Cyber Threat Intelligence Lead

3 weeks ago


Oklahoma City, Oklahoma, United States Xerox Full time

Cyber Threat Intelligence Lead

General Information

Press space or enter keys to toggle section visibility

Country

United States

Department

Information Management

Date

Thursday, June 13, 2024

Working time

Full-time

Ref#

Job Level

Specialist

Job Type

Experienced

Job Field

Information Management

Seniority Level

Mid-Senior Level

Currency

USD - United States - US

Annual Base Salary Minimum

83,520

Annual Base Salary Maximum

167,040

The salary range above represents the low and high end in the local currency of Xerox's salary range for this position and is reflected in an annualized amount. Actual salaries will vary based on factors including, but not limited to, geographic location, market competition, and/or the successful applicant's education, experience, knowledge, skills, and abilities. The range listed is just one component of Xerox's total compensation package for employees. Employees are also afforded a comprehensive suite of benefits, to view those details please visit Xerox Careers for your applicable country. If you are not reviewing this job posting on Xerox Careers ) , we cannot guarantee the validity of this posting. For a list of our current internal postings, please visit Xerox Careers ) .

Description & Requirements

Press space or enter keys to toggle section visibility

About Xerox Holdings Corporation

For more than 100 years, Xerox has continually redefined the workplace experience. Harnessing our leadership position in office and production print technology, we've expanded into software and services to sustainably power today's workforce. From the office to industrial environments, our differentiated business solutions and financial services are designed to make every day work better for clients — no matter where that work is being done. Today, Xerox scientists and engineers are continuing our legacy of innovation with disruptive technologies in digital transformation, augmented reality, robotic process automation, additive manufacturing, Industrial Internet of Things and cleantech. Learn more at and explore our commitment to diversity and inclusion. )

Description:

Serve as the primary researcher of threats against the Xerox reputation, brand, and systems through multiple threat intelligence sources. Communicate the same to a network of cyber security practitioners across Xerox for awareness and/or action to mitigate the threat(s).

The Cyber Threat Intelligence Lead works with the cyber defense team to make accurate, risk-based decisions on where to focus security efforts that will protect our employees, operations, and revenue streams to yield the highest ROI from expended security resources.

Primary Responsibilities:

  • Maintain a research regimen of continuous monitoring and alerting of threats discovered and/or realized in the industry. Analyze the applicability and potential impact to Xerox systems/resources:
  • Collect and process both technical and non-technical, internal, and external threat intelligence.
  • Gather pertinent, relevant data instrumental to analyzing applicability across a broad range of technologies, resources, and stakeholders within Xerox.
  • Maintain a clear understanding of the Xerox global footprint, external attack surface, and the relevant technologies to be monitored for new threats/vulnerabilities, particularly those that may escalate our response needs beyond standard security policy/standards for remediation.
  • Communicate verbally and electronically in a clear, concise, manner being careful to validate and document immediate or long-term actions required to neutralize the threat or exploitable vulnerability.
  • Develop briefings to disseminate and present to a wide range of stakeholders to include technical, operational, executive, or senior leadership stakeholders.
  • Maintain integration of threat intelligence sources with the Security Incident & Event Management Tool.
  • Support detection and response teams with context and analysis support, provide industry expertise and recommend relevant remediation and countermeasures to support CSIRT in triaging and responding to security incidents.
  • Monitor threat sources continually based on input from Xerox Product Security, Corporate Security, and threats against systems & software of prevalent use in the conduct of Xerox business.
  • Analyze data from various sources to identify possible risk indicators, determine possible root cause and identify preventative actions.
  • Collaborate with the managed security services supplier in designing rules/alerts within the security information & event management system (SIEM) and/or other security technologies employed by Xerox to swiftly detect and/or prevent compromise to systems and/or information.
  • Perform threat hunting exercises using knowledge of tactics, techniques and procedures used by adversaries.

Knowledge and Skills Required:

  • Working knowledge and/or experience in analysis in investigations, such as in IT, law enforcement, or military intelligence for at least 2-4 years.
  • Statistical modeling and analysis experience to infer possible cybersecurity threats.
  • Understanding of IDS/ IPS, SIEM, email security, EDR and end point protection technologies
  • Experience in performing disk/ memory forensics and/or malware analysis would be a plus.
  • Strong understanding of network, application layer and OS fundamentals.
  • Experience analyzing and responding to incidents in cloud environments would be a plus.
  • Knowledge of common Threat Actor tools, tactics, or protocols (TTPs) and identification of countermeasures to reduce risk.
  • Must be highly motivated with the ability to self-start, prioritize, multi-task and work in a team setting with global peers.
  • Possess a good technical understanding, takes initiative to remain up to date with cyber security skills, and fosters an attitude of continual learning/adapting.
  • Knowledge of threat intelligence platform capabilities for operationalizing and delivering actionable intelligence to key groups and stakeholders to manage remediation.
  • Manage vendor relationship and drive delivery of platform capabilities.
  • Strong communication skills, including clear verbal and written communication, collaboration, technical presentations, adaptability, and interpersonal skills.

Qualifications:

  • Education Requirements: Master's degree (Cybersecurity, Computer Science, Information Systems, or related field)
  • Professional Certifications: Preferred – A technical certification such as GCFE, GREM, CISSP, CISA, or equivalent is desired.
  • Ability to work in the Eastern time zone is preferred.

#LI-KW1

#LI-REMOTE

Xerox is an Equal Opportunity Employer and considers applicants for all positions without regard to race, color, creed, religion, ancestry, national origin, age, gender identity, sex, marital status, sexual orientation, physical or mental disability, use of a guide dog or service animal, military/veteran status, citizenship status, basis of genetic information, or any other group protected by law. Learn more at and explore our commitment to diversity and inclusion: People with disabilities who need a reasonable accommodation to apply or compete for employment with Xerox may request such accommodation(s) by sending an e-mail to Be sure to include your name, the job you are interested in, and the accommodation you are seeking.



  • Cyber Threat Analyst

    2 weeks ago


    Oklahoma City, Oklahoma, United States Foxhole Technology Full time

    Overview Job Title: Cyber Threat Analyst- Tier 1 Clearance: Secret Location: Oklahoma City, OK (Hybrid) 3x per week Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defense agencies. A recognized leader in navigating technology and security challenges, Foxhole delivers mission-focused innovations to answer...


  • Oklahoma City, Oklahoma, United States BankOnIT Full time

    Overview: Summary/Objective The Cyber Defense Infrastructure Support Specialist, Tests, implements, deploys, maintains, reviews, and administers the infrastructure hardware and software that are required to effectively manage the computer network defense service provider network and resources. Investigates, analyzes, and responds to cyber incidents within...


  • Oklahoma City, Oklahoma, United States Quadrant Full time

    Security Information Assurance Analyst Oklahoma City, OK MUST:Experienced Senior Security/Information Assurance Analyst 8+ years of Cyber security/Information assurance Project/Program teams and communicating results to matrixed Strong understanding, and knowledge of, NIST SP rev 4 requirements and how-to tailor requirements based on agency security...


  • Oklahoma City, Oklahoma, United States KPMG Full time

    Business Title: Associate Director, Cyber Architecture and Engineering - RemoteRequisition Number: Function: Business Support ServicesArea of Interest:State: OKCity: Oklahoma CityDescription:Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our...


  • Oklahoma City, Oklahoma, United States Grant Thornton LLP Full time

    About the roleOverall role purpose In our Go Beyond network strategy 2025 our vision is to become 'the most valued network in the profession'.The Manager of Cybersecurity Operations plays a crucial role in managing the proactive, operational and reactive cybersecurity posture for GTIL and member firms globally. Reporting directly to the lead of GTIL's...


  • Oklahoma City, Oklahoma, United States KPMG Full time

    Business Title: Manager, Cyber Architecture and EngineeringRequisition Number: Function: Business Support ServicesArea of Interest:State: OKCity: Oklahoma CityDescription:Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by...

  • Security Engineer

    3 weeks ago


    Oklahoma City, Oklahoma, United States Meta Full time

    Summary: Meta Platforms, Inc. (Meta), formerly known as Facebook Inc., builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D...


  • Oklahoma City, Oklahoma, United States Zurich NA Full time

    Legal Claims Professional- Cyber112648Zurich is currently looking for multiple Legal Claims Professionals for our Management Solutions group to join our Professional Liability & Cyber team and work out of any of our US Claims offices or potentially remote.If you are ready for a career move, consider working for a company with a global footprint that offers...


  • Oklahoma City, Oklahoma, United States Banner Health Full time

    Primary City/State:Arizona, ArizonaDepartment Name:IT Identity Access Mgmt-CorpWork Shift:DayJob Category:Information TechnologyPrimary Location Salary Range:$ $66.85 / hour, based on education & experienceIn accordance with State Pay Transparency Rules.Help lead health care IT into the future. Our Information Technology professionals play a key role in...


  • Oklahoma City, Oklahoma, United States Huntington Ingalls Industries Full time

    Requisition Number: 19052 Required Travel: 0 - 10%Employment Type: Full Time/Salaried/ExemptSecurity Clearance: Secret Level of Experience: Mid This opportunity resides with Cyber & Electronic Warfare, a business group within HII's Mission Technologies division. HII works within our nation's intelligence and cyber operations communities to defend our...


  • Oklahoma City, Oklahoma, United States H I I CORP Defunct Full time

    Date:May 13, 2024Location:Oklahoma City, OK, Ohio, United StatesCompany:HII's Mission Technologies divisionRequisition Number: 19016Required Travel: 0 - 10%Employment Type: Full Time/Salaried/ExemptSecurity Clearance: Top SecretLevel of Experience: Senior This opportunity resides with Cyber & Electronic Warfare , a business group within HII's Mission...


  • Oklahoma City, Oklahoma, United States Continental Resources Full time

    **Job Summary** The Information Security Associate Analyst is responsible for engineering and administration of IT Security systems as well as monitoring system and network logs to identify threats, misconfigurations and anomalies and assist with any necessary remediation. The candidate is responsible for working with the business and across all IT functions...

  • Sr. Tax Manager

    2 weeks ago


    Oklahoma City, Oklahoma, United States Proofpoint Full time

    It's fun to work in a company where people truly BELIEVE in what they're doing We're committed to bringing passion and customer focus to the business. Corporate Overview In today's cyber threat landscape, protection starts with people. At Proofpoint, that simple truth fuels our passion for protecting users, the data they create, and the systems they rely on...


  • Oklahoma City, Oklahoma, United States KPMG Full time

    Business Title: Associate, Security Monitoring & Response | Multiple Locations Summer 2024Requisition Number: Function: Business Support ServicesArea of Interest:State: OKCity: Oklahoma CityDescription: Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in todays most important...


  • Oklahoma City, Oklahoma, United States Modern Technology Solutions, Inc. Full time

    Own Your Future. Modern Technology Solutions, Inc. (MTSI) is seeking a Senior Information Systems Security Officer (ISSO) in Tinker AFB, OK. The ISSO position is responsible for ensuring the apporiate operational security is maintained for an information system and as such, works in close collaboration with the ISSSM and ISO. The position shall have detailed...


  • Oklahoma City, Oklahoma, United States Meta Full time

    Summary: Meta Platforms, Inc. (Meta), formerly known as Facebook Inc., builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D...


  • Oklahoma City, Oklahoma, United States Meta Full time

    Summary: Meta Platforms, Inc. (Meta), formerly known as Facebook Inc., builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D...


  • Oklahoma City, Oklahoma, United States Pacific Northwest National Laboratory Full time

    Overview Protecting U.S. residents and visitors is a top priority for our nation. As adversaries access advanced technologies and materials, threats become more complex - from cyber and nuclear to chemical and biological weapons and other forms of terrorism. The PNNL national security mission utilizes researchers, tools, and technologies to advance the...


  • Oklahoma City, Oklahoma, United States Meta Full time

    Summary: Meta's Privacy Incident Response Engineering team is seeking a Privacy Engineer with experience in identifying, scoping, containing and eradicating real-world privacy threats to products and infrastructure. We are looking for engineers with a passion for protecting our users' privacy and security by triaging, mitigating, remediating and learning...


  • Oklahoma City, Oklahoma, United States SAIC Full time

    DescriptionSAIC is seek a candidate for our Telecom Support Agent opening. This is at the FAA near the airport in Oklahoma City and is an on-site position.Candidate will receive calls from users to perform actions regarding existing devices such as, but not limited to, activations, address issues regarding cell coverage, or troubleshooting devices. The...