#R22921
naging cyber security at Allstate. This includes Governance/Risk/Compliance, Access Management, Network Security, and Threat Response Services. The department is responsible for ensuring confidentiality, integrity, and availability of Allstate systems.
We are seeking an experienced Threat Hunter to perform intelligence-driven network defense supporting the monitoring and incident response capabilities. The role will involve analysis of large amounts of data from vendors and internal sources, including various indicator feeds, Splunk, and several threat intelligence tools, etc. The candidate will perform the functions of threat hunting and serve as a liaison for Threat Services for the Global Security Fusion Center, and mentor the incident handling and forensics teams.
Primary Responsibilities:
Design and run custom analysis models on security event information to discover active threats
Identify (hunting) security nuances and abnormalities in the environment
Providing mentorship and support to teammates to help enrich and develop others in the team and within other areas of the GSFC regarding threat hunting
Develop use cases and actionable content to identify security variants that are currently not alerted within the environment
Lead projects and assignments
Custom tool design to assist in analysis and investigations
Perform as an Information Security SME in four of the following areas:
Collaborate and support outside teams and organizations to enhance the threat hunting service offering
Communication/rapport with other divisions and various peers
Capable of identifying need & driving solutions, and providing guidance, in an autonomous manner
Assist with compiling metrics and reporting of the service offering
Lead projects and deliverables with limited oversight and day to day guidance
Qualifications
Essential Criteria
Bachelors and/or Masters Degree in Engineering, Computers Science, or related field/experience (4+ years)
4+ years overall technical experience in either threat hunting, threat intelligence, incident response, security operations, or related information security field
Deep understanding of common network and application stack protocols, including but not limited to TCP/IP, SMTP, DNS, TLS, XML, HTTP, etc.
Advanced experience with security operations tools, including but not limited to:
Broad experience with various common security infrastructure tools (NIDS, HIPS, EDR, etc.)
Experience hunting in AWS and/or Azure environments
Desirable Criteria
Excellent analytical and problem-solving skills, a passion for research and puzzle-solving
Strong communication (oral, written, presentation), interpersonal and consultative skills
Deep understanding of large, complex corporate network environments
Knowledge or experience in penetration testing, ethical hacking, exploit writing, and/or vulnerability management
Knowledge or experience in application design/engineering, including but not limited to programming/scripting, Windows/Linux system administration, RDBMS/NoSQL database administration, etc.
Scripting experience related to system administration and security operations (Python, Bash, PowerShell, Perl, C/C++)
Recent experience with malware analysis and reverse engineering
Strong organization and documentation skills
Obtained certifications in several of the following: SANS GIAC courses, CEH, CISSP, OSCP, or tool-specific certifications
Primary Skills
Customer Centricity, Digital Literacy, Inclusive Leadership, Learning Agility, Results-Oriented
Shift Time
Recruiter Info
Yateesh
About Allstate
Joining our team isn't just a job - it's an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger - a winning team making a meaningful impact.
The Allstate Corporation is one of the largest publicly held insurance providers in the United States. Ranked No. 84 in the 2023 Fortune 500 list of the largest United States corporations by total revenue, The Allstate Corporation owns and operates 18 companies in the United States, Canada, Northern Ireland, and India. Allstate India Private Limited, also known as Allstate India, is a subsidiary of The Allstate Corporation. The India talent center was set up in 2012 and operates under the corporation's Good Hands promise. As it innovates operations and technology, Allstate India has evolved beyond its technology functions to be the critical strategic business services arm of the corporation. With offices in Bengaluru and Pune, the company offers expertise to the parent organization's business areas including technology and innovation, accounting and imaging services, policy administration, transformation solution design and support services, transformation of property liability service design, global operations and integration, and training and transition.
Learn more about Allstate India here .