Director of Advanced Threat Unit

Black & VeatchLenexa, KS
268d

About The Position

The Director of the Advanced Cyber Threat Unit will be responsible for leading a team dedicated to the detection and response to advanced cyber security threats and nation-state hacking activities. The position is a senior leadership role responsible for overseeing the management, coordination, and response to cybersecurity incidents within the organization. This position ensures the organization's preparedness and swift response to any cyber threats, minimizing the impact on operations and safeguarding data integrity. The unit's scope includes threat intelligence, threat hunting, security orchestration and automation response platforms (SOAR), tracking of advanced persistent threats (APTs), and implementing the MITRE ATT&CK framework and cyber kill chain methodologies.

Requirements

  • Bachelor's or Master's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • At least 10 years of experience in cybersecurity, with a focus on incident response and management.
  • All applicants must be able to complete pre-employment onboarding requirements (if selected) which may include any/all of the following: criminal/civil background check, drug screen, and motor vehicle records search, in compliance with any applicable laws and regulations.

Nice To Haves

  • Proven track record of leading incident response teams and managing complex cybersecurity incidents.
  • In-depth knowledge of cybersecurity threats, vulnerabilities, and attack vectors.
  • Strong leadership and management skills, with the ability to lead a team under pressure.
  • Excellent analytical and problem-solving skills, with the ability to quickly assess and respond to incidents.
  • Effective communication skills, with the ability to clearly convey technical information to non-technical stakeholders.
  • Experience with cybersecurity tools and technologies, including SIEM, IDS/IPS, and threat intelligence platforms.
  • Certifications such as CISSP, CISM, or CEH are desirable.

Responsibilities

  • Develop and implement detection strategies, policies, and procedures for effective incident response and management against organized crime and nation-state actors.
  • Lead the Incident Response Team, ensuring readiness and coordination during cyber incidents.
  • Oversee the development and implementation of threat intelligence strategies and threat hunting operations.
  • Create, utilize and enhance SOAR platforms to automate and streamline cybersecurity operations.
  • Track and analyze advanced threats using the MITRE ATT&CK framework and cyber kill chain methodologies.
  • Generate and disseminate actionable threat intelligence related to nation-state cyber threat actors.
  • Collaborate with federal law enforcement agencies to document, share, and address nation-state cyber threats.
  • Ensure compliance with federal regulations in cybersecurity operations including Cybersecurity Maturity Model Certification (CMMC) areas.
  • Collaborate with executive leadership to align the incident response strategies with the organization's overall risk management framework.
  • Oversee the development and maintenance of an incident response plan, ensuring it is current, comprehensive, and effective.
  • Maintain up-to-date knowledge of the latest cybersecurity threats, vulnerabilities, and attack vectors.
  • Develop and deliver reports and presentations on cyber threat activities to senior management and stakeholders.
  • Foster a culture of continuous improvement and innovation within the Advanced Cyber Threat Unit.
  • Coordinate the response to cybersecurity incidents, ensuring timely containment, eradication, and recovery efforts.
  • Conduct post-incident analysis to document and identify root causes, evaluate response effectiveness, and implement improvements.
  • Manage communication with stakeholders during and after an incident, providing timely updates and maintaining transparency.
  • Develop and maintain relationships with external partners, including law enforcement, intelligence agencies, and cybersecurity vendors.
  • Oversee the implementation and operation of advanced monitoring and detection systems to identify potential cybersecurity threats.
  • Ensure continuous monitoring of the organization's network, systems, and applications for signs of malicious activity.
  • Lead efforts to enhance threat intelligence capabilities, staying informed on the latest cyber threats and attack vectors.
  • Develop and deliver training programs to enhance the incident response capabilities of the Cyber Incident Response Team and other relevant staff.
  • Promote cybersecurity awareness across the organization, ensuring employees understand their role in incident response and prevention.

Benefits

  • Competitive compensation.
  • 401K match and benefits that start day 1.
  • Flexible work schedules.
  • Paid vacation and holiday time.
  • Sick time and dependent sick time.
  • Adoption reimbursement.
  • Tuition reimbursement.
  • Vendor discounts.
  • Employment referral program.
  • AD&D insurance.
  • Pre-taxed accounts.
  • Voluntary legal plan.
  • B&V Credit Union.
  • Performance-based bonus program.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Senior

Industry

Professional, Scientific, and Technical Services

Education Level

Bachelor's degree

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service