Logo
Trustwave Holdings, Inc.

Threat Hunter Analyst

Trustwave Holdings, Inc., Washington, District of Columbia, us, 20022


Trustwave is a leading cybersecurity and managed security services provider focused on threat detection and response. We uncover threats that others can't and respond quicker than others can to protect against the devastating impacts of cyberattacks. We're a world-class team of cyber consultants, threat hunters and researchers serving clients in 96 countries. At Trustwave, you can learn alongside the best, make a personal impact on a global scale, and solve new challenges every day. Learn more about us at https://www.trustwave.com.

As a Threat Hunter Analyst, you will work closely with our client at their location in Washington D.C. You will work with a team of people conducting threat hunts and preparing formal technical reports. Where active breaches are discovered, you will be part of the breach response team, working closely with cyber threat detection and response analysts and cyber threat intel analysts, to ensure malicious actors are rapidly removed and networks are properly remediated.

Ideal Candidate

While technical expertise is a primary qualification, this position also requires effective communication skills and business acumen. The selected candidate will frequently meet with executives and key client stakeholders to deliver threat hunting findings and technical reports.

We are looking for those who thrive in a fast-paced environment, crave learning opportunities, and excel as a creative problem solver committed to delivering exceptional customer outcomes.

Key Responsibilities

Threat Hunting:

Conduct hunting, investigation, containment, reporting, and client engagement related to hunting activities utilizing a variety of tools.Contribute to use-case development and detection strategies.Seek opportunities to improve hunting approaches and utilization of threat intel.Requirements

Experience conducting incident response and working with DFIR teams.Malware analysis experience is also a major advantage.Experience conducting endpoint-based threat hunting.In-depth knowledge of Windows system administration and good network hygiene.Knowledge/experience with Windows/Linux/OSX security and investigations.Knowledge of various threat actor groups and TTPs they are known to utilize. Experience developing endpoint-based rules to detect such TTPs.Knowledge and experience implementing MITRE ATT&CK framework into hunting and detection mechanisms.Skilled speaker and able to communicate comfortably with security executives.Skilled writer, able to communicate emerging threat activity through written communication.Qualifications:

3+ years of experience in a security operations center or a similar environment.Expertise in endpoint protection security controls.Familiarity with network-based security controls (3+ years).Excellent written and verbal communication skills.Proven ability to navigate complex, multi-disciplined, distributed responsibility, and often ambiguous operational environments.Education:

A bachelor's degree in a security discipline or a related field is preferred. However, a minimum of a high school diploma or equivalent is required for employment.Professional cyber security certifications a plus - Security+, CEH, CISSP, etc.

This opportunity is open to anyone legally authorized to work in the USA.

Trustwave is an Equal Opportunity Employer. We're committed to treating everyone with respect, one of our core TRUST Values, and strive to create a culture that empowers all Trustees to be their best, most authentic selves. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other federally protected class.

To All Agencies:Please, no phone calls or emails to any employee of Trustwave outside of the Talent Acquisition team. Trustwave's policy is to only accept resumes from agencies via the Trustwave Agency Portal. Agencies must have a valid fee agreement in place and they must have been assigned the specific requisition to which they submit resumes, by the Talent Acquisition team. Any resume submitted outside of this process will be deemed the sole property of Trustwave and in the event a candidate is submitted outside of this policy is hired, no fee or payment of any kind will be paid.