, VBScript, and shell scripts for automation and troubleshooting tasks.
  • Conduct deep investigations and forensic analysis to identify security incidents, utilizing tools like CrowdStrike and Splunk for threat hunting and incident response.
  • Stay up-to-date with emerging security threats and trends, including APT Tactics, Techniques, and Procedures (TTPs), to ensure the organization's defenses remain effective.
  • Collaborate with IT Teams on escalations, tracking, configuration issues, etc. related to security validation findings.
  • Develop new detection rules to enhance detection capabilities and improve overall threat resilience.
  • Foster a culture of continuous learning and improvement within the cybersecurity team, staying current with new technologies and best practices in the cybersecurity landscape.
  • Generate detailed threat intelligence, red teaming reports on monthly, quarterly, and ad-hoc bases.
  • Produce and review executive-level briefings on current events, red teaming activities and strategic cyber intelligence.
  • Communicate complex threat events or security incident details to a wide audience, including executives, legal, and technical staff, in both verbal and written forms.
  • Advise internal stakeholders on threat intelligence best practices and strategies.
  • Engage in external threat intelligence sharing with partners and platforms.

Maintaining Goals

  • Submits reports in a timely manner, ensuring delivery deadlines are met.
  • Promotes the documenting of project progress accurately.
  • Provides input and assistance to other teams regarding projects.

Managing Work, Projects, and Policies

  • Manages and implements work and projects as assigned.
  • Generates and provides accurate and timely results in the form of reports, presentations, etc.
  • Analyzes information and evaluates results to choose the best solution and solve problems.
  • Provides timely, accurate, and detailed status reports as requested.

Demonstrating and Applying Discipline Knowledge

  • Provides technical expertise and support to persons inside and outside of the department.
  • Demonstrates knowledge of job-relevant issues, products, systems, and processes.
  • Demonstrates knowledge of function-specific procedures.
  • Keeps up-to-date technically and applies new knowledge to job.
  • Uses computers and computer systems (including hardware and software) to enter data and/ or process information.

Delivering on the Needs of Key Stakeholders

  • Understands and meets the needs of key stakeholders.
  • Develops specific goals and plans to prioritize, organize, and accomplish work.
  • Determines priorities, schedules, plans and necessary resources to ensure completion of any projects on schedule.
  • Collaborates with internal partners and stakeholders to support business/initiative strategies
  • Communicates concepts in a clear and persuasive manner that is easy to understand.
  • Generates and provides accurate and timely results in the form of reports, presentations, etc.
  • Demonstrates an understanding of business priorities

Additional Responsibilities

  • Provides information to supervisors and co-workers by telephone, in written form, e-mail, or in person in a timely manner.
  • Demonstrates self-confidence, energy and enthusiasm.
  • Informs and/or updates leaders on relevant information in a timely manner.
  • Manages time effectively and conducts activities in an organized manner.
  • Presents ideas, expectations and information in a concise, organized manner.
  • Uses problem solving methodology for decision making and follow up.
  • Performs other reasonable duties as assigned by manager.

California Applicants Only: The salary range for this position is $96,038.00 to $209,169.00 annually.

Colorado Applicants Only: The salary range for this position is $96,038.00 to $190,154.00 annually.

Hawaii Applicants Only: The salary range for this position is $116,205.00 to $209,169.00 annually.

New York Applicants Only: The salary range for this position is $96,038.00 to $209,169.00 annually.

Washington Applicants Only: The salary range for this position is $96,038.00 to $209,169.00 annually. In addition to the annual salary, the position will be eligible to receive an annual bonus. Employees will accrue PTO balance for every hour worked and eligible to receive minimum of 7 holidays annually.

All locations offer coverage for medical, dental, vision, health care flexible spending account, dependent care flexible spending account, life insurance, disability insurance, accident insurance, adoption expense reimbursements, paid parental leave, educational assistance, 401(k) plan, stock purchase plan, discounts at Marriott properties, commuter benefits, employee assistance plan, and childcare discounts. Benefits are subject to terms and conditions, which may include rules regarding eligibility, enrollment, waiting period, contribution, benefit limits, election changes, benefit exclusions, and others.

Marriott HQ is committed to a hybrid work environment that enables associates to Be connected. Headquarters-based positions are considered hybrid, for candidates within a commuting distance to Bethesda, MD; candidates outside of commuting distance to Bethesda, MD will be considered for Remote positions.

The application deadline for this position is 28 days after the date of this posting, 5/9/2024.

Marriott International is an equal opportunity employer. We believe in hiring a diverse workforce and sustaining an inclusive, people-first culture. We are committed to non-discrimination on any protected basis, such as disability and veteran status, or any other basis covered under applicable law.

Marriott International is the world's largest hotel company, with more brands, more hotels and more opportunities for associates to grow and succeed. Be where you can do your best work,​ begin your purpose, belong to an amazing global​ team, and become the best version of you.



  • Stadium Security

    1 week ago


    Nashville, Tennessee, United States GardaWorld Security Services Full time

    Job Summary Job Title:Account ManagerDepartment:ManagementFLSA Status:ExemptReports To:Area Manager/Regional Director/Vice PresidentCompensation$ $65000 Job Summary:Event, crowd management, or stadium experience requiredAs an Account Manager, you'll work under the guidance of the Area Manager. Your responsibilities include directing and coordinating...

  • Security Officer

    1 week ago


    Nashville, Tennessee, United States Embassy Suites by Hilton Nashville Airport Full time

    This is a part time position, Friday and Saturday from 2 to 10:30 pmThe Security Agent protects hotel guests, employees, and property. Hotel security typically works directly on the hotel property, patrolling the grounds, monitoring security cameras, assisting guests, transporting guests using Hotel Shuttle, or completing shift and incident reports. This...

  • Security Officer

    2 days ago


    Nashville, Tennessee, United States Virgin Hotels Nashville Full time

    Who We AreWe love what we do and what we do is important We believe that everyone should leave feeling better – this means not just our guests and owners, but also our teammates. Everyone should go home feeling better because they learned something new, or had fun working that day. Therefore, we hire unique individuals who work together to create amazing...


  • Nashville, Tennessee, United States GardaWorld Security Services Full time

    Job Summary GardaWorld - Security ServicesSecurity Officer - Now HiringYou've got the right skills. What you need is the right opportunity to unleash your potential. We agree, and we're hiringEvery day is different at GardaWorld with diverse work assignments and flexible schedules. We are leaders in Professional training programs that cover every aspect of...


  • Nashville, Tennessee, United States GardaWorld Security Services Full time

    Job Summary GardaWorld - Security ServicesArmed Flex / Multi Site Security Officer - Now HiringMilitary, Law Enforcement, or Corrections experience requiredYou've got the right skills. What you need is the right opportunity to unleash your potential. We agree, and we're hiringEvery day is different at GardaWorld with diverse work assignments and flexible...


  • Nashville, Tennessee, United States Allied Universal Full time

    Allied Universal, North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose. While working in a dynamic, diverse and inclusive workplace, you will be part of a team that fuels a culture that will reflect in our communities and customers we serve. We offer medical, dental and vision coverage,...


  • Nashville, Tennessee, United States HCA Healthcare Full time

    Description This position is incentive eligible. IntroductionLast year our HCA Healthcare colleagues invested over 156,000 hours volunteering in our communities. As a(an) Director of IPS Risk Management with HCA Healthcare you can be a part of an organization that is devoted to giving backBenefitsHCA Healthcare, offers a total rewards package that supports...


  • Nashville, Tennessee, United States Montgomery Bell Academy Full time

    Montgomery Bell Academy Director of Campus Safety & Security Position Details Position: Director of Campus Safety & Security Department: Security Reports to: Director of Finance & Operations Status: Full Time, Staff Start Date: May 1, 2024; or upon completion of search. Montgomery Bell Academy (MBA) seeks to hire a full-time Director of Campus Safety &...

  • Red Team Operator

    2 days ago


    Nashville, Tennessee, United States Regions Full time

    Thank you for your interest in a career at Regions. At Regions, we believe associates deserve more than just a job. We believe in offering performance-driven individuals a place where they can build a career --- a place to expect more opportunities. If you are focused on results, dedicated to quality, strength and integrity, and possess the drive to succeed,...


  • Nashville, Tennessee, United States HCA Healthcare Full time

    Description IntroductionAre you looking for a work environment where diversity and inclusion thrive? Submit your application for our PCI Security Controls Engineer II opening with HCA Healthcare today and find out what it truly means to be a part of the HCA Healthcare team.BenefitsHCA Healthcare, offers a total rewards package that supports the health,...


  • Nashville, Tennessee, United States HCA Healthcare Full time

    Description IntroductionAre you looking for a work environment where diversity and inclusion thrive? Submit your application for our Security Controls Engineer II opening with HCA Healthcare today and find out what it truly means to be a part of the HCA Healthcare team.BenefitsHCA Healthcare, offers a total rewards package that supports the health, life,...

  • Security Guard

    4 weeks ago


    Nashville, Tennessee, United States Motlow State Community College Full time

    Title: Security Guard (2 Openings)POSITION SUMMARYProvides general security services to the campus and assists campus police officers with routine patrols and other security measures.ESSENTIAL JOB FUNCTIONS/JOB DUTIES AND RESPONSIBILITIESPatrols campus by foot, bicycle or motor vehicle. Identifies and reports suspected crimes, accidents or activities of a...


  • Nashville, Tennessee, United States Vanderbilt Health Full time

    Discover Vanderbilt University Medical Center: Located in Nashville, Tennessee, and operating at a global crossroads of teaching, discovery, and patient care, VUMC is a community of diverse individuals who come to work each day with the simple aim of changing the world. It is a place where your expertise will be valued, your knowledge expanded, and your...


  • Nashville, Tennessee, United States HCA Healthcare Full time

    Description IntroductionDo you want to join an organization that invests in you as a(an) Senior Information Protection Business Analyst? At HCA Healthcare, you come first. HCA Healthcare has committed up to 300 million in programs to support our incredible team members over the course of three years.BenefitsHCA Healthcare, offers a total rewards package...


  • Nashville, Tennessee, United States HCA Healthcare Full time

    Description IntroductionDo you have the career opportunities as a(an) Security Operations Center Technician you want with your current employer? We have an exciting opportunity for you to join HCA Healthcare which is part of the nations leading provider of healthcare services, HCA Healthcare.BenefitsHCA Healthcare, offers a total rewards package that...


  • Nashville, Tennessee, United States teamworkonline Full time

    BACKGROUND:In December 2017 Nashville was named the 24th team in Major League Soccer. Nashville Soccer Club began play in Major League Soccer in 2020 at Nissan Stadium and will move into a new soccer-specific stadium in 2022. POSITION OVERVIEW:The Venue Security Officer will provide prevention activities and contribute to the building safety and security by...


  • Nashville, Tennessee, United States HCA Healthcare Full time

    Description IntroductionLast year our HCA Healthcare colleagues invested over 156,000 hours volunteering in our communities. As a Systems Security Analyst with HealthTrust you can be a part of an organization that is devoted to giving backBenefitsHealthTrust, offers a total rewards package that supports the health, life, career and retirement of our...


  • Nashville, Tennessee, United States teamworkonline Full time

    POSITION OVERVIEW:The Venue Security Officer will provide prevention activities and contribute to the building safety and security by monitoring and reporting physical security and safety conditions. All officers must be able to work any position as needed. RESPONSIBILITIES:Assist with controlling access to the Stadium including registering and directing...


  • Nashville, Tennessee, United States teamworkonline Full time

    POSITION OVERVIEW:The Venue Security Officer will provide prevention activities and contribute to the building safety and security by monitoring and reporting physical security and safety conditions. All officers must be able to work any position as needed. The A-Shift Officer (Overnight) will work during the hours of 10:45 pm to 7:15 am....


  • Nashville, Tennessee, United States teamworkonline Full time

    BACKGROUND:In December 2017 Nashville was named the 24th team in Major League Soccer. Nashville Soccer Club began play in Major League Soccer in 2020 at Nissan Stadium and will move into a new soccer-specific stadium in 2022.POSITION OVERVIEW:The Venue Security Officer Shift Lead will provide prevention activities and contribute to the Stadium safety and...