CVS Health-posted 3 months ago
$83,430 - $222,480/Yr
Full-time • Senior
Work At Home, AZ
5,001-10,000 employees
Ambulatory Health Care Services

CVS Health is seeking a Senior Threat Intelligence Engineer to be part of the Cyber Threat Intelligence (CTI) team. The incumbent is responsible for all phases of cyber security intelligence (collection, analysis, production and dissemination) and tasked with identifying increasingly sophisticated cyber-attacks; monitoring the tactics, techniques and procedures of threat actors and establishing motives that could impact company resources. This intelligence is then leveraged to actively hunt for adversary activity targeting CVS Health's computing environment. As a senior member of the CTI team, you will collect, monitor and analyze various threat data and intelligence feeds to provide actionable threat indicators as well as recommending suitable defensive solutions. In addition, you will also engineer various Threat Intelligence solutions that will allow the threat intelligence team to continue to automate and improve their collection and analysis capabilities. You will also help develop alerts, enhance workflows and create automation leveraging the actionable threat indicators. CTI also continually fosters strong collaborative relationships with the Intelligence community, law enforcement agencies, and the financial, retail, and healthcare industries.

  • Identify, evaluate and communicate new and ongoing cyber security threats through regular and ad-hoc reporting; produce intelligence briefings, attribution reports and position papers
  • Produce concise tactical warning bulletins and other analytic reports that detail daily findings, events, and activities
  • Engineer solutions for automating the intelligence cycle and effectively perform all phases of the intelligence cycle
  • Maintain, develop and continually analyze threat data/intelligence sources, both technical and non-technical
  • Contribute to overall engineering efforts, including supporting design and development for capturing, storing, processing, and analyzing and disseminating threat intelligence for awareness and action
  • Implement in-depth research on threat actors, TTPs and vulnerabilities and generate reports to relevant stakeholders
  • Analyze and help prioritize security incidents for further enrichment of detection and alerting capabilities using various security technologies (SIEM, SOAR, EDR)
  • Continuously improve processes for use across detection sets for more efficient operations
  • 5+ years of experience in advanced threat intelligence collection and analysis methodologies, threat actors and MITRE techniques
  • 5+ years of experience with threat intelligence gathering tools
  • 5+ years of experience writing threat briefs, analyzing security logs and prioritizing threats from alerts
  • 3+ years of experience with SIEM and SOAR tools, open source and/or commercial tools
  • 5+ years of experience in a Security Engineering environment with the ability to script, query and engineer solutions
  • 5+ years of experience in engineering and analyzing diverse datasets such as product telemetry, commercial threat feeds and information from OSINT sources
  • Experience automating, and developing solutions and prototypes in the security particularly the threat intelligence space
  • Experience building a threat intelligence and research platform
  • Subject matter expertise in the retail and health threat intelligence space
  • Deep understanding of the threat intelligence research space and have experience in the dark net collecting and gathering intelligence
  • Extensive experience presenting various threat intelligence reports to various stakeholders
  • Affordable medical plan options, a 401(k) plan (including matching company contributions), and an employee stock purchase plan
  • No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching
  • Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service