Sr. Manager, Cyber Threat Emulation

2 weeks ago


Stone Cross East Sussex, United Kingdom Pfizer Full time

Sr. Manager, Cyber Threat Emulation (Purple Team) page is loaded Sr. Manager, Cyber Threat Emulation (Purple Team) Apply locations United Kingdom - Sandwich time type Full time posted on Posted 4 Days Ago job requisition id 4910357

The Global Information Security (GIS) organization secures Pfizer’s most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer’s mission of delivering breakthroughs that change patients’ lives. 

The Cyber Threat Emulation team will be responsible for conducting advanced adversary emulation testing using various tactics and techniques based on known or realized threats. They will frequently collaborate with the Cyber Threat Intelligence, Cyber Threat Hunting, Intrusion Detection and Analysis and Threat Detection Engineering teams to ensure known defensive gaps are identified and addressed in a timely manner.

The Senior Manager, Cyber Threat Emulation defines the vision, strategy, and execution of the Cyber Threat Emulation program. They will have previous experience building out a Red/Purple team or Threat Emulation program, leading a team of analysts and interfacing well with peer organization teams.

This position is responsible for managing individual contributors that will engage with cross functional internal colleagues and external partners. The Senior Manager will report to the Director, Global Threat Research in the Pfizer Global Information Security organization.

RESPONSIBILITIES

  • Build the vision and strategy for the Cyber Threat Emulation program.
  • Plan and execute continuous threat emulation testing.
  • Design and implement technical systems that will enable the execution of manual or automated adversary emulation testing in a secure manner.
  • Acquire and maintain an advanced understanding of adversary tactics and techniques.
  • Produce quarterly metrics that provide insight into program accomplishments and progress.
  • Mentor colleagues to support continuous skillset and career growth.
  • Partner with the Cyber Threat Intelligence team to foster an intelligence informed threat emulation program.
  • Collaborate with peer teams such as Intrusion Detection and Analysis (IR), Cyber Threat Hunting and Detection Engineering to continually assess known defensive gaps based on threat emulation testing results.

BASIC QUALIFICATIONS

  • Bachelors or Masters, or Associates’ Degree required, with a proven career history showcasing relevant experience. Alternatively, a high school diploma plus very strong track record and extensive relevant career required
  • Extensive in-role experience leading Red, Purple or Threat Emulation teams.
  • Extensive experience and knowledge of conducting advanced adversary emulation testing in a corporate environment against networks to include Windows, Linux, or Mac operating systems and cloud environment (AWS, Azure, GCP) technologies.
  • Advanced knowledge of adversary techniques across multiple MITRE ATT&CK tactics and intrusion phases.
  • Experience developing secure testing environments to support threat emulation testing.
  • Experience using common C2 frameworks or offensive security tools.
  • Advanced understanding of common information technology topics involving operating systems (Windows, Mac, Linux) and computer networking.
  • Demonstrated experience leading and mentoring colleagues.

PREFERRED QUALIFICATIONS

  • Experience developing custom tools or frameworks in support of threat emulation testing.
  • Experience developing proof of concept code and exploiting known vulnerabilities.
  • Relevant advanced cyber security certifications from GIAC or Offensive Security such as GPEN, GXPN, GCPN, OSCP or similar.
  • Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.


Work Location Assignment: Sandwich, Kent, with flexibility

Purpose

Breakthroughs that change patients' lives ... At Pfizer we are a patient centric company, guided by our four values: courage, joy, equity and excellence. Our breakthrough culture lends itself to our dedication to transforming millions of lives.

Digital Transformation Strategy

One bold way we are achieving our purpose is through our company wide digital transformation strategy. We are leading the way in adopting new data, modelling and automated solutions to further digitize and accelerate drug discovery and development with the aim of enhancing health outcomes and the patient experience.

Flexibility 

We aim to create a trusting, flexible workplace culture which encourages employees to achieve work life harmony, attracts talent and enables everyone to be their best working self. Let’s start the conversation

Equal Employment Opportunity

We believe that a diverse and inclusive workforce is crucial to building a successful business. As an employer, Pfizer iscommitted to celebratingthis,in all itsforms – allowing for us to be as diverse as the patients and communities we serve. Together, we continue to build a culture that encourages, supports and empowers our employees.

DisAbility Confident

We are proud to be a Disability Confident Employer and we encourage you to put your best self forward with the knowledge and trust that we will make any reasonable adjustments necessary to support your application and future career. Our mission is unleashing the power of our people, especially those with unique superpowers. Your journey with Pfizer starts here

Information & Business Tech#LI-PFE About Us

Pfizer careers are like no other. In our culture of individual ownership, we believe in our ability to improve future healthcare, and potential to transform millions of lives. We’re looking for new talent to join our global community, to unearth new innovative therapies that make the world a healthier place.

#J-18808-Ljbffr

  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation team will be responsible for conducting...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Job Description: Senior Manager, Cyber Threat Emulation The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Job Description: Senior Manager, Cyber Threat Emulation The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation...

  • Senior Manager

    2 weeks ago


    Stone Cross, East Sussex, United Kingdom Workingmums Full time

    The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation team will be responsible for conducting...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Manager, Perimeter Security Testing The Global Information Security (GIS) organization delivers proactive cyber defence for the global Pfizer enterprise. Our mission is to secure all of Pfizer's digital information assets ranging from the manufacturing floor to the core data centres, and out to our patient facing solutions. We achieve this mission...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Manager, Perimeter Security Testing The Global Information Security (GIS) organization delivers proactive cyber defence for the global Pfizer enterprise. Our mission is to secure all of Pfizer's digital information assets ranging from the manufacturing floor to the core data centres, and out to our patient facing solutions. We achieve this mission...


  • South East, United Kingdom Hudson Shribman Full time

    Cyber Security Engineer (IT digital systems) ABJ6891a South East c£49 to £61K + Bonus As an experienced IT security engineer joining a strong digital technology team, this pivotal IT Security Engineer role will support the systems and applications that deliver enterprise security services for a global organisation. With a focus on identity and access...


  • Stone, United Kingdom Russell Taylor Full time

    **OT Cyber Security Engineer** **Salary Negotiable** **Full time - Permanent** **Hybrid Working** **Staffordshire** - Do you have a degree in a computer or system science discipline?_ - Would you like a better work life balance with the opportunity of flexible working? _ - Are you keen to further your knowledge and skill set within complex digital and...


  • South East England, United Kingdom Square One Resources Limited Full time

    **Job Title**: Information Security Manager **Location**: London **Salary/Rate**: £75,000 - £80,000 **Start Date**: 20/02/2023 **Job Type**: Permanent **Company Introduction** I have a brand new and exciting opportunity for a global logistics company, they are currently going through a scale-up and are looking for an Information Security Manager to come...

  • IT Specialist

    4 weeks ago


    North East, United Kingdom Mott MacDonald Full time

    Key Responsibilities and Accountabilities Assist and advise the Group Information Security Manager regarding: Risk Analysis and Remediation - Proactively seeking out the most effective means of monitoring information security related activities, by use of existing tools, or the investigation of new tools and methods - Developing and adopting appropriate Risk...


  • Stone, Staffordshire, United Kingdom Rubicon Consulting Full time

    Rubicon Consulting is currently recruiting for a OT Cyber Security Engineer on a Permanent Basis, based remote with travel to the office in Staffordshire and UK wide customer sites. Due to increased workload - our client are looking to recruit an experienced Industrial Automation & Control Systems (Operational Technology) Cyber Security Engineer into the...


  • Stone Cross, East Sussex, United Kingdom Cyberfort Full time

    Job Description Job Title: HR Apprentice Location: Hybrid, Sandwich, Kent (Infrequent travel to other sites or meetings may be required) Hours: 37.5 hours per week, Monday to Friday (Over the course of the apprenticeship, allocated time away from day-to-day role will be given to work on Apprenticeship studies. Approximately 80% of the time will be...

  • SIEM Consultant

    4 weeks ago


    Portsmouth, South East, United Kingdom Henderson Scott Full time

    Cyber Defence Analyst - DV Clearance Required!If your skills, experience, and qualifications match those in this job overview, do not delay your application.The Cyber Defence Analyst will join a growing security team responsible for designing, delivering and maintaining operational cybersecurity capabilities. Conducting pro-active, risk-based, protective...


  • Brough, East Yorkshire, United Kingdom Atlas Recruitment Group Ltd Full time

    Job Description ⭐ Product Security Consultant &##Hybrid - Brough - 2/3days hybrid split &##Implementing Security Controls · Good experience of assessing and managing risk (NIST, ISO27001) · Significant experience with using security baselines, mitigations and controls · Experience of MOD Policies and regulations · Experience with security...


  • East Hagbourne, Oxfordshire, United Kingdom Alexander Mann Solutions (on behalf of Public Sector Resourcing Full time

    Cyber Security Analyst Contract Term: 10 months Location: Hybrid - Didcot 3 days a week As a Cyber Security Analyst your main responsibilities will be: Assist project managers overseeing digital infrastructure projects that are relevant to or improve cyber security in some way. Their contribution of relevant SME knowledge and experience will ensure...


  • Stone, Staffordshire, United Kingdom Yolk Recruitment Ltd Full time

    Senior Infrastructure Engineer (Windows / VMware) | Stone, Staffordshire Salary: Negotiable (Enquire for details) Hybrid: 2-3 days per week on-site Yolk Recruitment are working with a market leader in advanced system integration within the energy sector. They're investing heavily in their Stone site & are looking for an experienced Windows...

  • HR Advisor

    4 weeks ago


    East Sussex, United Kingdom Frazer Jones Full time

    HR Advisor / Consultant. £30,000-£35,000. Near Haywards heath, Primarily Remote working (will be required in the office once weekly) some travel will be required. I am delighted to have partnered with an established and reputable organisation based near Haywards Heath to help them recruit a HR Advisor. This organisation are leaders within in their industry...

  • Security Engineer

    2 days ago


    West Sussex, United Kingdom Natures Way Foods Full time

    We are seeking to appoint an experienced IT Security Engineer to further support our central IT Infrastructure and IT Security team. Working closely with our department lead you will safeguard the organisation's computer networks and systems. Plan and carry out security measures to monitor and protect sensitive data and systems from infiltration and...


  • Gerrards Cross, United Kingdom Blakemore Recruitment Full time

    We are currently recruiting for a Financial Planning practice in Gerrards Cross who are looking to recruit a Senior Paraplanner/Technical Manager. This is a great opportunity for experienced paraplanner, not looking to move into advice, but wanting to take your career forward. This role offers a great opportunity to utilise your technical ability, while...


  • Stone, United Kingdom Vantage Consulting Full time

    Seize this opportunity as a Service Senior Project Manager for Grid Automation Systems for High & Medium voltage Substations. In this key exciting role, you'll be based in Stone, Staffordshire where you will take ownership and personal accountability for project managing the commercial, contractual aspects with a high attention to detail. You will enjoy...