Information Security Specialist – Cyber Threat Intelligence at American Express

Remote

Title: Information Security Specialist – Cyber Threat Intelligence

  • Location: United States

You Lead the Way. We ve Got Your Back.

At American Express, we know that with the right backing, people and businesses have the power to progress in incredible ways. Whether we re supporting our customers financial confidence to move ahead, taking commerce to new heights, or encouraging people to explore the world, our colleagues are constantly redefining what s possible – and we re proud to back each other every step of the way. When you join #TeamAmex, you become part of a diverse community of over 60,000 colleagues, all with a common goal to deliver an exceptional customer experience every day.

American Express is on a mission to provide the world s best customer experience every day. Rooted in this vision is the work of the Technology Risk & Information Security organization, empowering the company to delivery superior service through trust, security, and safety. Our culture is centered around passion, curiosity, and courage, enabling you to innovate and evolve a Fortune 100 company. You can help us achieve our mission!

The Cyber Threat Intelligence team protects the American Express brand, global business operations, technology infrastructure and client trust against cyber threats worldwide. The CTI team collects, analyzes, and disseminates knowledge about adversaries and their motivations, intentions, and methods to help American Express at all levels protect the critical assets of the enterprise and customers.

The CTI Information Security Specialist produces actionable intelligence in a clear and concise manner, and defines top threats impacting American Express in support of Lines of Business. The position entails both strategic and operational responsibilities for technology and intelligence processes. Critical skills include fostering relationships with key stakeholders by providing awareness, indications, warnings, and operational readiness.

ESSENTIAL DUTIES AND RESPONSIBILITIES:

  • Create written and verbal intelligence products for internal AXP customers to assist in proactively addressing threats.
  • Develop and present key findings to senior leadership.
  • Perform open source threat collection and analysis activities identifying indication of cyber threats, identify malicious code, websites, and vulnerabilities using existing and purpose-built tools.
  • Develop collection priorities that align with customer interests.
  • Identify credible new intelligence and subject matter resources relative to current/emerging threats.
  • Provide subject matter expertise on cyber threats to support current analytic operations and initiatives.

Minimum Qualifications:

  • Knowledge of common security controls, detection capabilities, and securing digital environments, including packet flows/TCP & UDP traffic, firewall and proxy technologies, anti-virus, intrusion detection/prevention systems, host-based monitoring, email monitoring, spam technologies, and SIEMs.
  • Experience in analyzing malware/hacking tools and threat actor tactics, techniques, and procedures to characterize threat actors methods for accomplishing their missions.
  • Basic understanding of forensic analysis on and data captures from networks/packet capture, hosts (volatile/live memory), electronic media, log data, and network devices in support of intrusion analysis or enterprise level information security operations.
  • Basic understanding of what information or assets are of value to threat actors and how organizations are breached.
  • Understanding of modern technical security controls (i.e. firewalls, SIEMs, IPS, HIPS, web proxies).
  • Must have strong verbal and written communication skills, interpersonal collaborative skills, and the ability to communicate security and risk-related concepts to both technical and non-technical audiences.
  • Can apply a variety of structured analytic techniques to generate and test hypotheses, assess cause and effect, challenge analysis, and support decision making.
  • Should have working knowledge in one or more of the following areas: nation-state threat actors, cybercrime, extremist groups, cyber terrorists, hacktivism, distributed denial of service attacks (DDoS), fraud, malware, social engineering, or emerging threats.

EXPERIENCE:

  • Previous experience at the NSA, DoD, Military Threat Operations team member, Security Researcher, Cyber Threat Researcher, or Cyber Crime Investigator preferred.
  • 5+ years working in one or more areas of threat intelligence, security operations, or forensics.
  • Possesses the ability to review information to determine its significance, validate its accuracy and assess its reliability.

EDUCATION / CERTIFICATIONS:

  • Bachelor’s degree or equivalent combination of education and experience preferred.

Tags: #LI-REMOTE
ReqID: 21006482
Schedule (Full-Time/Part-Time): Full-time

See all IT Jobs >

Sign up for Daily Remote Job Alerts!

Want Access to 25,000+ More Remote and Flexible Jobs?

More Jobs

More Jobs

Part-time to full-time,
freelance to employee

More Career Fields

More Career Fields

50+ flexible
job categories

More Resources

More Resources

Q&A's, webinars,
career coaching & more

Learn More About Our Premium Service