Purpose of Job
The Cyber Threat Intelligence (CTI) team is seeking a motivated Strategic Cyber Threat Intelligence Senior Analyst with demonstrated experience in cyber threat-centric analytic capabilities. As a Senior Analyst you will help drive our strategic intelligence program while integrating with our technical and operational intelligence programs to support operations, incident response, threat hunt teams, vulnerability management, insider threat, and business requirements while ensuring that senior leaders are advised of current and ongoing threats allowing them to make informed decisions. The CTI team is USAA's world-class cyber intelligence program dedicated to support our Cyber Threat Operation Center (CTOC) and USAA from cyber threats. The CTOC exists to detect, analyze, and respond to cyber security events.
Our CTI team is responsible for collecting, analyzing, and disseminating threat intelligence regarding threat actors targeting USAA. This information is used to continually enhance threat management capabilities to maximize our protective and detective cyber security posture and continuously improve our processes. Specifically, a successful candidate will be collecting requirements from partners and conducting research and analysis to provide timely and actionable intelligence that drives and informs the security posture of USAA.
USAA values a culture that is highly collaborative, and we have found that a hybrid work type helps employees gain the best of both worlds - collaborating in-person in the office and working from home when needed to achieve focused results. The actual days' onsite are resolved between each employee and the employee's manager. This position may also have the option of working remotely in the continental U.S. with occasional travel as requested.
Job Requirements
About USAA
USAA knows what it means to serve. We facilitate the financial security of millions of U.S. military members and their families. This singular mission requires a dedication to innovative thinking at every level.
About USAA IT
Our most meaningful qualification isn't technical, it's human. Here, we don't just sit in front of a screen. We stand behind our 13 million members who rely on us every day.
We're proud of USAA's strong history -- and we're even more passionate about our future. That's why we have a team of supportive and collaborative hardworking technology professionals focused on doing more for our members. And why we're continuing to add innovative problem solvers to our team. With us, you'll find exciting challenges that inspire you to continue learning and growing.
Job Responsibilities:
Identifies and leads existing and emerging risks that stem from business activities and the job role.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled.
Follows written risk and compliance policies, standards, and procedures for business activities.
Leads peers and team members in the execution of the Information Security domain activities while anticipating efforts that will impact their team.
Researches and analyzes the latest information security vulnerabilities, threats, exploits, trends and intelligence. Shares intelligence with peer teams.
Conducts advanced vulnerability management, security configuration assessments, and/or penetration testing operations and runs the resulting findings.
Develops analysts through training and knowledge sharing activities.
Monitors internal and external networks, systems, and applications for sophisticated security anomalies and events (e.g. suspicious behavior, attacks, and security breaches). Trains analysts in incident detection and response.
Responds to cyber incidents, performing detailed analysis using complex security tools to determine root cause and impact by using a broad range of demonstrated experience (e.g. forensics, networking, servers, coding, etc.) to resolve a malicious actor's tactics, techniques, and procedures. Trains new analysts in incident detection and response.
Applies discoveries from the incident response process to make significant and/or complex improvements to the existing detection capabilities, operational processes and security controls.
Prepares and delivers written and/or verbal briefs with recommendations to senior leadership on latest threats, alerts, incidents, and improvements.
Provides insight on issues and serves as a mentor and coach to peers and team members for assigned area of responsibility.
Minimum Requirements:
Bachelor's degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
6 years of related experience in Information Security, Cybersecurity and/or Information Technology with a security focus to include accountability for sophisticated tasks and/or projects.
4 years of related experience in one of the following disciplines: Security and Risk Management, Asset Security, Security Architecture and Engineering, Communications and Network Security, Identity and Access Management, Security Assessment and Testing, Security Operations, Software Development Security.
Advanced level of business insight in the areas of business operations, risk management, industry practices and emerging trends.
Knowledge of attacker tools/tactics/procedures and applying them to access management, governance, threat hunting, investigations, and incident response.
Knowledge of defense-in-depth principles and security architecture.
Preferred Experience:
4+ years of demonstrated ability in delivering timely, relevant, and useful intelligence through reports, briefings, and threat assessments to partners to improve threat detection.
Strong background with cybersecurity, threat intelligence, or data science experience in an analytical role (network forensics analyst, intelligence threat analyst, or security engineer)
Excellent knowledge of adversarial cyber actors, to include tactics, techniques, and procedures.
Strong understanding of the intelligence lifecycle, analytic tradecraft, and attack methodologies such as MITRE ATT&CK.
Expert-level experience as a CTI analyst supporting cyber operations and incident response, with demonstrated application of CTI principles to include adversary methodologies and TTPs, IOCs, and malware analysis
Ability to identify threat actor TTPs and campaigns, capture information for reconnaissance, including large and unstructured data sets to identify trends and anomalies indicative of malicious cyber activities
Strong ability to collaborate with technical intelligence team leaders to build fused efforts to support counter cyber threat operations.
Superb communication and presentation skills with the ability to clearly articulate to a variety of internal audiences including senior leaders.
The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.
Compensation:
USAA has an effective method for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market position. The salary range for this skill is: $106,800 - $192,300*
Employees may be eligible for pay incentives based on overall corporate and individual performance or at the discretion of the USAA Board of Directors.
Geographical Differential: Geographic pay differential is additional pay provided to eligible employees working in locations where market pay levels are above the national average.
Shift premium: will be addressed on an individual-basis for applicable roles that are consistently scheduled for non-core hours.
Benefits:
At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
Please click on the link below for more details.
USAA Total Rewards (https://hrportal.ehr.com/usaa/Prospective-Employees)
Relocation assistance is Not Available for this position.
USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
USAA is an EEO/AA Employer - applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, sexual orientation, gender identity or expression, pregnancy, protected veteran status or other status protected by law.