Your Career
As a Principal Consultant in Unit 42 you will have the opportunity to work across a number of proactive cyber security domains including Cloud Security, Security Operations, Cyber Risk Management and Artificial Intelligence in cyber security.
We are seeking an individual who is passionate about cyber security, curious with a demonstrated track record of continuous learning, and has the technical acumen to embrace data, technological and innovative approaches to deliver the best consulting outcomes for clients, as they work to address the challenges associated with today’s cyber threat landscape.
1. Principal SOC Advisory
6+ years of consulting experience in SOC, security engineering, SIEM administration, and incident management and demonstrated success with serving large, multinational organisations in designing and implementing an organisation’s security operations program, organisational structures, and capabilities
Possess a deep technical knowledge in Security Incident and Event Management (SIEM) platforms, Security Orchestration and Response (SOAR) technologies, Endpoint Protection and Response/Next Gen Protection and Response (EDR/XDR) tools, Next GenFirewalls, Threat Intelligence and Hunting platforms
Defensive Security Skills (desired)
Experience in security operations design, engineering and/or analysis and investigations, ideally in complex environments, with security event correlations across a variety of sources i.e. cloud, network, endpoint, logs.
Ability to perform detailed assessments, identify areas for improvement and make recommendations to transform an organisation's cyber security operations and capabilities to better protect, detect and rapidly respond to modern threats.
Demonstrated experience in improving an organisations security operations capabilities such as improvements in asset visibility, threat detection capabilities, automation techniques, case management, enablement of compliance and regulatory requirements
Experience in conducting threat hunting and/or compromise assessments to identify active or dormant indicators of compromise (IoCs) or evidence of unknown threats within an organisations digital environment
Relevant industry certifications including GIAC Defensible Security Architect (GDSA), GIAC Intrusion Analyst (GCIA), GIAC Continuous Monitoring (GMON), CISSP
Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC.
2. Principal Cloud Security
6+ years of experience performing cloud security advisement and risk assessments based upon industry-accepted standards
Hands-on experience with a cloud hosting provider (AWS, Azure, GCP, etc).
Experience with a Cloud Application Security Broker - MCAS, Netskope
Possess a deep technical knowledge in CASBs, Cloud Platforms and the dependencies around such an environment (WAF, SSO, Cloud Threats, API Security, Cloud Security Posture Management)
Former experience with cloud migrations (cloud to cloud, or on-prem to cloud)
Knowledge of command-line interfaces or scripting tools in cloud environments is a plus
Cloud Security skills (desired)
Secure software development practices, including SecDevOps
Sound knowledge of applicable frameworks & standards, including OWASP, MITRE ATT@CK & D3FEND, CIS, NIST CSF, CSA CCM & ISO 27107
Relevant industry certifications including CSCP
Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC.
3. Principal Cyber Risk Management
Experience in performing cyber security threat & risk assessments to support the development of cyber security strategies and roadmaps
Technical proficiency in a wide range of cyber risk management services, including cyber threat, risk and control assessments, secure software development practices, penetration testing, vulnerability assessments, among others.
Sound knowledge of applicable laws, compliance regulations, and industry standards as it relates to privacy, security, and compliance
Sound knowledge of applicable frameworks, including MITRE ATT@CK & D3FEND, CIS, NIST CSF, CSA CCM
Strong communication and presentation skills
Cyber Risk Management skills (desired)
Experience in threat modelling & application security risk assessments, secure software development practices, including SecDevOps
FAIR Open certified & experience in applying FAIR for cyber risk quantification
Relevant industry certifications including CISSP, CISM, CISA
Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC.