Information Security Consultant

3 weeks ago


Boston, United States Undisclosed Full time
p>

The Opportunity
Within our Enterprise Cybersecurity organization, you will work closely with the Security Intelligence team and be responsible for leverage real world adversarial techniques to perform pen tests and simulate attacks on existing and upcoming services spanning across applications, servers, and end-user assets. 

The Team
Within the Security Operations Center, partner with Incident Response Teams for Red/Purple Team assessments and work with Security Intelligence to identify and test real world adversarial tactics, techniques, and procedures.

The Impact 

Utilize both manual and automated methods to conduct penetration tests and to determine a risk score and recommend mitigations that can be used to reduce risk to the firm.

Key Responsibilities:

  • Provide technical guidance and hands-on leadership in security operations, with a focus on threat detection, adversary simulation, and countermeasure development.
  • Lead threat research, detection, and response efforts, including the development and maintenance of advanced detection content and threat hunting missions.
  • Analyze and synthesize intelligence from various sources to identify risks and provide actionable insights.
  • Research and develop offensive security techniques, tools, and automation frameworks to improve simulation and testing capabilities.

The Minimum Qualifications

  • Bachelors degree
  • 8+ years of experience in information security, focusing on threat detection, incident response, adversary simulation (red and purple teaming) and/or relative experience

The Ideal Qualifications:

  • Degree in Cyber Security, Computer Science, or Criminal Justice with a focus in Cyber Security
  • 10+ years of experience in information security, focusing on threat detection, incident response, and adversary simulation (red and purple teaming).
  • Proficient in multiple programming languages including Python, C#, C/C++ and GoLang and familiarity with Windows/MacOS internals.
  • Proficient in infrastructure automation using Terraform, Ansible, and CloudFormation.
  • Proficient with SIEM and EDR platforms, including but not limited to Splunk, SumoLogic, and CrowdStrike Falcon EDR/LogScale.
  • Strong understanding of identity management platforms like Okta, Microsoft EntraID, and Active Directory, including identity-based attacks.
  • Security automation expertise using Python scripting, Palo Alto Cortex XSOAR, and GitOps practices.

Preferred Certifications:

  • Offensive Security Certified Professional (OSCP)
  • Certified Red Team Operator (CRTO)
  • GIAC Certified Cloud Forensics Responder (GCFR)
  • GIAC Certified Forensics Analyst (GCFA)
  • Certified Red Team Leader (CRTL) 

#LI-RK1

MassMutual is an Equal Employment Opportunity employer Minority/Female/Sexual Orientation/Gender Identity/Individual with Disability/Protected Veteran. Note: Veterans are welcome to apply, regardless of their discharge status.

If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need.

  • Boston, United States eSentio Full time

    eSentio has an exciting opportunity for a dynamic Senior Information Governance (IG) Consultant to be part of the growing IG practice. This position is a telecommuting role and can be based anywhere in the United States. eSentio Technologies is a leading provider of technology consulting and implementation services to law firms and corporate legal...


  • Boston, United States Secure Code Warrior Full time

    Principal Application Security Consultant Secure Code Warrior helps developers write more secure code. We are focused on bringing an innovative approach to developer security learning. The Principal Application Security Consultant will serve as a trusted, strategic partner to clients, collaborating closely with AppSec managers, and Cyber & Engineering...


  • boston, United States eSentio Technologies Full time

    eSentio has an exciting opportunity for adynamic Senior Information Governance (IG) Consultant to be part of the growing IG practice. This position is a telecommuting role and can be based anywhere in the United States.eSentio Technologies is a leading provider of technology consulting and implementation services to law firms and corporate legal departments....


  • boston, United States eSentio Technologies Full time

    eSentio has an exciting opportunity for adynamic Senior Information Governance (IG) Consultant to be part of the growing IG practice. This position is a telecommuting role and can be based anywhere in the United States.eSentio Technologies is a leading provider of technology consulting and implementation services to law firms and corporate legal departments....


  • Boston, United States Boston Medical Center Full time

    POSITION SUMMARY: The Information Security Analyst will help define the future of the security and risk landscape by painting an accurate, forward-looking view and predicting the effect of new technologies and strategies. The Information Security Analyst will work as part of a high-performance team and collaborates with others in all aspects of the job. ...


  • Boston, United States Boston Medical Center Full time

    POSITION SUMMARY: The Information Security Analyst will help define the future of the security and risk landscape by painting an accurate, forward-looking view and predicting the effect of new technologies and strategies. The Information Security Analyst will work as part of a high-performance team and collaborates with others in all aspects of the job. ...


  • Boston, United States eSentio Technologies Full time

    eSentio has an exciting opportunity for adynamic Senior Information Governance (IG) Consultant to be part of the growing IG practice. This position is a telecommuting role and can be based anywhere in the United States.eSentio Technologies is a leading provider of technology consulting and implementation services to law firms and corporate legal departments....


  • Boston, United States Shorelight Full time

    Information Security EngineerBoston, MassachusettsAbout UsShorelight is reinventing the international education experience for students worldwide. Based in Boston, the company works directly with top–ranked, nonprofit American universities to build innovative programs and high–touch, technology–driven services that help talented students thrive and...


  • Boston, United States SourcePro Search, LLC Full time

    We are conducting a search for a Information Security Analyst.JOB SUMMARY:As Information Security Analyst (ISA), reporting to the Director of Information Technology and working closely with the Chief Information Officer, this position will be responsible for the administration, implementation, and oversight of the Firm's Information Security Management...


  • Boston, United States Shorelight Full time

    Information Security EngineerBoston, MassachusettsAbout UsShorelight is reinventing the international education experience for students worldwide. Based in Boston, the company works directly with top-ranked, nonprofit American universities to build innovative programs and high-touch, technology-driven services that help talented students thrive and become...


  • Boston, United States firstPRO, Inc Full time

    firstPRO is now accepting resumes for a Information Security Risk Manager role in Boston, MA. This is a direct hire role and onsite 5x per month.Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.Maintain the credit union’s Information Security Program, including awareness, adherence, and...


  • boston, United States firstPRO, Inc Full time

    firstPRO is now accepting resumes for a Information Security Risk Manager role in Boston, MA. This is a direct hire role and onsite 5x per month.Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.Maintain the credit union’s Information Security Program, including awareness, adherence, and...


  • boston, United States firstPRO, Inc Full time

    firstPRO is now accepting resumes for a Information Security Risk Manager role in Boston, MA. This is a direct hire role and onsite 5x per month.Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.Maintain the credit union’s Information Security Program, including awareness, adherence, and...


  • boston, United States Talent Mingle Full time

    Information Security ManagerRole Description:This is a full-time on-site role located in Boston, MA for an Information Security Manager at one of our most valued clients. As an Information Security Manager, you will be responsible for overseeing the security infrastructure, implementing security policies, conducting security assessments, and managing...


  • Boston, United States Talent Mingle Full time

    Information Security ManagerRole Description:This is a full-time on-site role located in Boston, MA for an Information Security Manager at one of our most valued clients. As an Information Security Manager, you will be responsible for overseeing the security infrastructure, implementing security policies, conducting security assessments, and managing...


  • Boston, United States Saxon Global Full time

    Role - Information Security Analyst Rate - $60/hr on C2C Work Auth - All Except H1B Onsite Role client in the Boston, MA area is seeking a highly skilled and detail-oriented Information Security Analyst to join the Office of the Chief Information Security Office (CISO) team. Summary: The ideal candidate will be responsible for coordinating internal and...


  • Boston, United States BOSTON TRUST WALDEN COMPANY Full time

    Job DescriptionJob DescriptionBoston Trust Walden Company Overview Boston Trust Walden Company is an independent, employee-owned firm that provides investment management services to institutional investors and private wealth clients. The firm manages approximately $16 billion in client assets.Boston Trust Walden distinguishes itself in several key ways,...


  • Boston, United States BOSTON TRUST WALDEN COMPANY Full time

    Job Description Job Description Boston Trust Walden Company Overview __ Boston Trust Walden Company is an independent, employee-owned firm that provides investment management services to institutional investors and private wealth clients. The firm manages approximately $16 billion in client assets. Boston Trust Walden distinguishes itself in several key...


  • Boston, United States Sterling Partners Full time

    Information Security & Compliance EngineerShorelight — Information Security & Compliance EngineerAbout UsShorelight is reinventing the international education experience for students worldwide. Based in Boston, the company works directly with top-ranked, nonprofit American universities to build innovative programs and high-touch, technology-driven services...


  • Boston, United States WHOOP Full time

    At WHOOP, we're on a mission to unlock human performance. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.WHOOP is seeking an Information Security Engineer to join our team, reporting to our Lead Security Engineer. In this role you will design, implement, administer, and monitor security...