Associate Manager - Threat Hunting

Posted 12 Hours Ago
Be an Early Applicant
Floors, Oakview, MB
Senior level
Insurance
The Role
The Associate Manager - Threat Hunting role involves intelligence-driven network defense through analyzing large datasets from various sources. Responsibilities include threat research, mentoring incident response teams, and developing incident response plans.
Summary Generated by Built In

At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. 

Job Description

We are seeking an experienced Threat Hunter to perform intelligence-driven network defense supporting the monitoring and incident response capabilities. The role will involve analysis of large amounts of data from vendors and internal sources, including various indicator feeds, Splunk, and several threat intelligence tools, etc. The candidate will perform the functions of threat operations and hunting and serve as a liaison for Threat Intelligence for the Cyber Security Operations Center, and mentor the incident handling, incident response, and forensics teams.

Key Responsibilities

  • Performs research and analysis of potential and known threats and vulnerabilities for assigned areas and cybersecurity operational systems; designs, executes, and records results of testing plans and scripts and suggests improvements
  • Deep understanding of common network and application stack protocols, including but not limited to TCP/IP, SMTP, DNS, TLS, XML, HTTP, etc.
  • Advanced experience with security operations tools, including but not limited to:
    • SIEM (e.g. Defender, Splunk, ArcSight)
    • EDR (e.g. CrowdStrike, Tanium)
    • Indicator management (e.g. ThreatConnect)
    • Signature development/management (e.g. Snort rules, Yara rules)
  • Broad experience with various common security infrastructure tools (NIDS, HIPS, EDR, etc.)
  • Excellent analytical and problem solving skills, a passion for research and puzzle-solving.
  • Expert understanding of large, complex corporate network environments.
  • Strong communication (oral, written, presentation), interpersonal and consultative skills, especially in regard to white papers, briefs, and presentations.
  • Good organization and documentation skills
  • Leadership and mentorship skills
  • Evaluates business processes and cybersecurity systems to develop incident response plans for assigned area; executes plan to detect, alert, and contain intrusions and attacks, ensure required actions are taking place, and communicate status to affected areas and leadership
  • Provides leadership and mentoring for less experienced team members on assigned projects and in area of specialized expertise

Education

• 4 year Bachelors Degree (Preferred)

Experience

• 5 or more years of experience (Preferred)

Supervisory Responsibilities

• This job does have some minimal supervisory duties

Education & Experience (in lieu)

• In lieu of the above education requirements, an equivalent combination of education and experience may be considered.

Primary Skills

Cyber Incident Response, Cyber Threat Hunting, IT Security Operations, Penetration Testing, Stakeholder Management

Shift Time

Recruiter Info

Yateesh B G

[email protected]

About Allstate

Joining our team isn’t just a job — it’s an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. And one where you can impact the future for the greater good.  

You’ll do all this in a flexible environment that embraces connection and belonging. And with the recognition of several inclusivity and diversity awards, we’ve proven that Allstate empowers everyone to lead, drive change and give back where they work and live. 

Good Hands. Greater Together.

The Allstate Corporation is one of the largest publicly held insurance providers in the United States. Ranked No. 84 in the 2023 Fortune 500 list of the largest United States corporations by total revenue, The Allstate Corporation owns and operates 18 companies in the United States, Canada, Northern Ireland, and India. Allstate India Private Limited, also known as Allstate India, is a subsidiary of The Allstate Corporation. The India talent center was set up in 2012 and operates under the corporation's Good Hands promise. As it innovates operations and technology, Allstate India has evolved beyond its technology functions to be the critical strategic business services arm of the corporation. With offices in Bengaluru and Pune, the company offers expertise to the parent organization’s business areas including technology and innovation, accounting and imaging services, policy administration, transformation solution design and support services, transformation of property liability service design, global operations and integration, and training and transition.

Learn more about Allstate India here.

Top Skills

Dns
HTTP
Smtp
Splunk
Tcp/Ip
Tls
XML
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Northbrook, IL
57,671 Employees
Hybrid Workplace
Year Founded: 1931

What We Do

At Allstate, we're advocates for peace of mind and a good life. And that comes through in everything we do.

From building diverse and innovative teams that truly understand our customers' needs, to challenging each other to develop our careers in a meaningful way, and finally to the incredible results we're able to achieve together.

See how we’re creating a better future through innovation, advocacy, and empowering people and communities

Similar Jobs

CrowdStrike Logo CrowdStrike

Sr. Backend Engineer, Cloud - Next-Gen SIEM (Remote, CAN)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote
Hybrid
6 Locations
10000 Employees

CrowdStrike Logo CrowdStrike

Sr. Backend Engineer II, Cloud - Next-Gen SIEM (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote
Hybrid
7 Locations
10000 Employees
155K-270K Annually

CNA Logo CNA

Account Manager, Risk Engineering (Western Region)

Cloud • Insurance • Professional Services • Analytics • Cybersecurity
Hybrid
2 Locations
7000 Employees

CrowdStrike Logo CrowdStrike

Community Program Manager (Remote, CAN)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote
Hybrid
6 Locations
10000 Employees

Similar Companies Hiring

Flume Health Thumbnail
Software • Insurance • Healthtech
US
22 Employees
Spark Advisors Thumbnail
Software • Sales • Other • Insurance • Healthtech
New York, NY
73 Employees
MassMutual India Thumbnail
Insurance • Information Technology • Fintech • Financial Services • Big Data
Hyderabad, Telangana

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account