Threat Hunting & Investigations Lead
Remote
- Full time
About the job
This vacancy has now expired. Please see similar roles below...
"Job Description
The Admiral Group’s Security Operations function is looking for an experienced security professional to lead and drive the threat-hunting & investigation activities. The overall aim of this role is to build, mature and lead the threat-hunting and investigative capabilities.
The role will also be responsible for building and leading thorough analysis and investigative skills and capabilities within the team to drive threat hunting. The role will also have day-to-day management responsibilities for a small team. The role will be supported by the members of the Threat Hunting team.
Accountabilities:
- Establishing an effective threat-hunting function.
- Ensuring that repeatable processes are established, well documented and maintained.
- Building continuous collaboration with the Cyber Threat Intelligence (CTI) team; creating Intelligence requirements for threat hunting; setting up dissemination and feedback process between Threat Hunting and CTI on an ongoing basis.
- Initiating mitigation and remediation actions by coordinating with relevant stakeholders such as the Incident Response team, Cloud Security teams etc.
- Ensuring detailed investigations of relevant ongoing external threat campaigns are conducted to build effective hunting strategies.
- Ensure all detected security events are investigated thoroughly, root cause analyses performed, and any mitigation/remediation actions initiated.
- Ensuring that detailed threat-hunting reports are produced regularly.
- Managing the threat-hunting team, including tasking, delivery, training requirements and personal development.
Responsibilities:
- Engage with the Admiral threat Intelligence team to build a robust process to gather relevant Intelligence to drive threat hunting.
- Engage with the Incident Response team on internal security incidents as and when needed.
- Engage with the SOC team on detected incident investigation and analyses.
- Provide investigation support during declared incidents.
- Help improve the overall capability & maturity of the threat-hunting function.
Key Interactions:
- Engage with the Cyber Threat Intelligence (CTI) team.
- Engage with the overall SOC team.
- Engage with the Incident Response team when needed.
- Engage with various stakeholders within Security Operations as and when required.
- Engage with the function and department heads.
Knowledge and Experience Required:
- Previous hands-on experience in cyber threat investigation, threat hunting or threat intelligence.
- Minimum 5 years’ experience in cyber security and/or Intelligence analysis.
- Good functional understanding of general cyber security concepts.
- Good knowledge of cyber exploitation tactics, techniques and procedures (TTP).
- Good understanding of cybercrime and threat landscape.
- Some team management experience is desirable but not mandatory.
Professional Training Requirements:
- No formal training/certification is mandatory.
Our Commitment to You
At Admiral, we are committed to being a diverse and inclusive workplace. Admiral is proud to be an equal opportunities employer and does not discriminate on the basis of race, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), national origin, gender, gender identity, sexual orientation, disability, age, or any other legally protected status.
All qualified applicants will receive equal consideration for employment.
Salary, Benefits and Work-Life Balance
We do not have a set salary for this position, as it will be dependent on the successful candidate’s experience. We are happy to see CVs from all candidates who meet the requirements and will be happy to discuss the remuneration package.
At Admiral, we are proud to be a diverse business where we put our people and customers first. We have great benefits to ensure employees have a great work-life balance; it's one of the reasons we’re consistently voted one of the Sunday Times Best Big Companies to Work For in the UK. We want you to have an element of freedom to define a working lifestyle that supports this, so accommodate flexible hours wherever possible.
All colleagues will receive 33 days holiday (including banks holidays) when they join us, and this will increase with length of service, up to a maximum of 38 days (including banks holidays). You also have the option to buy or sell up to five days of annual leave in addition to your allocation.
You can also view some of our other key benefits here.
#LI-NT1
- Full time
- Information Security
__jobinformationwidget.freetext.LocationText__
Remote
Business Support Recruitment Officer
What areas do you look after?
I currently support Tech Recruitment.
Tell us about you and your Admiral story?
I joined Admiral in February 2012 as a Sales Executive and quickly grew fond of Admiral and its culture. It was clear there were many opportunities and different career paths. I moved over to our Claims function in 2014 as a Case Handler and from there I moved into Claims Underwriting, which lead to an opportunity to work in our IT department in a semi-technical role. I gained valuable insight into a side of the business that I never thought would have been possible. The time was then right to move into our People Services department where I have been since November 2018.
Why would you recommend Admiral?
I really could go on and on as there are so many reasons for me but if I had to pinpoint two, it would be the people and the opportunity for self-development and career growth.
Related jobs
Salary
Location
Cardiff
Job Type
Full time
Location
Cardiff
Brand
Admiral Law
Department
Law
Office address
Tŷ Admiral, David Street, Cardiff, CF10 2EH
Description
An exciting opportunity has arisen for a Case Handler in our Insurance Legal Service Department. We are looking for an innovative, enthusiastic, self-motivated and talented individual to take on the r
Reference
10668
Expiry Date
01 Jan 0001
Vacancy managed by
Samantha BevanVacancy managed by
Samantha BevanSalary
Location
Cardiff
Job Type
Full time
Location
Cardiff
Brand
Admiral Group
Department
Finance Services
Office address
Tŷ Admiral, David Street, Cardiff, CF10 2EH
Description
(This is a hybrid role, and it requires travel to our Cardiff office regularly) About Us At Admiral, people come first – and we’re proud to have been named a Great Place to Work for over 25 year
Reference
10617
Expiry Date
01 Jan 0001
Vacancy managed by
Helen HuntVacancy managed by
Helen HuntSalary
Location
Cardiff
Job Type
Full time
Location
Cardiff
Brand
Pioneer
Department
Veygo
Office address
Capital Tower, Greyfriars Road, Cardiff, CF10 3AZ
Description
Operational Excellence Consultant We’re looking for an Operational Excellence Consultant to join our team at Veygo! About Veygo At Veygo our world is learner and temporary pay-as-you-go car
Reference
10484
Expiry Date
01 Jan 0001
Vacancy managed by
Eden DaviesVacancy managed by
Eden DaviesOur Benefits
Admiral employees work hard to keep us at the top of our industry, and are rewarded for it—with competitive pay, a share package, career growth and development opportunities and some other great benefits, too!
People who like what they do, do it better.
Be You
Financial & Mortgage
Advice
24-Hour
Ecare
Cycle to Work
Scheme
Annual Holiday
Allowance
Flexible
Working
Simply
Health
Private Health
Cover
Critical Illness
Cover
Grow & Progress
Learning and
Development
Educational
Sponsorship
Accredited
Qualifications ILM
iLearn
Online Learning
Buy a Book
Scheme
Developmental
Coaching
Port of
Calls
Internal
Mobility
Make a Difference
Groups and
Societies
Socials and Team
Days Out
Multi Faith / Quiet
Rooms
Admiral Community
Fund
Give as You
Earn
Awards and Star
Lunches
Corporate Social
Responsibility
Impact
Hours
Share In Our Future
Share
Schemes
Refer a Friend
Bonus
Colleague and Family
Insurance Discount
Group Life
Assurance
Pension
Scheme
Life Event
Loan
Tickets to Sponsored
Events
Tusker Salary
Sacrifice