Cyber Security Threat Hunter
hace 2 días
**Description**:
The Cyber Threat Hunting Principal Analyst sits within the Global Information and Cyber Security Defence (ICSD) function, in this critical role, you will leverage your expertise to proactively detect, investigate, and mitigate sophisticated external and insider threats. This is a hands-on role which is responsible for ensuring that proactive and reactive threat hunts are conducted.
The individual will work as part of a global, multi-disciplined security community with strong support across the business, contributing to fostering a security-aware culture while ensuring WTW remains a great place to work. With WTW’s large global footprint, this role offers a fascinating range of work, and occasional global travel may be required.
**The Role**
The Cyber Threat Hunting and Forensic Team Principal Analyst will provide global threat hunting and forensic capability for WTW, responsibilities of this role will include:
Global Threat Hunting
- Conduct threat-hunting operations to identify and mitigate potential threats before they can impact the organization.
- Develop and execute hypothesis-driven threat hunting techniques to uncover adversary tactics, techniques, and procedures (TTPs).
- Deliver detailed threat analysis and reports to executive leadership and stakeholders.
- Provide actionable recommendations to enhance the organization's security posture.
- Develop and implement advanced log analysis and search capabilities to identify sophisticated external and insider threats.
- Investigate anomalies, correlate findings with threat intelligence, and propose mitigation strategies.
- Perform targeted threat-hunting campaigns using adversary TTPs and insights from system telemetry and security data sources.
- Support incident investigations by providing detailed analysis and insights derived from threat-hunting operations.
- Share findings, analysis, and recommendations with cross-functional teams to improve the overall security posture and incident response effectiveness.
- Contribute to the design and implementation of advanced threat detection methodologies, playbooks, and automation processes to enhance hunting capabilities.
- Provide thought leadership and mentorship to junior analysts, fostering a continuous learning culture within the team.
- Analyze security trends and assess their impact on the organization, providing actionable insights to leadership.
- Serve as an escalation point during critical cybersecurity incidents, providing incident response, Digital forensic analysis, and malware assessment to support containment, eradication, and recovery efforts.
- Conduct host and network forensics, log analysis, and evidence collection for on-premises and cloud systems, ensuring proper chain of custody and documentation.
**Qualifications**:
**The Requirements**
- A detail-oriented professional with a proactive mindset to stay ahead of emerging threats.
- A team player who thrives in a collaborative environment and can navigate complex challenges effectively.
- Someone passionate about making a tangible impact on WTW’s cybersecurity resilience
- Extensive experience in cyber threat hunting, security incident response, and digital forensics in fast-paced, global environments.
- Proven ability to mentor and coach analysts, fostering skill development and career growth.
- Strong problem-solving and analytical skills, with the ability to influence stakeholders and drive effective decision-making.
- Expertise in adversarial tactics, techniques, and procedures (TTPs), the MITRE ATT&CK framework, cyber kill chain, and hacking/post-exploitation tools.
- Proficiency in interpreting and querying diverse log types (e.g., Windows Event, Web server, Firewall logs) and conducting threat hunts within SIEM and EDR tools.
- Knowledge of forensic methodologies, open-source tooling, and cloud security, including incident response in cloud environments.
- Experience delivering technical presentations and reports to both technical and non-technical audiences.
- Familiarity with scripting languages such as Python, PowerShell, and KQL, with a functional understanding of programming concepts.
- Industry-recognized certifications in Cyber Incident Response, Forensics, or Malware Analysis are a plus.
- Strong communication, collaboration, and interpersonal skills to effectively convey security and risk concepts across diverse audiences.
**Location**: Could be Spain, Portugal or Poland.
**The Application Process**
- **Stage 2**: Phone or video interview from the recruiter
- **Stage 3**: Live video interview with hiring manager and team
- **Stage 4**: Live video interview with member of th eteam
- **Stage 5**: Offer and onboarding
-
Threat Hunter
hace 1 semana
Madrid, España Entelgy Innotec Security A tiempo completo**¡Te buscamos!** Threat Hunter **¿Te gustaría hacer esto en tu día a día?** - Desarrollo de actividades vinculadas a la gestión y ejecución de proyecto de Threat Hunting (en diversas modalidades) y actividades de gestión y ejecución de proyectos de Cyber Deception con CounterCraft. - Obtención de IoC a través de análisis de...
-
Threat Hunter
hace 6 días
Madrid, España Minsait A tiempo completoUbicación: Madrid, MD, ES - Perfil profesional: Ciberseguridad - Experiência requerida: - Modalidad del puesto: Remoto En **Minsait Cyber**, sabemos que el talento es la clave para impulsar el cambio y construir un futuro digital más seguro. Si estás listo para enfrentarte a nuevos desafíos, crecer profesionalmente y aportar tu experiência a...
-
Threat Hunter
hace 2 días
Madrid, España CyberProof A tiempo completoCyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter - and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively. CyberProof is part of the UST Global family. Some...
-
Threat Hunter
hace 6 días
Madrid, España CyberProof A tiempo completoCyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter - and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively. CyberProof is part of the UST Global family. Some...
-
Senior Threat Hunter
hace 1 semana
Madrid, España UST España & Latam A tiempo completoWe are still looking for the very Top Talent…and we would be delighted if you were to join our team! Presente su candidatura después de leer los siguientes requisitos de habilidades y cualificaciones para este puesto. CyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter – and stay...
-
Hunter
hace 1 semana
Madrid, España UST España & Latam A tiempo completoCyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter – and stay ahead of security threats, by creating secure digital ecosystems. Some of the world’s largest enterprises trust us to create and maintain secure digital ecosystems using our comprehensive cyber security platform and...
-
Cyber Threat Hunting
hace 2 días
Madrid, España WTW A tiempo completo**Description**: .The Cyber Threat Hunting Senior Associate sits within the Global Information and Cyber Security Defence (ICSD) function, in this critical role, you will leverage your expertise to proactively detect, investigate, and mitigate sophisticated external and insider threats. This is a hands-on role which is responsible for ensuring that proactive...
-
Senior Threat Hunter
hace 4 días
Madrid, España UST España & Latam A tiempo completoSenior Threat Hunter (100% remote within Spain) CyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter – and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively....
-
Senior Threat Hunter
hace 1 semana
Madrid, España CyberProof A tiempo completoCyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter - and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively. **CyberProof **is part of the UST Global family....
-
Hunter - Remote
hace 4 días
Madrid, España Jordan martorell s.l. A tiempo completoExperienced Threat Hunter needed to proactively identify and mitigate cyber threats, fully remote in Spain.