Logo
Raytheon Technologies Corporate Headquarters

Senior Cyber Threat Hunter (Remote)

Raytheon Technologies Corporate Headquarters, Hartford, Connecticut, United States,


Date Posted:

2024-10-08

Country:

United States of America

Location:

UTCT1: Corp - CT - Remote Remote Location, Remote City, CT, 06101 USA

Position Role Type:

Remote

RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses – Collins Aerospace Systems, Pratt & Whitney, and Raytheon. Its 185,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity.

The following position is to join our

RTX Enterprise Services

team:

Role Overview:

RTX is looking for a Senior Cyber Threat Hunter to join the corporate RTX Threat Hunt Team. Candidates filling this role will engage in industry-leading cyber threat hunting across a wide array of systems, networks, and services.

What Will You Do:

Perform threat hunts based on current cyber threat intelligence, vulnerability reports, or threat research.

Analyze and correlate log data from multiple sources including workstation/server operating systems, network appliances, cloud environments, and enterprise services to identify indicators of activity ranging from anomalous to malicious.

Perform daily research to identify new tools, tactics, and procedures for threat actors and malware families.

Support Security Operation Center and Incident Response activities during both times of crisis and when needed to support incident ticket triage.

Craft and test scenarios for RTX’s security validation platform.

Document hunt team findings for easy recall and to reduce duplication of effort.

Draft and present debriefings and collaborate with other teams within RTX cybersecurity.

Lead technical discussions, projects, and debriefs with peers and senior leadership.

Develop and drive the program forward using key performance indicators, organizational key results, and other metrics.

Delegate responsibilities, hand out tasks, and lead daily threat hunt activities.

Identify opportunities for automation and content creation.

Train and mentor junior analysts.

Qualifications You Must Have:

Typically requires a University Degree or equivalent experience and a minimum 10 years of experience, or an Advanced Degree and a minimum 7 years experience.

The ability to obtain and maintain a U.S. government issued security clearance is required. U.S. citizenship is required.

Candidate must have a Minimum 5 years of experience in the following areas:

Cyber threat hunt methodology and how to identify malicious activity in a large and complex corporate environment.

Security controls and how they can be leveraged to identify anomalous activity.

Analysis of log data associated with common enterprise services.

Cloud service providers (Azure and AWS) and how to effectively perform threat hunting within cloud environments.

Windows and Unix based endpoints and servers.

Qualifications We Prefer:

Scripting, particularly within Python, and task automation via APIs.

Comfortable leading others and mentoring junior analysts.

Excellent communication skills and able to convey technical details to audiences of differing technical aptitude.

Self-starter, capable of identifying tasks and working projects with little oversight.

Prior experience within incident response or cyber threat hunting.

Experience using Endpoint Detection and Response platforms and other cyber threat hunt tooling.

What We Offer:

We offer a robust total rewards package with compensation; healthcare, wellness, retirement and work/life benefits; career development and recognition programs.

Work Location:

Remote

RTX is An Equal Opportunity/Affirmative Action Employer.

Privacy Policy and Terms:

Click on this link to read the Policy and Terms.

#J-18808-Ljbffr