Cyber Threat Hunter
vor 23 Stunden
Job Reference #
323762BR
Job Type
Full Time
Your role
Do you have an investigator's mindset, and intuitively know how to uncover malicious activity? Do you have a deep understanding of computer operating systems and the realities of enterprise IT estates? Do you like data? This role is responsible for analyzing and correlating large data sets to uncover novel threats and attach techniques that may be present within UBS's environment.
We are looking for a Threat Hunter who:
- can query, process and manipulate data in a variety of platforms and formats
- very well versed with incident response in Azure
- has incident response experience and understands how EDR tools work behind the user interface
- can interpret structured and unstructured intelligence to determine what is critical for meeting your detection objectives
- has detailed contemporary knowledge of attacker techniques and understands how to identify them in the real world
- has initiative and creative thinking to achieve solutions to complex problems
- able to assist incident response teams with major incidents as required
Your team
You will be working for Threat Hunting team, which sits within the Cyber Threat Management function of UBS. The team is charged with hunting for unknown and undetected threats, and responding to incidents when they are identified.
Threat hunting analysts are located in our major centers of Zurich, New Jersey, Nashville, Singapore and Raleigh, but examine data from our offices all over the world (with some exceptions).
We are refining and building cutting edge capabilities to deliver a world-class Threat Hunting service. You will be based in one of our Zurich office.
Your expertise
- a bachelor's degree, preferably within an Information Security related discipline, or equivalent experience
- 5+ years' experience with Threat Hunting or Incident Response, which enables you to recognize malicious activity within a sea of noise
- deep knowledge of digital forensics, computer operating systems and enterprise network infrastructure
- strong knowledge of malware and exploit desired
- experience with offensive security tools and attack techniques
- competence with one or more programming/query languages - experience with Python, PowerShell and SQL is preferred
- experience working with large data set and tools/technologies such as Spark, PySpark, Hadoop, Cloudera, Databricks desired
- a strong understanding of how to make sense of security and forensic data
- experience with incident response within Cloud environments, preferably Azure
- the experience and judgement of an analyst that can clearly explain concepts to a less technical audience, and make well-reasoned arguments for your security recommendations
- must be a team player and ability to mentor junior colleagues
About Us
UBS is the world's largest and the only truly global wealth manager. We operate through four business divisions: Global Wealth Management, Personal & Corporate Banking, Asset Management and the Investment Bank. Our global reach and the breadth of our expertise set us apart from our competitors.
We have a presence in all major financial centers in more than 50 countries.
How We Hire
We may request you to complete one or more assessments during the application process. Learn more
Join us
At UBS, we know that it's our people, with their diverse skills, experiences and backgrounds, who drive our ongoing success. We're dedicated to our craft and passionate about putting our people first, with new challenges, a supportive team, opportunities to grow and flexible working options when possible. Our inclusive culture brings out the best in our employees, wherever they are on their career journey. We also recognize that great work is never done alone. That's why collaboration is at the heart of everything we do. Because together, we're more than ourselves.
We're committed to disability inclusion and if you need reasonable accommodation/adjustments throughout our recruitment process, you can always contact us.
Disclaimer / Policy Statements
UBS is an Equal Opportunity Employer. We respect and seek to empower each individual and support the diverse cultures, perspectives, skills and experiences within our workforce.
-
Senior Cyber Incident Responder
vor 21 Stunden
Zürich, Zürich, Schweiz UBS VollzeitJob Reference #326515BRJob TypeFull TimeYour roleAre you keen on working in world class Cyber Security Operations Center for one of the best Swiss private banks?Do you have related experience and are willing to take it further by learning how to defend an enterprise against cyber-attacks?Do you have the right attitude and are eager to join a multinational...
-
Cyber Security
vor 2 Wochen
Zürich, Zürich, Schweiz Next-Link Vollzeit CHF 80'000 - CHF 120'000 pro JahrDevelop and maintain a deep understanding of the latest threat landscape, including tactics, techniques, and procedures (TTPs) used by attackers.Develop and maintain expertise in threat detection tools and technologies, including SIEM systems, EDR tools, and network monitoring solutions.Collaborate with the Purple Team to enhance security measures and...
-
Senior Red Team Tester
Vor 7 Tagen
Zürich, Zürich, Schweiz UBS Vollzeit CHF 80'000 - CHF 120'000 pro JahrJob Reference #324386BRJob TypeFull TimeYour roleWe are expanding our global Red Team (Cyber Assurance Testing) and are looking for a skilled and experienced cyber security specialist to join us. This role will assist in the management of UBS's internal Cyber Assurance Testing service and play a lead role in the delivery of a growing number of regulatory red...
-
Cloud Security Specialist
vor 2 Wochen
Zürich, Zürich, Schweiz Nicoll Curtin Vollzeit CHF 90'000 - CHF 120'000 pro JahrWe are currently supporting one of our clients in the search for an experienced Cloud Security Specialist focused on Microsoft 365 and Identity solutions to help secure and optimize large-scale cloud environments.In this role, you will be responsible for assessing, designing, and implementing cloud security controls within Microsoft 365 environments. You...
-
Senior Cybersecurity Consultant
vor 1 Woche
Zürich, Zürich, Schweiz MRP Group Vollzeit CHF 80'000 - CHF 120'000 pro JahrSenior Cybersecurity Consultant – Pre-Sales based in Zurich, Switzerland.We're seeking a skilled Consultant to join our team in Zurich. You'll play a key role in driving sales end-to-end for complex security solutions, leading the pre and post sales activities and bridging the gap between the sales and technical teams.This is a rewarding opportunity for a...
-
Area Sales Manager
Vor 3 Tagen
Zürich, Zürich, Schweiz Check Point Software VollzeitWhy Join Us?Cyberint,a market leader in External Risk Management, helping organizations to accelerate the detection, response and remediation of their external threats, was recently acquired byCheck Pointand is looking for aArea Sales Managerto cover our team in DACHand bolster our team.If you're driven by the challenge of enhancing cybersecurity solutions...
-
Senior Specialist
vor 1 Woche
Zürich, Zürich, Schweiz On Ag VollzeitLOCATION: ZURICHTechnologyIn shortAt On, our technology moves as fast as our runners: always evolving, always pushing boundaries. We're building a world-class platform to ignite the human spirit through movement, and our Information Security team is the trusted guardian of that mission. Join a collaborative team of curious minds who view security not as a...
-
Open Application
vor 2 Wochen
Zürich, Zürich, Schweiz Exeon Analytics Vollzeit CHF 80'000 - CHF 120'000 pro JahrJob description Open ApplicationDid not find the opening that perfectly matches your skillset but still interested in joining the Exeon team? We would like to hear from you Tell us why you want to work at Exeon and submit your CV below.About us:At Exeon, we blend a global perspective with Swiss excellence to solve cybersecurity challenges for companies...
-
Business Information Security Officer
Vor 7 Tagen
Zürich, Zürich, Schweiz Zürich Versicherungs-Gesellschaft AG Vollzeit CHF 80'000 - CHF 120'000 pro JahrDo you thrive on protecting valuable information and setting security standards that safeguard businesses and customers alike? Are you ready to lead strategic security initiatives and partner with teams to build a brighter, more resilient future? Do you want to make a real impact by not only championing compliance, disaster recovery, and continuous...
-
Business Information Security Officer
vor 1 Woche
Zürich, Zürich, Schweiz Zurich Insurance Vollzeit CHF 80'000 - CHF 120'000 pro JahrDo you thrive on protecting valuable information and setting security standards that safeguard businesses and customers alike?Are you ready to lead strategic security initiatives and partner with teams to build a brighter, more resilient future?Do you want to make a real impact by not only championing compliance, disaster recovery, and continuous improvement...