Principal Cyber Defense Ops Specialist

Reposted 24 Days Ago
Be an Early Applicant
3 Locations
In-Office or Remote
112K-148K Annually
Senior level
Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
Ready to Transform the Future | Careers in Technology & Security
The Role
The Principal Cyber Defense Ops Specialist leads security operations, manages incident response, and handles advanced threat detection and forensics analysis.
Summary Generated by Built In

The Principal Cyber Defense Ops Specialist will be a resident technical expert within the Security Operations Center (SOC). This role is for a senior level individual contributor role on the Cyber Defense – Computer Security Incident Response Team (CSIRT) and will be working closely with the Threat Intelligence, Attack Surface Management, and Detection Engineering teams.

This role will have responsibility for one or more of the security systems aligned with their specific function, either directly or indirectly; and will be a technical authority for critical operational decisions having significant impact to the organization with authority extending beyond the team to include both technology and business line areas in security-related decisions. 

This role will also help mature an existing CSIRT incident response, malware analysis, and advanced threat detection programs.

The individual would be responsible for (but not limited to):

  • Conducting network forensics, log analysis, and malware triage in support of incident response investigations
  • Utilizing current and future tools to perform hunting for complex insider and outsider threats
  • Analyzing vulnerability assessment and penetration testing results to help identify stealthy threats and drive remedial action of critical threats
  • Supporting proactive deep malware analysis, and recommending defensive actions to effectively defend against malware related attacks
  • Recommend how to optimize security monitoring tools based on threat hunting discoveries
  • Facilitating the evaluation, selection and implementation of supporting SOC systems and tools
  • Helping develop meaningful metrics to reflect the true posture of the environment allowing the organization to make educated decisions based on risk
  • Exercising analytical skills and knowledge of supervision regulations

Experience and Skills:

  • 7 or more years of progressive security industry experience
  • Demonstrated understanding of various operating systems (Window, Unix, Linux, AIX, etc) with an emphasis on Security Operations
  • Hands on experience with:
    • Security Information and Event Management Tools (QRadar, Arcsight, Splunk, etc.)
    • Intrusion Prevention Tools
    • Database Security Tools (Guardium)
    • Data Loss Prevention Tools (Symantec, Websense, etc.)
    • Firewalls (Cisco, Palo Alto, Check Point etc.)
    • Application Security Tools
    • Vulnerability tools
    • Cyber Security Incident Response
    • Network Intrusion Detection Systems (SourceFire, McAfee, etc.)
    • Host Intrusion Detection Systems
    • Packet Capture tools
  • Experience with threat taxonomies, models (e.g. MITRE ATT&CK), and Indicators of Compromise (IOCs)
  • Experience with one or more scripting language (Bash, Python, Perl, PowerShell, etc.)
  • Experience with malware reverse Analyzing and tools such as IDA Pro, OllyDbg, PEID etc.
  • Knowledge of Advanced Persistent Threat (APT) actors and associated tools, techniques, and procedures (TTPs)
  • Excellent oral and written communications skills 
  • Strong analytical and critical thinking skills
  • Self-motivation with the ability to work under minimal supervision
  • Experience with computer security incident handling, coordination and response
  • Knowledge and experience required in the areas of security assessment and vulnerability scanning, risk based threat analysis, and security mitigation techniques 

Education, Certifications and/or Other Professional Credentials:

  • Bachelor’s Degree (Security / IT Related) or equivalent combination of experience
  • A combination of relevant industry certifications including, but not limited to CISSP, GREM, GCIH, GCIA, CEH, GCED, CISA, etc

 

Hours & Work Schedule

Hours per Week: 40

Work Schedule:  Monday through Friday 8:30AM - 5:00PM

Pay Transparency

The salary range for this position is $112,000 - $148,000 per year plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to the work location, and relevant skills and experience.

We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens’ paid time off policy exceeds the mandatory, paid sick or paid time-away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit https://jobs.citizensbank.com/benefits .

About Us

Equal Employment Opportunity

Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague’s or a dependent’s reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.

Equal Employment and Opportunity Employer

Job Applicant Data Privacy Policy

Background Check

Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.


Top Skills

Application Security Tools
Arcsight
Bash
Check Point)
Cyber Security Incident Response
Data Loss Prevention Tools (Symantec
Database Security Tools (Guardium)
Firewalls (Cisco
Host Intrusion Detection Systems
Ida Pro
Intrusion Prevention Tools
Mcafee)
Network Intrusion Detection Systems (Sourcefire
Ollydbg
Packet Capture Tools
Palo Alto
Peid
Perl
Powershell
Python
Security Information And Event Management Tools (Qradar
Splunk)
Vulnerability Tools
Websense)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Providence, RI
17,000 Employees
Year Founded: 1828

What We Do

As one of the oldest and largest financial services firms in the United States with a history dating back to 1828, we’re committed to providing solutions and expertise that support our customers, clients, colleagues, and communities in what’s next on their own unique journey. We invest in the humans who build the logic, ideas, and innovations that bring new technologies to life. Investments in AI, cloud computing, machine learning and automation provide our engineers the tools that enable us to remain competitive and win in today’s environment. At Citizens, we recognize that the journey to accomplishment is no longer linear and that individuals are made of all they have done and all they are going to do. Whether you’re considering banking with us or looking to work with us, you’ll find a customer-centric culture and a supportive, collaborative workforce at Citizens. You’re made ready and so are we. If you're ready to advance your career in technology and security, learn more about opportunity's Citizens offers here: https://jobs.citizensbank.com/digital-transformation

Why Work With Us

We empower the colleagues that power our tech. With growth & upskilling opportunities and sought-after benefits, plus a diverse culture of people and perspectives, we help our colleagues achieve career goals. Because innovation can’t happen without the minds and hearts of our people. Technology is constantly evolving, and we believe you can too.

Gallery

Gallery

Similar Jobs

Citizens Logo Citizens

Operations Specialist

Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
In-Office or Remote
3 Locations
17000 Employees
112K-148K Annually

Cox Enterprises Logo Cox Enterprises

Copywriter

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
50000 Employees
20-30 Hourly

Cox Enterprises Logo Cox Enterprises

Director, Enterprise Sales (Cox Fleet)

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
50000 Employees
75K-179K Annually

Trail of Bits Logo Trail of Bits

Marketing Manager

Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
Remote
United States
125 Employees
130K-160K Annually

Similar Companies Hiring

Bellagent Thumbnail
Artificial Intelligence • Machine Learning • Business Intelligence • Generative AI
Chicago, IL
20 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account