Home
/
Data and Analytics
/
CTI Investigator
CTI Investigator-November 2024
Seattle
Nov 14, 2024
About CTI Investigator

  At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.

  Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.

  We are looking for a Cyber Threat Intelligence Investigator (Engineer) to join our Cyber Security team in the Office of the CISO! You will perform in a highly visible opportunity to impact both the Cyber Security organization and Product teams. You will work with internal teams, product development, and F5 partners, and customers.

  We'll look to you to analyze indicators to generate actionable intelligence and insight into current threats. You will provide a deep understanding of current APT actors and TTPs and analysis. You'll be the lead investigator on casework, including legal-directed cases and security investigations. Your investigation work will include host-based forensics and being a technical subject matter expert when you aren't leading a case. You'll also hone your skills in scripting and light dev work to help automate recurring tasks to improve the team's overall efficiency.

  Lastly, you'll share a point of view and a deep understanding of network and host-based indicators and how to use them best. You'll bring a technical background and the skills to communicate clearly to be a leader on the F5 Cyber Threat Intelligence Team.

  What you'll do

  Evaluate existing methodologies and develop improved processes, tools, analytics, and infrastructure recommendations.Research, assess, and report on specific cyber threat actor and adversary capabilities, motivations, and Tactics, Techniques, and Procedures (TTPs).Perform strategic, tactical, and operational research and analysis of adversarial cyber threats and the geopolitical context in which they operate.Correlate all-source intelligence to develop a deeper understanding of tracked threat activity.Present tactical and strategic intelligence about threat groups, their methodologies, and the motivations behind their activity.Work with Product groups to determine their intelligence needs and requirements.Convey both verbally and in writing the importance of findings for various audiences.Prepare and deliver briefings and reports to various audiences as needed.Image devices (Windows, MacOS, and Linux) in support of investigations.Lead complex security and attorney-directed investigations under the oversight of management.When you are not leading the investigation, perform host-based forensic investigation analysis as a subject matter expert.Ability to work proactively with little direct oversight and take ownership to ensure success.

  What you'll bring

  5 + years of experience in an analytical role (network forensics analyst, intelligence threat analyst, or security engineer/ consultant).Exceptional oral and written communication skills.Excellent communication and presentation skills with the ability to present to various internal audiences, including senior executives.Excellent organizational and leadership skills.Outstanding communication and interpersonal abilities.Proven track record of successfully managing and executing short-term and long-term projects.Excellent knowledge of adversarial cyber actors, including tactics, techniques, procedures, and the adversary lifecycle or threat model.Experience in evaluating host and network forensic reports of electronic media, packet capture, log data analysis, malware triage, and network devices in support of intrusion analysis, enterprise information security operations, or intelligence operations.Experience working in an investigative or incident response environment.Experience working with threat intelligence partners and evaluating their requirements.Excellent knowledge of security solutions and technologies, including Windows, Linux, and Network architecture/implementation/configuration.Experience utilizing open-source tools for analysis.General understanding of technical terminology and tactics employed by cyber threat actors.Understanding operations security and information security principles for conducting online research and work.Ability to vet open-source regional media sources.

  Bonus Points

  Master's or other professional degree preferred.Relevant cyber security certifications, which may include a CISSP, GCTI, EnCe, CCE, GCFE, or the GCFAExperience correlating across enormous and diverse datasets (T-SQL & NoSQL systems)Experience in development involving extraction/manipulation/summarization of network dataExperience working closely with threat intelligence analysts to understand their workflow and analytic problems and turning those into large-scale analyticsExperience working within a diverse organization to gain support for your ideasReverse-engineering & binary analysisStrong Windows internals - especially in the areas of event management and networking (sockets/RPC/named pipes)Working competency with Linux and MacOS internals, ASEPs, and memory management.Strong leadership skills with the ability to prioritize and execute methodically and disciplined.Ability to set and manage expectations with senior stakeholders and team members.Ability to express complex concepts, including technical ones, verbally, graphically, and in writing.

  The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.

  The annual U.S. base pay range for this position is: $108,970.00 - $163,454.00

  F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change.

  You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link:https://www.f5.com/company/careers/benefits. F5 reserves the right to change or terminate any benefit plan without notice.

  Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Yello/Workday (ending with f5.com or @myworkday.com).

  Equal Employment Opportunity

  It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting [email protected].

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
CIP Hygiene Technician - Rexdale, ON
Background & Purpose of the Job Help us Bring Out the Best! Unilever is now recruiting for a CIP Technician at our Rexdale facility where we produce Hellmann's Mayonnaise. In this role you will w
Clinical Technologist/Technologist Trainee- 2nd Shift | Medical Drug Monitoring LCMS Instrument/Data Analysis
MedTox Laboratories is a subsidiary of Laboratory Corporation of America (LabCorp). The integration of LabCorp and Covance in 2015 makes LabCorp the largest health care diagnostic company in the worl
Camera Software - Computational Photography/Machine Learning Research Engineer
Summary Posted: Nov 10, 2023 Weekly Hours: 40 Role Number:200519262 The Camera Algorithms team is looking for passionate, self-driven computer vision/computational photography research engineers who
Retail Stores Associate II
Become part of the Converse Team Converse is a place to explore potential, break barriers and push out the edges of what can be. The company looks for people who can grow, think, dream and create. It
Modelling/Forecasting Senior Specialist
Hours 40 Department Overview The Platform Delivery Team is responsible for coordinating and/or testing changes or enhancements to the components of the MLE Platform (Model Lifecycle Environment), a L
Oracle Hyperion DRM Admin
Oracle Hyperion DRM Admin Position Description CGI is looking for an experienced Oracle Hyperion DRM Administrator responsible for configuration, migration, troubleshooting, testing, performance tuni
Stage : Déploiement d'un nouvel outil de documentation des activités de validation de systèmes/équipements, Belgique - 2024
Site Name: Belgium-Wavre Posted Date: Nov 21 2023 Aidez-nous à devancer la maladie en participant à notre programme de stages Formation requise : Vous êtes étudiant(e) en Bachelier/Master en Administ
AIML - Sr Engineering Program Manager, ML Data & Infrastructure
Summary Posted: Nov 8, 2023 Weekly Hours: 40 Role Number:200519113 Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experience
Program Manager TS/SCI with CI Poly REQUIRED
Program Manager TS/SCI with CI Poly REQUIRED Position Description This is a tremendous opportunity to influence high-level decision makers in the government through a transformational advisory role.
Associate Director - Digital Transformation
Site Name: Bengaluru Luxor North Tower Posted Date: Nov 29 2023Your role will bring technical expertise with project management acumen, ensuring seamless coordination and the successful implementatio
Copyright 2023-2024 - www.zdrecruit.com All Rights Reserved