Threat Hunting Specialist
Posting Date: 7 Apr 2025
Function: Cyber Security
Unit: Networks
Location: Assembly, Bristol, United Kingdom
Salary: Competitive with Great Benefits
BT Group is one of the most critical of all UK Critical National Infrastructure. Our job is simple - defend it from Cyber Attack. Your role at BT is pivotal in helping us achieve this. You will have access to an unparalleled level of data and security tooling to help us achieve our goal of being the world’s most trusted connector of people, devices and machines by 2030.
This role follows hybrid working & requires 3 days in the office - choice of Bristol, Ipswich or Manchester
What you’ll be doing
* Conduct proactive threat hunting activities to identify and mitigate potential security threats, aligning with the MITRE ATT&CK Framework.
* Analyse and interpret security data from various sources, including logs, network traffic, and endpoint data.
* Develop and implement advanced threat detection techniques and tools.
* Collaborate with the incident response team to investigate and respond to security incidents.
* Create and maintain detailed documentation of threat hunting activities and findings.
* Stay up-to-date with the latest threat intelligence and cybersecurity trends.
* Provide recommendations for improving security posture and threat detection capabilities.
* Lead an intelligence-led vulnerability management process.
* Act as CTI SME within a wide range of Security engagements.
* Lead collaboration activities with internal teams to enhance understanding of potential adversaries and attack vectors.
* Deliver verbal presentations and threat briefs to internal and external stakeholders at all seniority levels.
* Manage relationships within the wider Information Security community and represent BT in various forums to ensure impactful collaboration.
* Oversee vendor relationships to ensure effective integration and usage of vendor platforms.
Skills & Experience Required for the Role
Must Have:
* Proven experience in threat hunting, incident response, malware analysis, or a similar role.
* Current relevant professional qualifications in Threat Hunting and/or Information Security (Relevant certifications such as CEH, GCIH, GCFA are a plus or willingness to work towards them).
* Strong knowledge of cybersecurity principles, threat landscapes, and attack vectors.
* Experience with Crowdstrike and Microsoft Defender hunting methodologies.
* Familiarity with the MITRE ATT&CK framework.
* Knowledge of security tools and technologies such as SIEM, EDR, and IDS/IPS.
* Excellent analytical and problem-solving skills.
* Strong oral and written communication skills.
* Proactive team player with demonstrable experience in operational delivery in a fast-paced security environment.
* Understanding of current security threats, threat models, frameworks, and common mitigations.
* People skills with the ability to communicate effectively.
Nice to Have:
* Experience of intelligence-led vulnerability management processes.
* Experience in vulnerability management.
* Experience with scripting and automation (e.g., Python, PowerShell).
* Experience within another Telecommunications/CNI environment.
* Network analysis skills.
About us
BT Group was the world’s first telco and our heritage in the sector is unrivalled. As home to several of the UK’s most recognised and cherished brands – BT, EE, Openreach and Plusnet, we have always played a critical role in creating the future. Over the next two years, we will complete the UK’s largest and most successful digital infrastructure project – connecting more than 25 million premises to full fibre broadband. Together with our heavy investment in 5G, we play a central role in revolutionising how people connect with each other.
Although these roles are listed as full-time, if you’re a job share partnership, work reduced hours, or any other way of working flexibly, please still get in touch. We will also offer reasonable adjustments for the selection process if required, so please do not hesitate to inform us.
We are committed to building a diverse, inclusive, and authentic workplace where everyone can be their best. If you're excited about this role but your past experience doesn't align perfectly with every requirement on the Job Description, please apply anyway - you may just be the right candidate for this or other roles in our wider team.
#J-18808-Ljbffr