Dell EMC

CTU Threat Intelligence (TI) Security Researcher - Secureworks - Remote US

Posted on: 10 Apr 2021

Dallas, TX

Job Description

Secureworks (NASDAQ: SCWX) a global cybersecurity leader, enables our customers and partners to outpace and outmaneuver adversaries with more precision, so they can rapidly adapt and respond to market forces to meet their business needs. With a unique combination of cloud-native, SaaS security platform and intelligence-driven security solutions, informed by 20+ years of threat intelligence and research, no other security platform is grounded and informed with this much real-world experience. www.secureworks.com

We enjoy competitive compensation and benefits packages, and reward and recognize our employees for exceptional results. A constant focus on continued learning and growth keeps our team members engaged and excited about whats next. We offer flexible work options when available, and emphasize the importance of work-life balance. We know that when our people are rewarded, recognized, and rejuvenated, we win as a team.

Role Responsibilities:

* Leverage internal, commercial, and open-source tools and data sources to analyze, enrich and synthesize indicators of compromise and/or other intelligence artifacts to provide meaningful and actionable intelligence. Analyze raw data sets and extract relevant insight to form high quality TI responses
* Perform proactive all-source research to identify and characterize new threats to the customer base and draft related TI products, where appropriate
* Maintain a broad understanding and knowledge of the latest offensive and defensive Tactics, Techniques and Procedures (TTPs) as well as overall Threat Landscape trends
* Collaborate internally and externally, and develop, enhance and produce Secureworks TI products
* Own and execute ongoing projects such as customer on-boarding and threat landscape presentations
* Identify intelligence collection gaps and communicate findings and collection requirements
* Initiate, propose, and update processes and standard TI operating procedures for efficient and effective response to TI and IR RFIs
* Take ownership of, triage, and update tracking systems for TI requests
* Gather contextual information from multiple sources to establish a TI request course of action or respond to a standard request for information related to the TI-Support service line
* Meet service level agreements regarding initial response time and customer notification as it pertains to Secureworks TI and Incident Response (IR) services
* Evaluate contracts for existing customer RFIs to ensure contractual coverage, in scope services and funding for the service request
* Provide internal stakeholders the necessary information for decision support and situational awareness on service request intake activities
* Route RFIs to the proper service delivery team with the appropriate level of urgency and communication channel in a professional and courteous manner with an emphasis on customer satisfaction. Assess and escalate to the next level as needed
* Excellent technical communication skills (oral and written) including experience briefing executive management
* Excellent customer service skills and ability to quickly establish technical credibility and rapport with customers
* Excellent capability to prioritize multiple and concurrent urgent tasks

Qualifications:

Knowledge, Skills,and Abilities:

Understanding and experience with the intelligence analysis lifecycle, including but not limited to:

* Minimum of 2 years conducting Threat Intelligence Research Analysis
* Conducting all-source intelligence research
* Mining internal and external databases/repositories
* Pivoting research focus on TI indicators of interest
* Developing assessments with evidential basis
* Translating findings into client responses and/or threat intelligence reports

Fundamental Information Security (InfoSec) knowledge in most of the following areas:

* Familiarity with advanced search engine functionality and search query customization
* Unix, Linux, Windows, and OSX operating systems
* Exploits, vulnerabilities, intrusion vectors, and malware
* Host forensics, network forensics, and malware analysis techniques
* Network traffic analysis, endpoint activity analysis, and log analysis techniques
* Understanding of enterprise cyber incident management and response processes
* Understanding of enterprise cybersecurity controls and failure modes

DesiredExperience/Training:

* Experience providing threat briefs to executives
* Professional degree relevant to cybersecurityor intelligence analysisor equivalentworkexperience within atechnical information security-related role such as Security Operations, Incident Response, or Threat Intelligence analysis
* Relevantgovernmental,military, commercialtraining and experience in cybersecurity and other industry standard certifications are a plus
* Professional certifications such asGCTI,GCIA, GCIH, GREM, CISSP, CISM, or similar cybersecurity technical certificationsare a plus

* DevOps methods and ITIL framework knowledgeare a plus

Work Location: Remote US

LI-Remote

UNITED STATES:

Secureworks (A Dell Technologies Company) is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions at Secureworks are based on business needs, job requirements and individual qualifications, without regard to race, color, religion or belief, national, social or ethnic origin, sex (including pregnancy), age, physical, mental or sensory disability, HIV status, sexual orientation, gender identity and/or expression, marital, civil union or domestic partnership status, past or present military service, family medical history or genetic information, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Secureworks will not tolerate discrimination or harassment based on any of these characteristics. Learn more about Diversity and Inclusion at Secureworks here.

Dell EMC

Hopkinton, MA

Dell EMC develops, delivers, and supports information infrastructure and virtual infrastructure technologies, solutions, and services. It offers enterprise storage systems and software deployed in storage area networks (SAN), networked attached storage (NAS), unified storage combining NAS and SAN, object storage, and direct attached storage environments; a portfolio of backup products that support enterprise application workloads; and cloud software and infrastructure-as-a-service.

The company also offers security solutions that enable organizations to detect, investigate, and respond to advanced attacks; confirm and manage identities; and help reduce IP theft, fraud, and cybercrime. In addition, it provides enterprise software and cloud solutions, including Documentum product line that enables the digitization and flow of content through organizations in regulated industries; InfoArchive product line that helps customers take cost out of their current IT environments by archiving inactive information to decommission legacy applications; and Project Horizon, a curated app marketplace of content related end-user productivity apps.

Further, the company provides Pivotal Big Data Suite, a data solution; Pivotal Cloud Foundry, a cloud platform-as-a-service; and Pivotal Labs agile development services. Additionally, it offers virtualization infrastructure solutions, which include a suite of products and services to deliver a software-defined data center, and support a range of operating system and application environments, as well as networking and storage infrastructures.

The company also provides installation, professional, software and hardware maintenance, and training services. EMC Corporation markets its products through various distribution channels, as well as directly worldwide. The company was formerly known as EMC Corporation and changed its name to Dell EMC in September 2016. Dell EMC founded in 1979 and is headquartered in Hopkinton, Massachusetts.

  • Industry
    Information Technology
  • No. of Employees
    72,000
  • Jobs Posted
    3412

Similar Jobs