Sr. Manager, Cyber Threat Emulation

4 weeks ago


Stone Cross East Sussex, United Kingdom Workingmums Full time

Job Description: Senior Manager, Cyber Threat Emulation

The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives.

The Cyber Threat Emulation team will be responsible for conducting advanced adversary emulation testing using various tactics and techniques based on known or realized threats. They will frequently collaborate with the Cyber Threat Intelligence, Cyber Threat Hunting, Intrusion Detection and Analysis and Threat Detection Engineering teams to ensure known defensive gaps are identified and addressed in a timely manner.

The Senior Manager, Cyber Threat Emulation defines the vision, strategy, and execution of the Cyber Threat Emulation program. They will have previous experience building out a Red/Purple team or Threat Emulation program, leading a team of analysts and interfacing well with peer organization teams.

This position is responsible for managing individual contributors that will engage with cross functional internal colleagues and external partners. The Senior Manager will report to the Director, Global Threat Research in the Pfizer Global Information Security organization.

ROLE RESPONSIBILITIES

  • Build the vision and strategy for the Cyber Threat Emulation program.
  • Plan and execute continuous threat emulation testing.
  • Design and implement technical systems that will enable the execution of manual or automated adversary emulation testing in a secure manner.
  • Acquire and maintain an advanced understanding of adversary tactics and techniques.
  • Produce quarterly metrics that provide insight into program accomplishments and progress.
  • Mentor colleagues to support continuous skillset and career growth.
  • Partner with the Cyber Threat Intelligence team to foster an intelligence informed threat emulation program.
  • Collaborate with peer teams such as Intrusion Detection and Analysis (IR), Cyber Threat Hunting and Detection Engineering to continually assess known defensive gaps based on threat emulation testing results.

BASIC QUALIFICATIONS

  • Bachelors or Masters, or Associates' Degree required, with a proven career history showcasing relevant experience. Alternatively, a high school diploma plus very strong track record and extensive career required
  • Extensive in-role experience leading Red, Purple or Threat Emulation teams.
  • Extensive experience and knowledge of conducting advanced adversary emulation testing in a corporate environment against networks to include Windows, Linux, or Mac operating systems and cloud environment (AWS, Azure, GCP) technologies.
  • Advanced knowledge of adversary techniques across multiple MITRE ATT&CK tactics and intrusion phases.
  • Experience developing secure testing environments to support threat emulation testing.
  • Experience using common C2 frameworks or offensive security tools.
  • Advanced understanding of common information technology topics involving operating systems (Windows, Mac, Linux) and computer networking.
  • Demonstrated experience leading and mentoring colleagues.

PREFERRED QUALIFICATIONS

  • Experience developing custom tools or frameworks in support of threat emulation testing.
  • Experience developing proof of concept code and exploiting known vulnerabilities.
  • Relevant advanced cyber security certifications from GIAC or Offensive Security such as GPEN, GXPN, GCPN, OSCP or similar.
  • Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.


Work Location Assignment: Sandwich, Kent, with flexibility

#J-18808-Ljbffr

  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation team will be responsible for conducting...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Job Description: Senior Manager, Cyber Threat Emulation The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation...

  • Senior Manager

    4 weeks ago


    Stone Cross, East Sussex, United Kingdom Workingmums Full time

    The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation team will be responsible for conducting...


  • Stone Cross, East Sussex, United Kingdom Pfizer Full time

    Job Description: Senior Cyber Threat Hunter ROLE SUMMARY The Pfizer Global Information Security (GIS) organization safeguards critical information assets by employing world-class talent to proactively defend company interests. Fostering a culture of colleague empowerment, we support Pfizer’s mission of delivering breakthroughs that change patients’...

  • Hunter

    2 weeks ago


    Stone Cross, East Sussex, United Kingdom Pfizer Full time

    Senior Cyber Threat Hunter The Pfizer Global Information Security (GIS) organization safeguards critical information assets by employing world-class talent to proactively defend company interests. Fostering a culture of colleague empowerment, we support Pfizer’s mission of delivering breakthroughs that change patients’ lives. GIS teams continuously...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Manager, Perimeter Security Testing The Global Information Security (GIS) organization delivers proactive cyber defence for the global Pfizer enterprise. Our mission is to secure all of Pfizer's digital information assets ranging from the manufacturing floor to the core data centres, and out to our patient facing solutions. We achieve this mission...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Manager, Perimeter Security Testing The Global Information Security (GIS) organization delivers proactive cyber defence for the global Pfizer enterprise. Our mission is to secure all of Pfizer's digital information assets ranging from the manufacturing floor to the core data centres, and out to our patient facing solutions. We achieve this mission...


  • East Anglia, United Kingdom Bulletproof (Cyber Security) Full time

    With a focus on maintaining, growing and retaining accounts, the Account Executive will work closely across both internal-facing and client teams’ to ensure accounts are pro-actively managed and that cross and up-sell opportunities are maximised. Within the role, the Account Executive will need to build strong relationships with client stakeholders, and we...


  • East Kilbride, United Kingdom Parker Shaw Full time

    **Job description**: **Duration** : 6 months initially UK National SC Clearance We are currently recruiting for a Cyber Security Advisor for an initial 6 month contract role based in East Kilbride. Initially, there will be a requirement for in-office induction in East Kilbride. Subsequently, a minimum 2 days per week in Glasgow (East Kilbride) office...


  • East Kilbride, United Kingdom Spinwell Full time

    Role: Cyber Security Advisor REF 74430 Contract Length: 6 months initially Location: Hybrid/East Kilbride, must attend the office a minimum of 2 days per week IR35: Inside Pay Rate to Intermediary: Market Rate Security Clearance: SC and UK National requested Spinwell is recruiting for a Cyber Security Advisor for an excellent opportunity within the public...


  • Stone, Staffordshire, United Kingdom Rubicon Consulting Full time

    Rubicon Consulting is currently recruiting for a OT Cyber Security Engineer on a Permanent Basis, based remote with travel to the office in Staffordshire and UK wide customer sites. Due to increased workload our client are looking to recruit an experienced Industrial Automation & Control Systems (Operational Technology) Cyber Security Engineer into...


  • East Kilbride, United Kingdom Bangura Solutions Full time

    **Role**: Cyber Security Advisor **Contracting Authority**: Government **Contract Length**: 6 Months **Location**:East Kilbride **Pay Rate**: £600 per day **Clearance**:SC Clearance An exciting opportunity has become available with our prestigious client who is a prominent government department. The client is seeking an experienced Cyber Security...


  • East Anglia, United Kingdom Smiths Detection Full time

    Every minute of every day, in nearly every country across the globe, Smiths Detection people and technology make the world a safer place. We safeguard people, business and infrastructure with the latest innovations and screening technology for aviation, ports, borders, defense, and security across 55 countries around the globe Job Purpose: We are seeking...

  • Account Executive

    5 days ago


    East Anglia, United Kingdom Bulletproof (Cyber Security) Full time

    Job Description Overview With a focus on maintaining, growing and retaining accounts, the Account Executive will work closely across both internal-facing and client teams’ to ensure accounts are pro-actively managed and that cross and up-sell opportunities are maximised. Within the role, the Account Executive will need to build strong relationships with...


  • South East, United Kingdom Hudson Shribman Full time

    Cyber Security Engineer (IT digital systems) ABJ6891a South East c£49 to £61K + Bonus As an experienced IT security engineer joining a strong digital technology team, this pivotal IT Security Engineer role will support the systems and applications that deliver enterprise security services for a global organisation. With a focus on identity and access...


  • East Anglia, United Kingdom Smiths Detection Full time

    Every minute of every day, in nearly every country across the globe, Smiths Detection people and technology make the world a safer place. We safeguard people, business and infrastructure with the latest innovations and screening technology for aviation, ports, borders, defense, and security across 55 countries around the globe Job Purpose: We are seeking...


  • Brighton, East Sussex, United Kingdom Cloudsecurityexpo Full time

    Your new company A leading Financial Services organisation in Brighton is currently looking for a Senior Cyber Security Analyst to come in and support the existing Cyber team with the day to day running of the Cyber Security infrastructure for the organisation. Your new role You will be supporting the Head of IT and Cyber Security with the day-to-day...

  • Detective Constable

    1 month ago


    South East, United Kingdom South East Regional Organised Crime Unit (SEROCU) Full time

    **Department**:Cyber Crime Unit **Rank**:Detective Constable **OR** Police Constables who wish to develop towards becoming a fully accredited PIP2 Detective Constable whilst in post **Location**: Flexible between near Junction 12 of the M4, Whiteley (Hampshire) & Crawley (West Sussex) The SEROCU Cyber Crime Unit are seeking a Regional Cyber Protect Officer...


  • Charing Cross, United Kingdom Marcus Donald People Full time

    You will be joining a group of technical experts who tackle cyber threats day-in-day-out, at scale, for a myriad of clients ranging from small businesses with mínimal in-house capabilities, right through to large complex corporations with a full stack. You will never be bored, you will always be learning, and you will have fun doing it. **_*Hybrid Working...


  • South East England, United Kingdom NonStop Consulting Ltd Full time

    **Cyber Security Consultant - Supplier Assurance** Are you a Cyber Security Consultant looking for to make a positive career step and enhance your skills and experience? One of the fastest growing Cyber Consultancy's in the UK are proving they are the first choice for various Public and Private Sector Clients as they continue gaining a reputation for their...