Threat Hunting Associate Vice President at MUFG, focusing on proactive threat actor hunting and incident response. Collaborating with a global cyber operations team to enhance detection and risk mitigation workflows.
Responsibilities
Focus on proactively hunting for threat actor’s tactics, techniques, procedures, and behaviors based on Threat Intelligence and formed hypotheses
Use knowledge of networking, operating systems, SIEM, EDR and threat hunting tools to find adversaries, identify gaps in detection and cyber hygiene, and recommend improvements to detection rules
Assist in incident response with threat actor behavior, IoC based hunting, and track and measure the value of threat hunting activity
Work closely with a highly skilled team of individuals globally, collaborating across lines of defense, businesses, and technology teams disseminating threat hunting activity and risk mitigation results
Perform threat hunts using SIEM, EDR and Threat Hunting Tools, based on threat intelligence, threat actor TTPs and IOCs, and Threat Hunting hypotheses
Weekly/Monthly tracking and reporting of Threat Hunting activity, progress, metrics
Threat Hunting supporting incident response
Serve as backup and rotation for Threat and Vulnerability Intelligence functions
Support audit and regulatory exams
Administer tools and platforms and related technologies to support Threat Hunting
Document and maintain processes and procedures
Presentations to stakeholders and senior leaders
Requirements
3+ years of prior Threat Hunting or Incident Response experience
Proficiency in Python, PowerShell, or Bash for automation, data parsing, and custom tooling
Experience writing detection logic using SIGMA, YARA, Splunk SPL, or KQL
Ability to develop and maintain scripts for threat hunting workflows and incident response
Knowledge of forensic tools like Volatility, Autopsy, FTK, or EnCase
Experience with Threat or Vulnerability intelligence, assessment, management a plus
Knowledge of industry standards and frameworks such as NIST, MITRE ATT&CK, TAHITI, PEAK
Knowledge of SIEM, EDR, Networking, Operating Systems, and Scripting Languages
3+ years overall experience working in a global organization
Minimum of 3 years working directly in Cybersecurity Operations
Experience working within the Financial Services Industry preferred
Relevant technical and industry certifications a plus such as CISSP, ISSMP, SANS, GCIA, CISM, EnCE, CEH, GCFA, GCFE, GCIH, or GSEC
Benefits
comprehensive health and wellness benefits
retirement plans
educational assistance and training programs
income replacement for qualified employees with disabilities
Vice President & GM of Specialty overseeing pharmacy programs at Gifthealth. Driving strategic, operational, and financial performance with full P&L accountability.
VP of Valuations leading strategic and operational facets of appraisal activities at Anchor Loans. Managing teams and driving valuation solutions supporting lending activities.
Global Head of Member Processing overseeing more than 3 million annual transactions ensuring accuracy and timeliness. Leading a large diverse team across multiple locations, collaborating globally to drive service and digital strategy.
Senior Vice President of M&A driving acquisition strategies and integrations at Synchrony Financial. Leading deal teams and collaborating with executive leadership in a critical role.
Lead implementation of Credit AMTF Strategy including Authorization and Real - Time initiatives at Synchrony. Collaborate with multiple teams across various projects for system enhancements and updates.
AVP, Digital Analytics leading digital data strategy and analytics roadmap for Synchrony’s Digital First Trains. Collaborating with marketing, technology, and digital teams to enhance performance through insights.
AVP - level data analytics role in financial services, driving insights for customer growth and operational improvements. Collaborate with strategy and technology teams to enhance decision making.
VP of Netflix Scripted Series managing creative development of original and existing content in Los Angeles. Drives project execution while aligning with cross - functional teams and managing budgets.
Vice President in Business Operations managing complex operational initiatives at MUFG. Focus on process improvements, collaboration, and strategic direction within financial services.
Red Team Operator at MUFG focusing on AI and cybersecurity. Evaluating threats and strengthening defenses through innovative technologies and team collaboration.