05 sep
|
Willis Towers Watson
|
Madrid
05 sep
Willis Towers Watson
Madrid
Experteer Overview In this role, you will lead proactive threat hunts within WTW’s Threat Discovery and Fusion Unit to surface hidden adversary activity across a global environment. You will transform threat intelligence into actionable hunts, shaping the organization’s intelligence-led defense. You collaborate cross-functionally to improve detection, response, and incident handling while advancing WTW’s security posture. This role emphasizes hands-on analysis, operational rigor, and collaboration with a general team to drive measurable risk reduction. You will work on meaningful, technically challenging aims that impact enterprise-wide resilience.Compensaciones / Beneficios
- Develop and execute hypothesis-driven, intelligence-led threat hunts to uncover TTPs
- Analyze security trends and provide actionable insights to leadership
- Enhance detection and response by integrating threat intelligence with security strategy
- Convert intelligence inputs into hunts and feed findings back into detections
- Utilize advanced threat hunting tools, behavioral analytics, and anomaly detection
- Support incident response with forensic analysis and root-cause identification
- Research vulnerabilities and exploits targeting the organization and assess exposure
- Hunt for new malware, infostealers, RATs,
and related tooling observed in attacks
- Collaborate with ICSD and other teams to improve threat detection and response
- Create and maintain threat hunt reports, playbooks, and SOPs
- Conduct host and network forensics, log analysis, and evidence collection across on-prem and cloud systems
- Ensure proper chain of custody and documentationResponsabilidades
- Detail-oriented and proactive mindset
- Team player and collaborative working style
- Extensive experience in cyber threat hunting and security incident response in global contexts
- Strong problem-solving and analytical skills with stakeholder influence
- Expertise in adversarial TTPs, MITRE ATTu0026CK, cyber kill chain, and hacking/post-exploitation tools
- Proficiency in interpreting diverse logs and conducting hunts within SIEM and EDR
- Knowledge of forensic methodologies, open-source tooling, and cloud security including cloud IR
- Familiarity with Python, PowerShell, and KQL; basic programming concepts
- Industry certifications in Cyber Incident Response, Forensics, or Malware Analysis are a plus
- Strong communication and cross-audience collaboration skillsRequisitos principales
-
📌 Assistant Manager - Cyber Threat Hunter (Madrid)
🏢 Willis Towers Watson
📍 Madrid