Senior Cyber Threat Hunter

2 weeks ago


Stone Cross East Sussex, United Kingdom Pfizer Full time

Job Description: Senior Cyber Threat Hunter

ROLE SUMMARY

The Pfizer Global Information Security (GIS) organization safeguards critical information assets by employing world-class talent to proactively defend company interests. Fostering a culture of colleague empowerment, we support Pfizer’s mission of delivering breakthroughs that change patients’ lives. GIS teams continuously work to detect threats faster, respond decisively, and make Pfizer harder to hack. GIS leadership cultivates a positive, fun, welcoming, collaborative, flexible, and supportive work environment that lifts people up and helps them realize their full potential. We achieve this through our company values of Courage, Excellence, Equity, and Joy, and a strong culture of enablement. This is a great place to work where colleagues are provided with opportunities to grow, receive acknowledgement of their achievements, and are rewarded for hard work.

The Cyber Threat Hunting (CTH) team is accountable for identifying unrealized threats that may have evaded security controls and actively improving our security posture. We use vast collections of data, a comprehensive toolset, and creative investigative techniques to identify & analyse potential threats. In collaboration with other GIS teams, we also contribute to the development and implementation new security controls and detections.

The incumbent will be a senior member of the Pfizer GIS Cyber Threat Hunting team, an individual contributor (technical) reporting to the Senior Manager of Cyber Threat Hunting & Automation Enablement in the GIS Cyber Threat Analysis & Response organization.

The role engages with cross-functional colleagues and external business partners. You will leverage an advanced level of knowledge & experience to perform threat hunts using a dynamic collection of tools, data, and processes. Other aspects include assisting the development of new threat hunting exercises, managing the team backlog, and contributing to new detections development. You also contribute to – and may lead – team projects and other work related to the CTH mission. This unique and exciting opportunity is ideal for individuals who are motivated, curious, creative, team-oriented, organized, intelligent, and embrace a culture of life-long learning. It offers a chance to take ones work to the next level, explore new technologies, apply experience, grow ones skillset, and regularly exercise critical thinking skills. You’ll enjoy the freedom to explore, ample amounts of support, best-of-breed tools, and opportunities for great team collaboration.

We understand the challenges associated with filling specialized cybersecurity roles, and are open to training senior technical professionals who have the skills and experience required to fulfil the tasks of this role. Candidates meeting the core job requirements are encouraged to apply and will be considered.

ROLE RESPONSIBILITIES

  • Maintain awareness of threats targeting pharmaceutical companies and related industries, such as manufacturing and healthcare.
  • Contribute to the identification of new, relevant threat hunting opportunities.
  • Apply advanced technical knowledge and experience to design & execute cyber threat hunting exercises in an efficient, accurate, and complete manner.
  • Contribute to the management of the team backlog.
  • Perform all work in accordance with documented policies & procedures.
  • Maintain current, accurate, and complete documentation for all phases of threat hunting exercises.
  • Independently perform accurate & complete analysis of cyber threat hunt findings using defensible & creative investigative techniques.
  • Leverage cyber threat hunt outcomes to develop detections & other security controls that proactively mitigate risk.
  • Conceptualize and develop solutions for moderately complex challenges encountered by the team.
  • Contribute to the identification, design, and/or development of new automation capabilities and process improvements that help mature the CTH program.
  • Develop the knowledge and experience of the Pfizer environment to serve as a subject matter expert on the available logs and analysis techniques.
  • Provide training & support to junior members of the team.
  • Contribute to the ongoing development & improvement of the CTH program.
  • Exercise sound judgement and decision-making by applying expert-level knowledge and experience.
  • Perform all work in alignment with the Agile operating model established by the organization and adopted by the team.
  • Maintain awareness of team procedures, emerging threats, organization announcements, technical solution operating practices, and team communication by regularly reviewing information from various forms of documentation, threat intelligence, & business communication.

BASIC QUALIFICATIONS

  • BS in Information Security, Computer Sciences, Information Systems, Engineering, Sciences, or related field
  • Level of professional experience showcased through several years of employment in a corporate environment supporting information security, information technology, or related functions
  • Experience querying, correlating, & analyzing large-scale datasets using tools such as Splunk, SQL, Python, and/or Microsoft Excel
  • Experience analyzing data from network solutions (firewall, proxy, IPS/IDS, network security appliances, VPN, etc.), web applications, business information systems, endpoint security solutions, and other related technologies
  • Extensive experience performing analysis of activity on Microsoft Windows endpoints, including process, network, registry, and file system events, along with related forms of activity
  • Strong understanding of TCP/IP, common network protocols, OSI model, traffic flow analysis, and common network services (DHCP, DNS, web services, email, database, etc.)
  • Ability to analyze and disposition various forms of endpoint, network, application, and / or service related collections of activity in a largely independent manner
  • Demonstrated history of being a creative thinker, curious, detail-oriented, and collaborative
  • Ability to clearly communicate potentially complex information in a concise, accurate, and complete manner in both written and verbal form
  • Ability to communicate effectively in a team setting and establish a rapport with a diverse, globally dispersed group of information security professionals
  • Commitment to training, self-paced study, and maintaining proficiency in the cybersecurity domain

PREFERRED QUALIFICATIONS

  • Level of experience consistent with several years of work in a Threat Hunting, Incident Response, or Security Operations functions using a variety of security tools for monitoring a large-scale enterprise environment
  • Knowledge of information security principles and standards
  • Experience using frameworks such as the Lockheed Martin Cyber Kill Chain, Diamond Model, and / or MITRE ATT&CK to model & analyze threat activity
  • Experience developing detections and alerts using SIEM, endpoint, and network solutions
  • Experience with one or more scripting languages, such as Python, Bash, or PowerShell
  • Experience analyzing event data from common cloud services
  • Experience analyzing Linux and/or Mac OS endpoint activity
  • Security certifications such as GCIA, GCIH, GCTI, CEH, EnCE, CCE, Security+, CISSP or similar
  • Demonstrated experience working on an Agile team with an emphasis on collaboration, adaptability, prioritization, & proactive problem-solving that yields meaningful outcomes

PHYSICAL/MENTAL REQUIREMENTS

  • Ability to perform complex data analysis

Work Location Assignment:Sandwich (Kent) with flexible working arrangements possible

Purpose

Breakthroughs that change patients' lives ... At Pfizer we are apatient centric company, guided by our four values: courage, joy, equity and excellence. Our breakthrough culture lends itself to our dedication to transforming millions of lives.

Digital Transformation Strategy

One bold way we are achieving our purpose is through our company wide digital transformation strategy. We are leading the way in adopting new data, modelling and automated solutions to further digitize and accelerate drug discovery and development with the aim of enhancing health outcomes and the patient experience.

Flexibility

We aim to create a trusting, flexible workplace culture which encourages employees to achieve work life harmony, attracts talent and enables everyone to be their best working self.Let’s start the conversation

Equal Employment Opportunity

We believe that a diverse and inclusive workforce is crucial to building a successful business. As an employer, Pfizer iscommitted to celebratingthis,in all itsforms – allowing for us to be as diverse as the patients and communities we serve. Together, we continue to build a culture that encourages, supports and empowers our employees.

DisAbility Confident

We are proud to be a Disability Confident Employer and we encourage you to put your best self forward with the knowledge and trust that we will make any reasonable adjustments necessary to support your application and future career. Our mission is unleashing the power of our people, especially those with unique superpowers. Your journey with Pfizer starts here

Information & Business Tech #J-18808-Ljbffr
  • Hunter

    2 weeks ago


    Stone Cross, East Sussex, United Kingdom Pfizer Full time

    Senior Cyber Threat Hunter The Pfizer Global Information Security (GIS) organization safeguards critical information assets by employing world-class talent to proactively defend company interests. Fostering a culture of colleague empowerment, we support Pfizer’s mission of delivering breakthroughs that change patients’ lives. GIS teams continuously...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation team will be responsible for conducting...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Job Description: Senior Manager, Cyber Threat Emulation The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat...

  • Senior Manager

    4 weeks ago


    Stone Cross, East Sussex, United Kingdom Workingmums Full time

    The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation team will be responsible for conducting...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Job Description: Senior Manager, Cyber Threat Emulation The Global Information Security (GIS) organization secures Pfizer's most important information assets through world class talent, top security controls and an empowered culture that serves to enable Pfizer's mission of delivering breakthroughs that change patients' lives. The Cyber Threat Emulation...


  • East Kilbride, United Kingdom Parker Shaw Full time

    **Job description**: **Duration** : 6 months initially UK National SC Clearance We are currently recruiting for a Cyber Security Advisor for an initial 6 month contract role based in East Kilbride. Initially, there will be a requirement for in-office induction in East Kilbride. Subsequently, a minimum 2 days per week in Glasgow (East Kilbride) office...


  • East Kilbride, United Kingdom Spinwell Full time

    Role: Cyber Security Advisor REF 74430 Contract Length: 6 months initially Location: Hybrid/East Kilbride, must attend the office a minimum of 2 days per week IR35: Inside Pay Rate to Intermediary: Market Rate Security Clearance: SC and UK National requested Spinwell is recruiting for a Cyber Security Advisor for an excellent opportunity within the public...

  • Cyber Apprentice

    16 hours ago


    East Grinstead, United Kingdom Gatwick Airport Full time

    **Cyber Security Apprentice** We are looking for someone who can help us redefine what's possible for our Cyber Security Team As part of our ‘Grow with Gatwick' initiative you'll be provided with plenty of training and support to ensure you're developing and growing your career. We're looking for enthusiastic people to join our 2023 intake as a Cyber...


  • Brighton, East Sussex, United Kingdom Cloudsecurityexpo Full time

    Your new company A leading Financial Services organisation in Brighton is currently looking for a Senior Cyber Security Analyst to come in and support the existing Cyber team with the day to day running of the Cyber Security infrastructure for the organisation. Your new role You will be supporting the Head of IT and Cyber Security with the day-to-day...


  • East Anglia, United Kingdom Bulletproof (Cyber Security) Full time

    With a focus on maintaining, growing and retaining accounts, the Account Executive will work closely across both internal-facing and client teams’ to ensure accounts are pro-actively managed and that cross and up-sell opportunities are maximised. Within the role, the Account Executive will need to build strong relationships with client stakeholders, and we...


  • East Anglia, United Kingdom Smiths Detection Full time

    Every minute of every day, in nearly every country across the globe, Smiths Detection people and technology make the world a safer place. We safeguard people, business and infrastructure with the latest innovations and screening technology for aviation, ports, borders, defense, and security across 55 countries around the globe Job Purpose: We are seeking...


  • Stone, Staffordshire, United Kingdom Rubicon Consulting Full time

    Rubicon Consulting is currently recruiting for a OT Cyber Security Engineer on a Permanent Basis, based remote with travel to the office in Staffordshire and UK wide customer sites. Due to increased workload our client are looking to recruit an experienced Industrial Automation & Control Systems (Operational Technology) Cyber Security Engineer into...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Manager, Perimeter Security Testing The Global Information Security (GIS) organization delivers proactive cyber defence for the global Pfizer enterprise. Our mission is to secure all of Pfizer's digital information assets ranging from the manufacturing floor to the core data centres, and out to our patient facing solutions. We achieve this mission...


  • East Kilbride, United Kingdom Bangura Solutions Full time

    **Role**: Cyber Security Advisor **Contracting Authority**: Government **Contract Length**: 6 Months **Location**:East Kilbride **Pay Rate**: £600 per day **Clearance**:SC Clearance An exciting opportunity has become available with our prestigious client who is a prominent government department. The client is seeking an experienced Cyber Security...


  • Stone Cross, East Sussex, United Kingdom Workingmums Full time

    Manager, Perimeter Security Testing The Global Information Security (GIS) organization delivers proactive cyber defence for the global Pfizer enterprise. Our mission is to secure all of Pfizer's digital information assets ranging from the manufacturing floor to the core data centres, and out to our patient facing solutions. We achieve this mission...


  • West Sussex, United Kingdom Hays Full time

    Your new company A leading Financial Services organisation in Brighton is currently looking for a Senior Cyber Security Analyst to come in and support the existing Cyber team with the day to day running of the Cyber Security infrastructure for the organisation. Your new role You will be supporting the Head of IT and Cyber Security with the day-to-day...


  • West Sussex, United Kingdom Hays Full time

    Your new company A leading Financial Services organisation in Brighton is currently looking for a Senior Cyber Security Analyst to come in and support the existing Cyber team with the day to day running of the Cyber Security infrastructure for the organisation.Your new role You will be supporting the Head of IT and Cyber Security with the day-to-day...


  • East Anglia, United Kingdom Smiths Detection Full time

    Every minute of every day, in nearly every country across the globe, Smiths Detection people and technology make the world a safer place. We safeguard people, business and infrastructure with the latest innovations and screening technology for aviation, ports, borders, defense, and security across 55 countries around the globe Job Purpose: We are seeking...

  • Account Executive

    6 days ago


    East Anglia, United Kingdom Bulletproof (Cyber Security) Full time

    Job Description Overview With a focus on maintaining, growing and retaining accounts, the Account Executive will work closely across both internal-facing and client teams’ to ensure accounts are pro-actively managed and that cross and up-sell opportunities are maximised. Within the role, the Account Executive will need to build strong relationships with...

  • Detective Constable

    1 month ago


    South East, United Kingdom South East Regional Organised Crime Unit (SEROCU) Full time

    **Department**:Cyber Crime Unit **Rank**:Detective Constable **OR** Police Constables who wish to develop towards becoming a fully accredited PIP2 Detective Constable whilst in post **Location**: Flexible between near Junction 12 of the M4, Whiteley (Hampshire) & Crawley (West Sussex) The SEROCU Cyber Crime Unit are seeking a Regional Cyber Protect Officer...