Location: Miami,FL, USA
As a Cyber Security Specialist Senior within the Cyber Security & Risk Management team, this role is pivotal in fortifying our enterprise's security posture. Responsible for threat intelligence, monitoring, and proactive defense measures across application, endpoint, and network security, the incumbent will play a key role in identifying and eradicating potential threats.
The Cyber Security Specialist Senior will possess a keen investigative mindset, a passion for information security, and the ability to articulate complex concepts to diverse audiences. Tasked with participating in incident response, this role focuses on detecting, disrupting, and eliminating threats within our network.
Overseeing the proactive monitoring of critical systems' security, including the identification, analysis, and response to potential threats, this position requires proactive collaboration with technical and non-technical stakeholders. Integration with these teams is essential to drive comprehensive cyber security program deployment and adoption, enhancing security capabilities across on-premise and cloud environments.
Reporting to the Security Operations Manager, the Cyber Security Specialist Senior will collaborate closely with Information Technology, Cyber Security, Audit, PMO, and LOB stakeholders. This collaboration involves executing requirements, refining procedures, and implementing security controls to bolster our security infrastructure.
This role demands a self-motivated team player who thrives in a fast-paced, multi-faceted environment and is committed to continuous personal and professional growth. Relies on experience and independent judgement to plan and accomplish goals directly related to Cyber Security matters.
Principal Duties & Responsibilities:
Lead incident response efforts against cyber threats, providing expert guidance for Tier 1 and 2 support during incident resolution.
Perform advanced analysis and comprehensive reporting of security events through sophisticated tools, including SIEM and IT service management portals.
Direct strategic collaboration with MSSP SOC for 24/7/365 monitoring and response, overseeing cyber security incidents at an expert level.
Oversee incident response strategies, managing complex security incidents, including sophisticated malware threats and anomalous events.
Lead in-depth technical analysis and expert-level forensic investigations for intricate security incidents, guiding the team in comprehensive analyses.
Manage security incident response through in-depth, technical (log, forensic, malware, packet, etc.) analysis.
Develop and manage advanced documentation on sophisticated threat hunting processes and procedures, contributing senior-level insights to process development.
Strategically collaborate with Cyber Security Engineering/Architecture and IT teams to set high-priority security requirements at a senior level.
Provide on-going, continuous refinement of cyber threat use cases.
Build and enhance automated controls to detect security events.
Evaluation threat capability gaps within the security stack and present strategic recommendations to management.
Identify and analyze threat and brand intelligence functions, composing security alert notifications and other communications.
Identify, analyze, and communicate threat intelligence trends and patterns to guide advanced security strategies.
Manage brand intelligence functions, monitoring forums, social media, and other threat actor activity channels for potential threats.
Actively stay up-to-date with the latest threatscape, attack vectors and countermeasures (engage with ISACs).
Deliver on monthly/ad-hoc reports on vendor security advisories, patch advisories, and management assessment reports for team consumption.
Collect and maintain evidence supporting cyber assessment findings and recommendations.
Translate infrastructure technologies such as Network, Database, Server, Endpoint, etc. issues into cyber risks for threat monitoring.
Prepare system security reports and communicate assessment status to stakeholders
Implement processes supporting the control framework and risk requirements
Continuously update job knowledge by tracking and understanding emerging security practices and standards; participating in educational opportunities; reading professional publications; maintaining personal networks; participating in professional organizations.
Collaborate with management to determine information security metrics and helps with the collection of information security metrics.
Collect security incident metrics & data to enable reporting to senior management.
Upgrade security systems by monitoring security environment; identifying security gaps; evaluating and implementing enhancements.
Support skill set development of the team members (mentoring, cross-training).
Develop an understanding of business goals and reframes risk discussions in simple solutions that are understandable at all levels of the organization.
Serve as subject matter expert (SME) within Cyber security initiatives and projects.
Cyber Security professionals who hold a CompTIA Security+ certification are required to maintain their certification in good standing and to adhere to all applicable regulations, policies and procedures.
#LI-GG1