Senior Threat Hunter

Allstate Allstate · Insurance · United States · Remote

Senior Threat Hunter at Allstate responsible for intelligence-driven network defense, analyzing security event data, identifying threats, developing detection use cases, and automating tasks. The role involves collaboration, mentorship, and providing custom tool design for analysis and investigations.

What you'd actually do

  1. Design and run custom analysis models on security event information to discover active threats.
  2. Identify (hunting) security nuances and abnormalities in the environment.
  3. Develop use cases and actionable content to identify security issues that are currently not alerted within the environment.
  4. Lead projects and assignments
  5. Provide custom tool design to assist in analysis and investigations.

Skills

Required

  • threat hunting
  • threat intelligence
  • incident response
  • security operations
  • scripting (Python, PowerShell, Bash)
  • penetration testing
  • ethical hacking
  • exploit writing
  • vulnerability management
  • SIEM
  • Network analysis
  • Signature development/management
  • EDR solutions
  • common security infrastructure tools

Nice to have

  • AWS
  • Azure
  • large, complex corporate network environments
  • application design/engineering
  • Windows/Linux system administration
  • RDBMS/NoSQL database administration
  • malware analysis
  • reverse engineering
  • SANS GIAC courses
  • CEH
  • CISSP
  • OSCP
  • tool-specific certifications

What the JD emphasized

  • 5+ years overall technical experience in threat hunting, threat intelligence, incident response, security operations, or related information security field
  • 2+ years’ experience in penetration testing, ethical hacking, exploit writing, and/or vulnerability management
  • Deep understanding of common network and application stack protocols
  • Advanced experience with security operations tools
  • Broad experience with various common security infrastructure tools