Threat Architect - Global Threat Operations
Salcedo Village, Makati
3d ago

This strategic position will be devoted to engineering ongoing improvements to the Trustwave Proactive Threat Hunting Platform.

This platform utilizes partner EDR companies to deliver Trustwave’s proprietary threat hunting methodologies and integrates directly with Trustwave’s IFP (Intel Fusion Platform).

This position will work closely with the threat fusion team to determine platform requirements, design development approaches to deliver product improvements, and lead engineering efforts to implement the solutions.

This person will be the lead for integrating new EDR partners into the Threat Hunting Platform and will utilize the platform to conduct live threat hunts.

Trustwave’s Threat Fusion Team may call on this position for other duties as well, such as improvements to IFP, improved methodologies for Cyber Threat Actor tracking, and product evaluations.

Required skillsets :

  • Expert Python programming skills
  • Expert database administration and optimization knowledge
  • Extensive knowledge of Windows and Linux operating systems, specifically how they can be used in forensic investigations and threat hunting.
  • Knowledge of OSX and the implementation of threat hunting methodologies to Apple systems
  • Strong knowledge of Cybereason, Carbon Black, Palo Alto Coertex, Microsoft Defender ATP, and Crowdstrike EDR platforms (or the ability to learn)
  • Knowledge of cyber threat intelligence and intel transfer protocols (STIX / TAXII)
  • Ability to plan and design high profile engineering / development projects
  • Education :

    We prefer college educated applicants, but at minimum, high school diploma or equivalent is required for employment.

    Report this job

    Thank you for reporting this job!

    Your feedback will help us improve the quality of our services.

    My Email
    By clicking on "Continue", I give neuvoo consent to process my data and to send me email alerts, as detailed in neuvoo's Privacy Policy . I may withdraw my consent or unsubscribe at any time.
    Application form