At Delta Air Lines, connection is at the heart of everything we do and guides our every action. We strive to welcome and care for all of our customers during their travels with us and aim to deliver an elevated experience.
Delta is focused on sustaining a strong IT operation, growing our capabilities, and maximizing optimization across each of our tech hubs to elevate the travel experience for our customers and empower our 90,000 Delta people.
We’re committed to fostering innovation, and we’re excited to invite you to be part of our journey as we shape the future of technology at the world’s best airline!
Delta Air Lines is looking for a talented experienced Cyber Threat Intelligence & Hunting Lead to be a part of Delta’s Information Security team committed to safeguarding information and information systems from unauthorized access, use, disclosure, disruption, modification or destruction.
As Cyber Threat Intelligence & Hunting Lead, you will use your technical experience to profile and build defenses against existing and emerging threats to Deltas IT landscape. You will also apply your technical knowledge to solving complex intelligence problems, produce short-term and long-term written assessments, and brief Deltas leadership. Cyber Threat Intelligence & Hunting Lead is a SOC fusion role that combines threat intelligence and threat hunting operations reporting to the Manager of Cyber Threat Intelligence (CTI) but also closely aligned with the Cybersecurity Monitoring & Incident Response (CMIR) team in both strategic and day-to-day operations.
YOUR RESPONSIBILITIES IN THIS ROLE
- Identify emerging and persistent threats to the organizations networks, systems, and applications.
- Lead coordinated efforts across SOC teams to ensure the effective delivery and tracking of intelligence driven responses to threats.
- Operate and mature process related to the threat hunting program across SOC teams and related security vendors/services.
- Develop a threat assessment/modeling framework documenting threats to aid in driving resiliency initiatives that require broader non-SOC business partner buy-in.
- Develop rules & policies across the technology and security stack that deliver protective and detective controls.
- Mentor and develop Cyber Threat Intelligence and Incident Response analysts on hunt methodology, adversary TTP analysis, and detection tuning.
- Security Engineering related to cyber threat intelligence services portals and Threat Intelligence Platform (TIP).