Albany, NY, 12260, USA
1 day ago
Staff Threat Intelligence Engineer
At CVS Health, we’re building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care. As the nation’s leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues – caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day. **Position Summary** CVS Health’s Cyber Threat Intelligence (CTI) team is responsible for all phases of cyber security intelligence (collection, analysis, production and dissemination) and tasked with identifying increasingly sophisticated cyber-attacks; monitoring the tactics, techniques and procedures of threat actors and establishing motives that could impact company resources. This intelligence is then leveraged to actively hunt for adversary activity targeting CVS Health’s computing environment.  As a senior member of the CTI team, you will collect, monitor and analyze various threat data and intelligence feeds to provide actionable threat indicators as well as recommending suitable defensive solutions. In addition, you will also engineer various Threat Intelligence solutions that will allow the threat intelligence team to continue to automate and improve their collection and analysis capabilities. You will also help develop alerts, enhance workflows and create automation leveraging the actionable threat indicators. CTI also continually fosters strong collaborative relationships with the Intelligence community, law enforcement agencies, and the financial, retail, and healthcare industries. Responsibilities + Identify, evaluate and communicate new and ongoing cyber security threats through regular and ad-hoc reporting; produce intelligence briefings, attribution reports and position papers + Produce concise tactical warning bulletins and other analytic reports that detail daily findings, events, and activities. + Engineer solutions for automating the intelligence cycle + Effectively perform all phases of the intelligence cycle + Maintain, develop and continually analyze threat data/intelligence sources, both technical and non-technical + Contribute to overall engineering efforts, including supporting design and development for capturing, storing, processing, and analyzing and disseminating threat intelligence for awareness and action. + Implement in-depth research on threat actors, TTPs and vulnerabilities and generate reports to relevant stake holders. + Analyze and help prioritize security incidents for further enrichment of detection and alerting capabilities using various security technologies (SIEM, SOAR, EDR) + Continuously improve processes for use across detection sets for more efficient operations. **Required Qualifications** + 7+ years of experience with advanced threat intelligence collection and analysis methodologies, threat actors and MITRE techniques + 5+ years with scripting language and querying languages + 5+ years of experience in threat intelligence gathering tools + 5+ years of experience writing threat briefs and prioritizing threats from alerts + 5+ years of experience with various SIEM and SOAR tools including the analysis of security logs + 3+ years of experience engineering and analyzing diverse datasets such as product telemetry, commercial threat feeds and information from OSINT sources **Preferred Qualifications** + Experience automating, and developing solutions and prototypes in the security particularity the threat intelligence space + Experience building a threat intelligence platform + Experience building a threat research platform + Subject matter expertise in the retail and health threat intelligence space + Deep understanding of the threat intelligence research space and have experience in the dark net collecting and gathering intelligence. + Extensive experience presenting various threat intelligence reports to various stakeholders **Education** + Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience) **Pay Range** The typical pay range for this role is: $130,295.00 - $260,590.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. **Great benefits for great people** We take pride in our comprehensive and competitive mix of pay and benefits – investing in the physical, emotional and financial wellness of our colleagues and their families to help them be the healthiest they can be. In addition to our competitive wages, our great benefits include: + **Affordable medical plan options,** a **401(k) plan** (including matching company contributions), and an **employee stock purchase plan** . + **No-cost programs for all colleagues** including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching. + **Benefit solutions that address the different needs and preferences of our colleagues** including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility. For more information, visit https://jobs.cvshealth.com/us/en/benefits We anticipate the application window for this opening will close on: 08/04/2025 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws. We are an equal opportunity and affirmative action employer. We do not discriminate in recruiting, hiring, promotion, or any other personnel action based on race, ethnicity, color, national origin, sex/gender, sexual orientation, gender identity or expression, religion, age, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.
Confirm your E-mail: Send Email