Chicago, IL, 60684, USA
3 days ago
Senior Insider Threat Hunt Investigator
Senior Insider Threat Hunt Investigator Chicago, Illinois;Washington, District of Columbia; Charlotte, North Carolina; Denver, Colorado; Jacksonville, Florida; Jersey City, New Jersey; Addison, Texas **Job Description:** At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve. Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! **Job Description:** The position of the Senior Insider Threat Hunt Investigator is responsible for analyzing and correlating large data sets to uncover insider threats and attack techniques that may be present within the bank’s environments. A Senior Insider Threat Hunter will be tasked with and collaborate with data science, threat research, Cyber Threat Hunt Intelligence and Defense teams to identify opportunities to build and respond to Insider tactics and techniques. In support of these processes, the role will also include developing and documenting new and innovative Insider hunt hypotheses to increase the team’s ability to find existing insider threats. Required Skills: + 10+ years’ work experience with an insider threat focus or technical background that could be applied to understand key insider risk components + High proficiency with forensic tools (ENCASE), CrowdStrike and other similar investigative and/or monitoring tools + Direct experience working with very large datasets and log analysis tools including but not limited to: Splunk, Python, SQL + Routine review of application/software user activity + Correlation analysis of existing case types and escalations to ensure issue is relevant to dig deeper/ escalate + Strong analytical and problem solving skills + Expertise in running endpoint analysis + Experience analyzing system, network, and application logging for attack techniques at all stages of the cyber kill chain. + Excellent collaboration skills to effectively work with other technical teams + Ability to work both independently and as part of a team to achieve goals + Diversity of thought, critical thinking, willingness to learn, and persistence to identify risk + Methodical and systematical approach to utilizing technical tools, applications, etc. + Exceptional written and verbal communication skills + Mindset of curiosity: not afraid to learn new things + Excellent organizational skills to manage caseload, projects and ad hoc requests + Familiarity with participating/driving incident response events Desired Skills: + An understanding of human behavior / human psychology or investigative background + Technical experience with information security / data loss prevention tools or controls such as Intrusion Detection & Prevention technologies (IDS/IPS) and/or SIEM systems and other data correlation engines. + Certifications - Security+, Network+, CEH, CISSP, CCNA, CCNP, EnCE other cyber security related certifications + High proficiency with sleuthing in OSINT + Familiarity with working in cloud + Networking/System administration experience + Bachelor’s in computer science or related fields This job will be open and accepting applications for a minimum of seven days from the date it was posted. **Shift:** 1st shift (United States of America) **Hours Per Week:** 40 Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity and affirmative action, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates. To view the "Know your Rights" poster, CLICK HERE (https://www.eeoc.gov/sites/default/files/2023-06/22-088\_EEOC\_KnowYourRights6.12.pdf) . View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) . Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy (“Policy”) establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment. To view Bank of America’s Drug-free Workplace and Alcohol Policy, CLICK HERE . Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank’s required accommodation request process before your first day of work. This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Confirm your E-mail: Send Email