Expert Cybersecurity - Cyber Threat & Response

AT&T AT&T · Telecom · Charlotte, NC

This role focuses on cybersecurity threat hunting, intelligence, incident response, and response engineering within AT&T's network and enterprise security. It involves proactive monitoring, vulnerability analysis, risk assessment, and developing security strategies. While AI/ML familiarity is mentioned, the core function is cybersecurity operations, not AI model development.

What you'd actually do

  1. Lead continuous, proactive monitoring and hunting for sophisticated cyber threats and vulnerabilities.
  2. Quickly respond to incidents using advanced detection, investigation, and containment techniques.
  3. Develop, implement, and refine security policies and incident management procedures that safeguard critical systems and data.
  4. Conduct in-depth risk assessments and develop strategic mitigation plans.
  5. Spearhead initiatives in cyber incident response, threat intelligence, vulnerability management, digital forensics, software assurance, IoT security, policy standards, and more.

Skills

Required

  • Knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime/fraud groups and both state and non-state sponsored threat actors.
  • Understanding of cloud-based architectures and highly distributed big data architectures.
  • Experience with Malware (including reverse engineering) and with internal and external attacks.
  • Strong understanding of network security threats including APT, Botnets, Distributed Denial of Service (DDoS) attacks, worms, and network exploits.
  • Experience with network probing/testing/analysis tools (Nessus, nmap, burp, wireshark, etc.)
  • Programming skills that will be used to construct, modify, and execute testing tools including shell (ksh, bash), [g]awk, Python, PERL, regex, .NET Programming, Java, C, C++, C#, PowerShell, curl, Web application development (PHP, ASP.NET, etc.).
  • Deep technical knowledge of Windows, UNIX and Linux operating systems as both an expert user and system administrator.
  • Comprehensive knowledge of software security testing principles, practices, and tools, experience of vulnerability assessments in a complex environment.
  • Experience or familiarity with vulnerability analysis, computer forensics tools, cryptography principles.
  • Excellent teamwork skills for collaboration on analysis techniques, implementation, and reporting.
  • Must be able to work both independently as well as effectively work in teams of individuals with a variety of skills and backgrounds.
  • Excellent written and verbal communication skills and have demonstrated ability to present material to senior officials.
  • Highly self-motivated requiring little direction.
  • Demonstrates creative/out-of-the-box thinking and good problem-solving skills.
  • Demonstrates strong ethical behavior.

Nice to have

  • Familiarity with applying Artificial Intelligence (AI) or Machine Learning (ML) techniques in cybersecurity contexts (e.g., anomaly detection, threat hunting, behavioral analytics, or risk scoring).

What the JD emphasized

  • Requires office presence of a minimum of 5 days per week