Threat Intel & Hunt Lead
McCormick View all jobs
- Gurgaon, Haryana
- Permanent
- Full-time
- Competitive compensation
- Career growth opportunities
- Flexibility and Support for Diverse Life Stages and Choices
- Wellbeing programs including Physical & Mental wellness
- Create, execute and maintain a comprehensive cyber threat intelligence and response strategy to protect the organization against emerging cyber threats.
- Provide direction and mentorship to cybersecurity analysts, incident responders and threat hunters.
- Oversee the evaluation, implementation, and management of cybersecurity technologies and tools to enhance the organization’s threat detection and response capabilities.
- Oversee the collection, analysis and sharing of cyber threat intelligence to identify potential threats and vulnerabilities and develop content within security tools to enhance the organization’s threat detection and response capabilities.
- Analyze security and abuse incidents to derive insight into attack vectors and tactics, techniques and procedures (TTPs).
- Collaborate with inter- and intra-departmental stakeholders to communicate risk indicators, share findings and threat intelligence, coordinate and prioritize remediation efforts and promote open dialog and foster alliances with working groups.
- Develop and enforce cybersecurity policies, procedures and standards to ensure the organization is compliant with relevant regulations and best practices.
- Create, track and iterate on the security metrics that measure the efficacy of our detection and response program.
- Prepare and communicate executive briefings and presentations on overall cyber threat risk posture, effectiveness of the threat management program and highlighting accomplishments related to program maturity.
- Bachelor's degree in computer science, information security, related degree, or measurable knowledge from serving in industry/military/government unit.
- Overall 10+ yrs of experience is required
- GCIA, GCIH, CREM, GIAC, CTIA, CISSP or other relevant security professional certifications
- Minimum 5 years’ professional experience working in cybersecurity or information technology
- Minimum 3 years' experience in an incident response or security operations center role
- Proven experience working with cross-functional teams within a large organization
- Proven ability to successfully collaborate with business and technology leaders and teams
- Experience with threat intelligence platforms, security information and event management (SIEM) systems, managed detection and response (MDR/XDR) application management, Data Loss Prevention (DLP) monitoring and other related security applications.
- Ability to articulate complex technical information clearly and concisely to both technical and non-technical audiences.
- A strong understanding of cyber threat intelligence lifecycle and frameworks (e.g., MITRE ATT&CK, Cyber Kill Chain, NIST CSF, etc.).
- Proficiency in collecting, analyzing and synthesizing threat data from various sources (i.e., OSINT, ISAC, commercial threat feeds, dark web forums, etc.).