Information Security Specialist ( Attack Surface Reduction)
Core
Hunt for threats, risks, and vulnerabilities aligned to the MITRE Att3ck framework to proactively reduce the enterprise attack surface using threat intelligence and log analysis.
Role type
Senior IC threat hunter (attack surface reduction)
Builds
Detection & mitigation recommendations, advanced threat identification methodologies, metrics dashboards, and tuned detection infrastructure.
Domain
Financial services / Cybersecurity (Threat Intelligence & Threat Hunting)
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
Threat hunting, malware reverse engineering, DFIR, threat detection, threat intelligence, log management, security analytics, SIEM/SOAR/EDR operations, cloud-native security tools, Endpoint & Identity/IAM architecture, network protocols (TCP/IP, HTTP/S, DNS, etc.), OS internals (Windows, Mac, Linux), Python scripting, detection logic generation, complex analytics queries (Splunk, KQL, syslog).
Preferred skills
Cloud hunting experience, advanced coding/scripting for automation, specific tool expertise (Splunk ES, CrowdStrike, Logscale, Defender for Endpoint, MS Sentinel, Wiz Defend).
Technologies
MITRE Att3ck, Splunk, Logscale, CrowdStrike, Defender for Endpoint, MS Sentinel, Wiz Defend, KQL, Python, TCP/IP, HTTP/S, DNS, Active Directory.
Responsibilities
Hunt on TTPs and vulnerabilities using internal/external intelligence; identify security control gaps and produce mitigation recommendations; participate in proactive ASR operations; develop advanced methodologies for identifying adversary tools; produce metrics and dashboards for suspicious activity; tune detection infrastructure with technology teams; document best practices for hunting playbooks; review internal processes for improvement; influence behavior to reduce risk.
Seniority
Senior, hands-on IC