Lead TVM & Threat Hunting Engineer

19 Feb 2025

Vacancy expired!

At eXcell, we set you up for job success right from the start. Our precision recruiting process aligns the right fit for the right people. We have a brand-new opportunity for a Lead, TVM & Threat Hunting Engineer to join our team for a remote position. This Engineer assists in the management of enterprise security as well as provides technical support and advice on a wide variety of information security responsibilities, issues, and problems. This includes Security Incident Response, Vulnerability Management, Network and Application Vulnerability Scans, Leading / Performing Forensic Investigations, Compliance, Documentation, User Awareness, including leading phishing simulation efforts, and being a Subject Matter Expert in these and other areas related to Information Security. Scope of Activity and Responsibilities:

  • Participate in security incident response activities as directed and as outlined in the Security Incident Response Policy and Procedure
  • Monitor, analyze, determine applicability, and take action on security events that are reported via a variety of sources, including SIEM, IDS / IPS and AntiMalware servers
  • Monitor , analyze, determine applicability, and assess risk for vulnerabilities reported by manufacturers that are relevant to the operations
  • In conjunction with the Security Vulnerability Management process, coordinate and schedule scans of our internal address space and applications for vulnerabilities using approved tools
  • Generate and publish reports of vulnerabilities; using these reports, assess level of compliance with the Security Vulnerability Management process
  • Participate in the Threat Hunting activities based on our Methodologies
  • Assist infrastructure and application owners to understand vulnerabilities discovered and plan remediation
  • Ensure that approved scanning tools are configured to perform all necessary tests in order to have a complete and accurate risk profile for all production systems and devices
  • Participate in the Security Vulnerability Management process, offering advice and recommendations to ensure risk from vulnerabilities is kept to a minimum
  • Perform analyses of Security User Awareness training in order to gauge utilization and effectiveness; make recommendations to improve training; lead the Phishing Simulation efforts to the entire user base
Required Skills and Qualifications:
  • Bachelor's degree or master's degree in computer science, information systems or another related field
  • Ideally 8+ years of experience
  • CISSP, CEH certification required. OSCP preferred
  • Knowledge of threat hunting
  • Knowledge of technical systems, and the potential use of technology solutions in a business environment
  • Knowledge of security-specific architecture methodologies or standards
  • Knowledge of risk management, business impact, control, vulnerability assessments, and treatment strategies
  • Knowledge of web-related technologies (Web applications, Web Services, and Service-Oriented Architectures) and of network / web related protocol concepts
  • Knowledge of firewalls, SSL / IPSec, security incident and event management (SIEM), data protection (DLP, encryption), user account management (SSO, SAML), and password / key management concepts
  • Knowledge of Blue Team & Red Team activities and Vulnerability Management Methodologies
  • Experience with Vulnerability Scanners and Web Application Vulnerability Management tools
  • Expertise and experience in securing operating systems and network infrastructure
  • Expertise in securing fundamental networking protocols: DNS, HTTP, TCP, UDP, TLS, IPSEC, 802.1x, NFS
  • Knowledge of Cloud SaaS, PaaS, IaaS, On Premise, and packaged apps
  • Proven ability to work and interact closely with senior management levels to determine their business needs and obtain support for initiatives
  • Strong security technical foundation with the ability to synthesize relevant information and make key decisions
  • Strong analytical skills to relate security requirements to appropriate security controls
  • Detail oriented and self-motivated to complete assigned tasks
  • Strong research and problem-solving skills
  • Strong analytical skills to relate security requirements to appropriate security controls
  • Excellent communication abilities and relationship building skills
  • Written, verbal, and presentation skills with the ability to effectively interact with internal and external business partners
  • Ability to think strategically
  • Understanding of complex automated systems
Up to $131,000 per year Full COVID-19 vaccination may be required. W2 only, no Corp to Corp. We are unable to sponsor H1B visas at this time. eXcell Supports Equal Employment Opportunity eXcell , a division of CompuCom Systems, Inc., a global company headquartered in Bellevue, Washington, provides IT staffing services and solutions to Fortune 1000 companies as well as small and medium business. For more information, visit ;/span>. INDDIPINDRMT