At PwC, our people in cybersecurity focus on protecting聽organisations聽from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data.聽
Those in information security at PwC will focus on protecting sensitive data and systems from cyber threats through risk assessments, security audits, and implementing robust security measures. Your work will help enable the confidentiality, integrity, and availability of information assets for clients.聽
-
Analyzing incidents, attributing incidents to threat types and intrusion sets, extracting intelligence from incident data and malicious code, and supporting incident response;聽聽聽
-
Identifying,聽prioritizing聽and reporting on external cyber threats relevant to an organization's industry, and geographic and technological footprint;聽聽聽
-
Generating, consuming, and exploiting tactical and operational threat intelligence to protect against cyber threats;聽聽聽
-
Reporting findings to multiple levels of management across cultural and geographic boundaries, as well as functional teams聽impacted聽by cyber threats;聽聽聽
-
Possessing knowledge of basic intelligence models (e.g., the Intelligence Lifecycle, intrusion kill chain, diamond model, analysis of competing hypotheses, and related structured analytic techniques);聽聽聽
-
Displaying an understanding of malware reverse engineering tools and techniques;聽聽聽
-
Providing structured analysis, prioritization and reporting of a cyber adversary's intent,聽opportunity聽and capability;聽聽聽
-
Understanding forensic analysis tools and techniques;聽聽聽
-
Seeking聽new, and聽validating聽existing, sources of threat intelligence;聽聽聽
-
Providing tactical,聽operational聽and strategic recommendations for preventative controls to other security organizations based upon incident response findings and trends in realized threat activity;聽聽聽聽
-
Applying structured analytic techniques (e.g., analysis of competing hypotheses); and聽聽聽
-
Writing intelligence reports (strategic, tactical, and/or operational).聽聽聽
-
Technology or information security principles, including a broad, high-level understanding of information security policy requirements and compliance, as well as current events within the cybersecurity space;聽聽
-
2 year(s) of progressive professional roles involving information security and/or IT聽management;聽聽聽
-
Graduate degree equivalent;聽聽
-
Foundational computing principles (e.g., networking, operating systems, and information security concepts);聽聽
-
Threat intelligence platforms (e.g.,聽ThreatQ,聽OpenCTI, MISP, etc.);聽聽
-
Security information and event management (SIEM) platforms (e.g.,聽Splunk, Elastic, etc.);聽聽
-
Malware sandboxes and repositories (e.g.,聽VirusTotal,聽VMRay, Hybrid-Analysis, etc.);聽聽
-
Detection development (e.g., Yara, KQL,聽Splunk, etc.);聽聽
-
Open source聽intelligence (OSINT) collection sources, tools, and analysis;聽聽
-
Threat actor tactics, techniques, and procedures (TTPs);聽聽
-
Development of threat characteristics into intrusion sets;聽聽
-
Various classifications of threats (e.g., ransomware and the cybercrime economy) or espionage-motivated threats;聽聽
-
Computer forensics and incident response;聽聽
-
Meta-analysis, data analysis, trend analysis, and data presentation;聽聽
-
Malware reverse engineering fundamentals;聽聽
-
Command and control frameworks (e.g.,聽CobaltStrike, Sliver, etc.);聽聽
-
Programming (e.g., C, Python, Golang, Rust, etc.);聽聽
-
Application programming interfaces (APIs);聽聽
-
Navigation of global corporate environments;聽聽
-
Business processes, particularly in the information security or information technology space; and聽聽
-
The importance of knowledge sharing within a professional services environment.聽聽
-
Ability to work autonomously and take ownership and initiative on tasks;聽聽
-
Delivery of meaningful outcomes as delegated with little to no oversight;聽聽
-
Possessing highly effective oral and written communications, presentation聽skills聽and interpersonal abilities;聽聽
-
Ability to prioritize and execute in a methodical and disciplined manner;聽聽聽
-
Demonstration of聽a desire聽and willingness to learn and improve.聽聽