Current jobs related to Threat Hunting Lead - Chicago - Allstate

  • Senior Threat Hunter

    4 months ago


    Chicago, United States Bank of America Full time

    Description : Our Cyber Threat Hunting, Intelligence & Defense team within Bank of America’s Cyber Security Defense function works to continuously strengthen the bank’s cyber security posture through research, threat simulations, threat hunting, and offensive security engagements. This team works with partners throughout the bank to both discover...


  • Chicago, Illinois, United States Northern Trust Full time

    About Northern TrustNorthern Trust is a leading global financial institution with a rich history dating back to 1889. As a Fortune 500 company, we have established ourselves as a trusted partner for individuals, families, and institutions seeking innovative financial services and guidance.Job SummaryWe are seeking an experienced Insider Threat Risk Lead to...


  • Chicago, Illinois, United States Bank of America Full time

    Job SummaryThe Senior Threat Hunter will be responsible for analyzing and correlating large data sets to uncover novel threats and attack techniques that may be present within Bank of America's environments.Key ResponsibilitiesAnalyze and correlate large data sets to identify potential security threatsCollaborate with data science, threat research, and cyber...

  • Senior Threat Hunter

    4 weeks ago


    Chicago, Illinois, United States Bank of America Full time

    Job SummaryWe are seeking a highly skilled Senior Threat Hunter to join our Cyber Threat Hunting, Intelligence & Defense team within Bank of America's Cyber Security Defense function.Key ResponsibilitiesAnalyze and correlate large data sets to uncover novel threats and attack techniques within the bank's environments.Collaborate with data science, threat...


  • Chicago, Illinois, United States Bank of America Full time

    Job Title: Senior Threat HunterAbout the Role:The Senior Threat Hunter will be responsible for analyzing and correlating large data sets to uncover novel threats and attack techniques that may be present within Bank of America's environments. This role will also involve collaborating with data science, threat research, and cyber defense control teams to...


  • Chicago, Illinois, United States Bank of America Full time

    Position Title: Senior Cyber Threat Intelligence AnalystLocation: Various LocationsPosition Overview:The Senior Cyber Threat Intelligence Analyst plays a crucial role within the Cyber Threat Hunting, Intelligence & Defense team at Bank of America. This team is dedicated to enhancing the bank's cybersecurity framework through extensive research, intelligence...


  • Chicago, Illinois, United States LHH Recruitment Solutions Full time

    Job DescriptionLHH Recruitment Solutions is seeking a highly skilled Cybersecurity Threat Detection Specialist to join our team. This role will focus on implementing, configuring, and maintaining security detection mechanisms within on-premise and Google Cloud environments.Key Responsibilities:Threat Detection Creation: Utilize the MITRE ATT&CK Framework for...


  • Chicago, Illinois, United States iManage Full time

    About the RoleWe are seeking a highly skilled Threat and Vulnerability Management Lead to join our team at iManage. As a key member of our security operations team, you will be responsible for leading the day-to-day TVM operations, including attack surface management, vulnerability scanning, and reporting.Key ResponsibilitiesLead the TVM operations team to...


  • Chicago, Illinois, United States Northern Trust Full time

    About Northern Trust:Northern Trust is a distinguished financial institution, recognized globally and a member of the Fortune 500, with a legacy of excellence since 1889.We are dedicated to delivering innovative financial solutions and guidance to the world's most successful individuals, families, and organizations, adhering to our core principles of...


  • Chicago, Illinois, United States Blue Cross and Blue Shield Association Full time

    Cyber Threat Intelligence DirectorJoin the Blue Cross and Blue Shield Association as a Cyber Threat Intelligence Director and lead the development and execution of a comprehensive cyber threat intelligence strategy. This role requires a strong technical background and leadership skills to drive the creation of actionable intelligence and inform cybersecurity...


  • Chicago, United States The Tailored Closet and PremierGarage of Nashville Full time

    Executive Director of Cyber Threat IntelligenceOrganization:Blue Cross Blue ShieldLocation:Chicago, ILDescription:The Executive Director, Cyber Threat Intelligence combines deep technical expertise with an ability to lead across the BlueCross BlueShield system to deliver an advanced cyber threat intelligence service. You will lead a team of highly proficient...

  • Construction Intern

    3 weeks ago


    Chicago, United States AECOM Full time

    Job DescriptionAECOM Hunt is seeking a Construction Intern to be based in Chicago, IL.This position is expected to begin in Summer 2025.The responsibilities of this position include, but are not limited to:Performs a variety of assignments designed to develop professional work knowledge and abilities, requiring the application of standard techniques,...

  • Construction Intern

    2 weeks ago


    Chicago, United States AECOM Full time

    Job DescriptionAECOM Hunt is seeking a Construction Intern to be based in Chicago, IL.This position is expected to begin in Summer 2025. This position will support the O'Hare 21 - TAP Satellite 1 project.The responsibilities of this position include, but are not limited to:Performs a variety of assignments designed to develop professional work knowledge...

  • Construction Intern

    2 weeks ago


    Chicago, United States AECOM Full time

    Job DescriptionAECOM Hunt is seeking a Construction Intern to be based in Chicago, IL.This position is expected to begin in Summer 2025.This position will support the Scheduling Team.The responsibilities of this position include, but are not limited to:Performs a variety of assignments designed to develop professional work knowledge and abilities, requiring...

  • Construction Intern

    23 hours ago


    Chicago, United States AECOM Full time

    Job DescriptionAECOM Hunt is seeking a Construction Intern to be based in Chicago, IL.This position is expected to begin in Summer 2025. This position will support the QAQC Team.The responsibilities of this position include, but are not limited to:Performs a variety of assignments designed to develop professional work knowledge and abilities, requiring the...


  • Chicago, Illinois, United States Bank of America Full time

    Cyber Threat Intelligence Senior AnalystAt Bank of America, we are committed to helping our customers achieve their financial goals through the power of every connection. As a Cyber Threat Intelligence Senior Analyst, you will play a critical role in reducing risk to the Bank and the financial sector at large.Key Responsibilities:Conduct in-depth research...


  • Chicago, Illinois, United States Bank of America Full time

    Cyber Threat Intelligence Senior AnalystAt Bank of America, we are committed to helping our customers achieve their financial goals through the power of every connection. As a Cyber Threat Intelligence Senior Analyst, you will play a critical role in helping us achieve this goal by providing timely and actionable intelligence to reduce risk to the Bank and...


  • Chicago, Illinois, United States Bank of America Full time

    Cyber Threat Intelligence Senior AnalystAt Bank of America, we are committed to helping our customers achieve their financial goals through the power of every connection. As a Cyber Threat Intelligence Senior Analyst, you will play a critical role in identifying and mitigating cyber threats to our organization and the financial sector as a whole.Key...


  • Chicago, Illinois, United States Bank of America Full time

    Cyber Threat Intelligence Senior AnalystAt Bank of America, we are committed to helping our customers achieve their financial goals through the power of every connection. As a Cyber Threat Intelligence Senior Analyst, you will play a critical role in identifying and mitigating cyber threats to our organization and the financial sector as a whole.Key...


  • Chicago, Illinois, United States Bank of America Full time

    Cyber Threat Intelligence Senior AnalystAt Bank of America, we are committed to helping our customers achieve their financial goals through the power of every connection. As a Cyber Threat Intelligence Senior Analyst, you will play a critical role in helping us achieve this goal by providing timely and actionable intelligence to reduce risk to the Bank and...

Threat Hunting Lead

4 months ago


Chicago, United States Allstate Full time

The world isn’t standing still, and neither is Allstate. We’re moving quickly, looking across our businesses and brands and taking bold steps to better serve customers’ evolving needs. That’s why now is an exciting time to join our team. You’ll have opportunities to take risks, challenge the status quo and shape the future for the greater good.

You’ll do all this in an environment of excellence and the highest ethical standards - a place where values such as integrity, inclusive diversity and accountability are paramount. We empower every employee to lead, drive change and give back where they work and live. Our people are our greatest strength, and we work as one team in service of our customers and communities.

Everything we do at Allstate is driven by a shared purpose: to protect people from life’s uncertainties so they can realize their hopes and dreams. For more than 89 years we’ve thrived by staying a step ahead of whatever’s coming next - to give customers peace of mind no matter what changes they face. We acted with conviction to advocate for seat belts, air bags and graduated driving laws. We help give survivors of domestic violence a voice through financial empowerment. We’ve been an industry leader in pricing sophistication, telematics, digital photo claims and, more recently, device and identity protection.

**We are the Good Hands. We don’t follow the trends. We set them.**

**Job Summary**:
Allstate Information Security (AIS) is responsible for managing cyber security at Allstate. This includes Governance/Risk/Compliance, Access Management, Network Security, and Threat Response Services. AIS is responsible for ensuring confidentiality, integrity, and availability of Allstate systems.

We are seeking an experienced Threat Hunter to perform intelligence-driven network defense supporting the monitoring and incident response capabilities. The role will involve analysis of large amounts of data from vendors and internal sources, including various indicator feeds, Splunk, and several threat intelligence tools, etc. This individual will perform the functions of threat hunting and serve as a liaison for Threat Services for the Global Security Fusion Center, and mentor the incident handling and forensics teams.

**Key Responsibilities**:

- Design and run custom analysis models on security event information to discover active threats
- Identify (hunting) security nuances and abnormalities in the environment
- Develop use cases and actionable content to identify security issues that are currently not alerted within the environment
- Lead projects and assignments
- Provide custom tool design to assist in analysis and investigations
- Perform as an Information Security resource in three or more of the following areas:

- Threat Intelligence
- Incident Response
- Log analysis (statistical modeling, correlation, pattern recognition, etc.)
- Open Systems platforms (Linux, UNIX, VM Ware ESX)
- Web Application
- Networking (firewalls, IDS/IPS, packet capture)
- Databases (Oracle, SQL Server, DB2, IMS)
- SIEM
- Reverse Engineering / Malware analysis
- Collaborate and support teammates and outside teams with regard to threat hunting techniques/issues
- Communication/build rapport with other divisions and various peers
- Identify needs, drive solutions, and provide guidance in an autonomous manner

**Job Qualifications**:

- Bachelors and/or Masters Degree in IT Security, Engineering, Computers Science, or related field/experience
- 7+ years overall technical experience in threat hunting, threat intelligence, incident response, security operations, or related information security field
- 2+ years experience in penetration testing, ethical hacking, exploit writing, and/or vulnerability management
- Advanced experience with security operations tools, including but not limited to:

- SIEM (e.g. Splunk, ArcSight)
- Network analysis (e.g. Net Witness, Palo Alto)
- Signature development/management (e.g. Spunk rules, Snort rules, Yara rules)
- EDR solutions (e.g. CrowdStrike, Tanium)
- Link/relationship analysis (e.g. Maltego, IBM i2 Analyst Notebook)
- Broad experience with various common security infrastructure tools (NIDS, HIPS, EDR, etc.
- Scripting experience related to system administration and security operations (Python, Bash, PowerShell, Perl, C/C++)
- Excellent analytical and problem-solving skills, a passion for research and puzzle-solving
- Strong communication (oral, written, presentation), interpersonal and consultative skills
- Leadership and mentorship skills

**Additional Desirable Criteria**:

- Experience hunting in AWS and/or Azure environments
- Deep understanding of large, complex corporate network environments
- Strong knowledge or experience in penetration testing, ethical hacking, exploit writing, and/or vulnerability management
- Recent experience with malware analysis and reverse engineering
- Obtained certifications in several of the following: SANS GIAC courses, CEH,