Cyber Security Threat Management Senior Associate
DTCC- The Depository Trust & Clearing Corporation
Are you ready to make an impact at DTCC?Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.Pay and Benefits:Competitive compensation, including base pay and annual incentiveComprehensive health and life insurance and well-being benefits, based on locationPension / Retirement benefitsPaid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).The Impact you will have in this role:As a Threat Hunt Senior Associate, you will execute hypothesis-driven hunts across endpoint, identity, network, and cloud telemetry; track and document hunt activity end-to-end; and translate findings into actionable improvements, detections, response playbooks, hardening tasks, and prioritized engineering work.This role is hands-on and requires a practitioner mindset: you’ll spend your time asking better questions of the data, validating what “normal” looks like in complex systems, and proving or disproving attacker behaviors using repeatable methods. You’ll also provide surge support to incident response during investigations where hunt techniques accelerate containment and root cause analysis.This is a mid-level role for someone who can operate independently on scoped hunts, communicate clearly, and contribute to a sustained, measurable hunting program.Key ResponsibilitiesHunt Execution & Documentation (Core)Execute hypothesis-based threat hunts mapped to MITRE ATT&CK tactics/techniques, focusing on realistic adversary behaviors (credential access, persistence, lateral movement, defense evasion, and cloud abuse).Use behavioral analytics and anomaly detection to identify suspicious patterns across endpoint + identity + cloud + network telemetry, then validate with deeper artifact review.Perform, track, and record hunt activity in a structured way: hypotheses, datasets queried, query versions, findings (positive/negative), evidence, confidence, and follow-up actions.Maintain clean, audit-ready hunt notes that allow another analyst to reproduce your work and understand decisions made under uncertainty.Investigative Workflows & Telemetry CorrelationCorrelate logs across EDR/XDR, SIEM, cloud control plane logs, identity logs, and container/Kubernetes telemetry to build a coherent narrative from partial signals.Investigate attacker tradecraft such as:Credential theft and replay (token theft, OAuth abuse, suspicious refresh patterns)“Living off the land” execution (PowerShell, WMI, LOLBins on Windows; bash/curl/wget/systemd on Linux)Persistence mechanisms (scheduled tasks/cron, service modifications, registry run keys, launch agents)Command-and-control behaviors and egress anomalies (beaconing, domain fronting indicators, unusual TLS fingerprints where available)Cloud and Kubernetes abuse (suspicious role assumptions, unusual API call sequences, kubeconfig access, container escape precursors)Triage and deepen suspicious signals into defensible findings: timeline, scope, impact, root cause, and containment recommendations.Detection Engineering & Continuous ImprovementTranslate hunt results into durable controls: new detections, tuning improvements, telemetry onboarding, or gaps to address (instrumentation, logging coverage, parsing, enrichment).Draft and iterate detection logic (e.g., Sigma/YARA, SIEM analytics rules, EDR custom IOAs) with measurable success criteria: false-positive rate, time-to-detect improvements, and coverage mapped to ATT&CK.Partner with SOAR/automation engineers to operationalize repetitive enrichment and triage steps into playbooks.Purple Teaming & Adversary SimulationCollaborate with Red Team / Purple Team efforts to validate detection coverage, refine alerts, and ensure hunts align to current and relevant TTPs.Help design and execute controlled simulations (atomic tests, adversary emulation plans), then close the loop by updating detections, documentation, and response procedures.Incident Support (When Needed)Provide incident surge support: rapid scoping queries, hunting for related activity, identifying patient-zero candidates, and strengthening containment decisions with evidence.Contribute to post-incident reviews by identifying detection gaps, improving playbooks, and capturing lessons learned as backlog items.Required Qualifications3-6 years in Threat Hunting, Detection Engineering, Incident Response, or SOC investigations in a production environment (financial services/fintech experience is a plus but not required).Demonstrated experience running hypothesis-driven hunts and documenting outcomes in a way that supports repeatability and measurement.Strong log analysis skills and comfort working across multiple telemetry sources (endpoint, identity, network, cloud).Practical detection and query experience in one or more: KQL (Microsoft Sentinel / Defender)Splunk SPLElastic/Kibana (EQL/KQL/Lucene)Chronicle/Google SecOps query language or equivalentSolid operating system fundamentals: Windows internals basics (process ancestry, services, scheduled tasks, registry persistence)Linux fundamentals (systemd, cron, auth logs, process/network inspection)Familiarity with attacker tradecraft and investigative methods aligned to MITRE ATT&CK; ability to map raw evidence to techniques without forcing it.Ability to communicate clearly—writeups that separate observation from inference, quantify confidence, and identify next steps.Proven ability to prioritize: know when you have enough evidence to escalate vs. when to keep iterating.Preferred QualificationsExperience hunting across cloud + containerized environments (AWS/Azure/GCP; Kubernetes; CI/CD telemetry).Experience developing or tuning detections using Sigma, YARA, EDR custom detections, or SIEM correlation rules.Familiarity with NIST CSF / NIST 800-61 incident response concepts and how hunting feeds detection/response maturity.Experience with SOAR automation, enrichment pipelines, and case management workflows.Certifications (any of the following are valued):GCFA, GCIH, GCIAOSCP (useful signal for investigative depth; not required)CISSP (helpful for program maturity context; not required)Comfortable scripting for analysis and automation (Python, PowerShell, Bash) and using tools like jq, osquery, CyberChef.Tools & TechnologiesYou won’t need every item day one—but you should be comfortable learning quickly and working across a modern stack.EDR/XDR: Microsoft Defender for Endpoint, CrowdStrike Falcon, SentinelOne (or equivalent)SIEM / Analytics: Microsoft Sentinel (KQL), Splunk (SPL), Elastic (EQL/KQL), Chronicle/Google SecOpsCloud & Identity: Azure/AWS logs, Entra ID/Azure AD, Okta (or equivalent), CloudTrail/Activity Logs, IAM telemetryContainers: Kubernetes audit logs, container runtime signals, registry, and CI/CD telemetryDetection Content: Sigma, YARA, ATT&CK mappings, custom IOAs, correlation rulesWorkflow: Case management, runbooks/playbooks, SOAR tooling, structured reporting, and metricsWhat Success Looks Like in This RoleIn your first 90 days, you will:Run multiple scoped hunts end-to-end and document them to a reproducible standard (hypothesis data sources queries findings actions).Demonstrate strong signal-to-noise judgment: reduce false positives through evidence-based tuning, not guesswork.Produce at least a few measurable outcomes—new detections, improved parsers/enrichment, or closed telemetry gaps—that improve detection coverage.Build credibility with IR and engineering partners by bringing clear findings, not speculation, and by turning results into tractable follow-up work.By 6–12 months, you will:Consistently deliver ATT&CK-mapped hunt outcomes and contribute to a backlog that meaningfully improves coverage and response speed.Help mature the hunt program’s operational rigor: tracking, metrics, documentation quality, and repeatable hunt playbooks.Be trusted to lead hunts on complex topics (cloud identity abuse, Kubernetes attack paths, cross-domain lateral movement) and mentor junior analysts informally through your writeups and methods.The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.Full timePosting Date: 2026-09-28
$86.5k - $166k
...IFS - Information Technology (IT) Management Level Senior Associate Job Description & Summary At PwC... ...focus on protecting organisations from cyber threats through advanced technologies and... ...identify vulnerabilities, develop secure systems, and provide proactive...SeniorFull timeH1bVisa sponsorshipWork visaFlexible hours- ...Join our elite Applied Cyber Threat Research (ACTR) team within... ...the forefront of innovative security strategies. In this dynamic... ...Cybersecurity Intelligence Senior Associate in Cybersecurity & Technology... ...transaction processing and asset management. We offer a...Senior
- ...Senior Product Delivery Associate In Client Onboarding And Documentation Be at the heart of transforming... .... You'll also help drive release management activities, support testing and... ...global leader across banking, markets, securities services and payments. Corporations...SeniorFull timeWork at officeWeekend work
$77k - $202k
...career in our Enterprise Performance Management team, within our Oracle consulting practice... ...careers, now and in the future. As a Senior Associate, you'll work as part of a team of... ...Agent; Master Data Management; User Security Configuration and Management; and, Report...SeniorH1b$77k - $202k
...Industry/Sector Not Applicable Specialism Operations Management Level Senior Associate Job Description & Summary The Opportunity As a... .... We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.Applications will be accepted...SeniorFull timeH1b- ...employee). The Impact you will have in this role: The Senior Associate, Enterprise Portfolio Office Governance Execution & Decision... ...message is understood Instill Ownership: Ensure accountability, manage execution, and mitigate risk to deliver results. Be proactive...SeniorFull timeWork at officeRemote workFlexible hours
- ...Senior Industrial Security Specialist DutiesAs a SENIOR INDUSTRIAL SECURITY SPECIALIST you will be responsible... ...security program vulnerabilities and associated mitigation actions to internal/... ...vulnerabilities associated with threat to U.S. or foreign classified information...SeniorFor contractors
$132.23k - $176.31k
...connected ecosystem. We enable secure, high‑performance connectivity... ...Labs has an opening for a Senior Lead Security Engineer that will... ...discovery of evolving malicious threats, provide mission-relevant... ...automating detection. Work with cyber operators, when requested, to...SeniorFull timeTemporary workWork experience placementWork at officeRemote work$77k - $202k
...SummaryThe OpportunityAs an Oracle Utilities - Senior Associate, you will play a pivotal role in... ...Customer Experience (CX) and Revenue Management Cloud Service (RMCS) to enhance client... ...these factors thoughtfully to establish a secure and trusted workplace for all....SeniorFull timeH1b$95k
...Job Description Assurance Senior Associate Location: Tampa, FL | Hybrid (2-3 days in-office per week) Compensation: Up... ...accounting trends, industry changes, and evolving regulations • Manage multiple projects and deadlines effectively, especially...SeniorPermanent employment2 days per week3 days per week- ...as a Client Onboarding Associate at JP Morgan Chase,... ...Utilize your project management skills to create seamless... ...Onboarding Implementation Senior Associate within... ...process against potential threats. Foster digital... ...and manage innovative, secure service solutions to meet...SeniorTemporary work
- ...About the job Senior Vulnerability Researcher About the Opportunity... ...for critical national security and intelligence missions. Their expanding cyber team offers highly technical researchers... ...rather than move into management. Why Join? ~ Work on advanced...SeniorRelocationRelocation package
- Summary DCSA's Industrial Security Component is seeking a Senior Industrial Security... ...Office Chief as necessary in managing, directing, and coordinating... ...vulnerabilities and associated mitigation actions to internal... ...associated with threat to U.S. or foreign classified...SeniorPermanent employmentFull timeTemporary workPart timeFor contractorsWork at officeImmediate startRemote workTrial periodFlexible hours
- ...briefings.Direct the enterprise HIPAA Privacy & Security Program in partnership with the Chief Information Security Officer (Cyber Security), including breach risk assessments... ...) and Corporate Integrity Agreement (CIA) management.Oversee coding, billing, and reimbursement...Senior
- Bennett Thrasher in Tampa is looking for a Senior Associate to join their Transaction Advisory team. In this role, you'll lead transaction... .... Skills in communication, Excel modeling, and time management are essential. Bennett Thrasher supports a hybrid work schedule...Senior
$100k - $170k
...Digital Finance Transformation – ERP Modernization: Senior Associate – Private Equity Performance Improvement A&M’s Private Equity Performance... ...the following pillars Strategic Finance and Liquidity Management Accounting Advisory and Financial Reporting Solutions Working...SeniorFull timeInterim roleFlexible hours- ...Senior Industrial Security SpecialistDCSA's Industrial Security Component is seeking a Senior Industrial Security Specialist. In this role you... ...Responsibility (AOR), and to assist the Field Office Chief as necessary in managing, directing, and coordinating day-to-day operations....SeniorWork at office
$21.75 - $44.5 per hour
...Shared Services Office Senior Associate At Crowe, you can build a meaningful and rewarding... ...support, event coordination, and project management. This dynamic position involves collaboration... ...logistics, ensuring a welcoming and secure environment. Serve as the primary...SeniorHourly payPart timeWork at officeLocal area- ...Overview: The Task Lead (Senior) serves as the on-site lead responsible... ...high-quality services in a secure USSOCOM environment.... ...prioritization, and workforce management. Serve as primary interface... ...Requirements/Education: ~ Associate’s degree or equivalent experience...SeniorContract workLocal area
$100k - $170k
...Services Include Transformation Services CDD/Strategy Interim Management M&A Services Manufacturing Operations Improvement Supply Chain CFO Services How You Will Contribute As a Senior Associate in Transformation Services, you will support large, complex client...SeniorFull timePart timeInterim roleFlexible hours- ...life—while having a lot of fun doing it. We are seeking a Senior Creative Associate based in the South Florida area. While this is a hybrid... ...proposals, while collaborating on larger programs with Creative Managers in proposal splits and owning asset-based projects like...SeniorLocal areaImmediate startFlexible hours
$100k - $170k
Senior Associate, Supply Chain - Distribution & Logistics (OPEN TO ALL U.S. LOCATIONS) About Alvarez & Marsal Alvarez & Marsal (A&M) is... ...Transformation Services Manufacturing Operations Improvement Interim Management M&A Services CFO Services How You Will Contribute We are...SeniorFull timePart timeInterim roleFlexible hours$70k - $135k
...clients including payors, providers, life sciences companies, and the legal and financial firms that work with the industry. The Senior Associate role is a junior consulting position. This position requires highly motivated problem solvers with solid analytical abilities,...SeniorFull timeWork experience placementWork at officeLocal area3 days per week$100k - $160k
...PEPI - CFO Services – Senior Associate A&M CFO Services work with private equity held portfolio companies and provide our clients with... ...Strategic Analytics & Planning Performance Measurement & Management Business Transformation Auxiliary Services: Accounting...SeniorPart timeFlexible hours$80.75k - $125k
...Alternative Fund Services ("AFS") is part of the Securities Services business group in the Corporate &... ...: As a Private Equity Fund Admin Associate within our client administration team, you will support the management of daily client deliverables for Private Equity...Work at office$124k - $280k
...protecting organisations from cyber threats through advanced... ...identify vulnerabilities, develop secure systems, and provide proactive... ...data.In identity and access management at PwC, you will focus on confirming... ...excellence. As a Senior Manager, you will serve as a...SeniorFull timeH1b$90k - $130k
...Alvarez & Marsal Private Equity Performance Improvement Associate: CFO Services Alvarez & Marsal, a leading independent global... ...services firm, specializing in providing turnaround management, performance improvement and corporate advisory services, is seeking...Work experience placementInterim roleImmediate startFlexible hours- ...Civil litigation firm headquartered in California looking for a senior associate attorney for its Florida Construction Defect Group. We... ...handling construction defect actions and be comfortable managing cases independently. Responsibilities Handle construction...SeniorFull timeWork at officeWork from homeFlexible hours
$105.4k - $207.8k
Position Summary Cyber Security & Risk Strategy Senior Consultant Our Deloitte Cyber... ...navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity... ...geographic differential associated with the location at which...SeniorLocal areaVisa sponsorship$141.2k - $278.3k
...Microsoft Fabric, Microsoft Security, and Microsoft Copilot... ....Architect Operate and managed-service capabilities,... ..., data and analytics, cyber, engineering, industry,... ...; Azure AI Engineer Associate, Cybersecurity Architect... ...entry-level employees to senior leaders, we believe...SeniorFull timeLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Security Threat Management Senior Associate. Be the first to apply!
- senior security analyst Tampa, FL
- security systems specialist Tampa, FL
- security coordinator Tampa, FL
- security advisor Tampa, FL
- network security consultant Tampa, FL
- senior information security analyst Tampa, FL
- security consultant Tampa, FL
- security specialist Tampa, FL
- cyber sales Tampa, FL
- cyber Tampa, FL




