Raleigh, NC, 27608, USA
18 hours ago
Senior Cyber Threat Intelligence Engineer
At CVS Health, we’re building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care. As the nation’s leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues – caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day. **Overview** CVS Health’s Cyber Threat Intelligence (CTI) team is responsible for all phases of cyber security intelligence (collection, analysis, production and dissemination) and tasked with identifying increasingly sophisticated cyber-attacks; monitoring the tactics, techniques and procedures of threat actors and establishing motives that could impact company resources. This intelligence is then leveraged to actively hunt for adversary activity targeting CVS Health’s computing environment.  As a senior member of the CTI team, you will collect, monitor and analyze various threat data and intelligence feeds to provide actionable threat indicators as well as recommending suitable defensive solutions. In addition, you will also engineer various Threat Intelligence solutions that will allow the threat intelligence team to continue to automate and improve their collection and analysis capabilities. You will also help develop alerts, enhance workflows and create automation leveraging the actionable threat indicators. CTI also continually fosters strong collaborative relationships with the Intelligence community, law enforcement agencies, and the financial, retail, and healthcare industries. **Responsibilities** + Identify, evaluate and communicate new and ongoing cyber security threats through regular and ad-hoc reporting; produce intelligence briefings, attribution reports and position papers + Produce concise tactical warning bulletins and other analytic reports that detail daily findings, events, and activities. + Engineer solutions for automating the intelligence cycle + Effectively perform all phases of the intelligence cycle + Maintain, develop and continually analyze threat data/intelligence sources, both technical and non-technical + Contribute to overall engineering efforts, including supporting design and development for capturing, storing, processing, and analyzing and disseminating threat intelligence for awareness and action. + Implement in-depth research on threat actors, TTPs and vulnerabilities and generate reports to relevant stake holders. + Analyze and help prioritize security incidents for further enrichment of detection and alerting capabilitiesusing various security technologies (SIEM, SOAR, EDR) + Continuously improve processes for use across detection sets for more efficient operations. **Required** **Qualifications** + 5+ years of experience in advanced threat intelligence collection and analysis methodologies, threat actors and MITRE techniques + 5+ years' experience in scripting language and querying languages + 5+ years' experience with various threat intelligence gathering tools + 5+ years' experience writing threat briefs and prioritizing threats from alerts + Experience with various SIEM and SOAR tools, open source and or commercial tools + Experience with analysis of security logs + Proven experience in a Security Engineering environment with the ability to script and engineer solutions + Proficiency in engineering and analyzing diverse datasets such as product telemetry, commercial threat feeds and information from OSINT sources + Extensive experience presenting various threat intelligence reports to various stakeholders **Preferred Qualifications** + Experience automating, and developing solutions and prototypes in the security particularity the threat intelligence space + Experience building a threat intelligence platform + Experience building a threat research platform + Subject matter expertise in the retail and health threat intelligence space + Deep understanding of the threat intelligence research space and have experience in the dark net collecting and gathering intelligence. **Education** Bachelor degree from accredited university or equivalent work experience (HS diploma + 4 years relevant experience) **BUSINESS OVERVIEW** Bring your heart to CVS Health Every one of us at CVS Health shares a single, clear purpose: Bringing our heart to every moment of your health. This purpose guides our commitment to deliver enhanced human-centric health care for a rapidly changing world. Anchored in our brand — with heart at its center — our purpose sends a personal message that how we deliver our services is just as important as what we deliver. Our Heart At Work Behaviors™ support this purpose. We want everyone who works at CVS Health to feel empowered by the role they play in transforming our culture and accelerating our ability to innovate and deliver solutions to make health care more personal, convenient and affordable. We strive to promote and sustain a culture of diversity, inclusion and belonging every day. CVS Health is an affirmative action employer, and is an equal opportunity employer, as are the physician-owned businesses for which CVS Health provides management services. We do not discriminate in recruiting, hiring, promotion, or any other personnel action based on race, ethnicity, color, national origin, sex/gender, sexual orientation, gender identity or expression, religion, age, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law. We proudly support and encourage people with military experience (active, veterans, reservists and National Guard) as well as military spouses to apply for CVS Health job opportunities **Anticipated Weekly Hours** 40 **Time Type** Full time **Pay Range** The typical pay range for this role is: $83,430.00 - $166,860.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. **Great benefits for great people** We take pride in our comprehensive and competitive mix of pay and benefits – investing in the physical, emotional and financial wellness of our colleagues and their families to help them be the healthiest they can be. In addition to our competitive wages, our great benefits include: + **Affordable medical plan options,** a **401(k) plan** (including matching company contributions), and an **employee stock purchase plan** . + **No-cost programs for all colleagues** including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching. + **Benefit solutions that address the different needs and preferences of our colleagues** including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility. For more information, visit https://jobs.cvshealth.com/us/en/benefits We anticipate the application window for this opening will close on: 09/04/2025 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws. We are an equal opportunity and affirmative action employer. We do not discriminate in recruiting, hiring, promotion, or any other personnel action based on race, ethnicity, color, national origin, sex/gender, sexual orientation, gender identity or expression, religion, age, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.
Confirm your E-mail: Send Email