Manager of Threat Intelligence Services - HCA Healthcare
Nashville, TN 37203
About the Job
Description
Introduction
Do you want to join an organization that invests in you as a Manager of Threat Intelligence Services? At HCA Healthcare, you come first. HCA Healthcare has committed up to $300 million in programs to support our incredible team members over the course of three years.
Benefits
HCA Healthcare, offers a total rewards package that supports the health, life, career and retirement of our colleagues. The available plans and programs include:
- Comprehensive medical coverage that covers many common services at no cost or for a low copay. Plans include prescription drug and behavioral health coverage as well as free telemedicine services and free AirMed medical transportation.
- Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more.
- Free counseling services and resources for emotional, physical and financial wellbeing
- 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service)
- Employee Stock Purchase Plan with 10% off HCA Healthcare stock
- Family support through fertility and family building benefits with Progyny and adoption assistance.
- Referral services for child, elder and pet care, home and auto repair, event planning and more
- Consumer discounts through Abenity and Consumer Discounts
- Retirement readiness, rollover assistance services and preferred banking partnerships
- Education assistance (tuition, student loan, certification support, dependent scholarships)
- Colleague recognition program
- Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence)
- Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income.
Learn more about Employee Benefits
Note: Eligibility for benefits may vary by location.
You contribute to our success. Every role has an impact on our patients’ lives and you have the opportunity to make a difference. We are looking for a dedicated Manager of Threat Intelligence Services like you to be a part of our team.
Job Summary and Qualifications:
The Threat Intelligence Services (TIS) team is part of the Threat Informed Defense organization within Cybersecurity Operations. Cybersecurity Operations support’s HCA Healthcare’s mission of the care and improvement of human life by Detecting and Responding to cyber threats within the Enterprise. The Cybersecurity operations team uses a Threat Informed Defense strategy that heavily leverages cyber threat intelligence. The Threat Intelligence Services team is responsible for providing intelligence to Cybersecurity Operations in support of this strategy.
This position will be responsible for managing a team of cyber engineers and subject matter experts organized across Threat Intelligence Operations, Excellence, and Adversarial Readiness service lines. The TIS team provides threat intelligence and intelligence-adjacent services to the enterprise. Intelligence operations will provide tactical, operational, and strategic intelligence across the entire enterprise. Priority is given to Cyber Threat Intelligence (CTI) for Cybersecurity Operations stakeholders, including Cyber Incident Response, Detection Engineering and Red Team operations. Intelligence use cases will support new detection onboarding, IR automation and enrichment, and planning and executing purple team exercises that result in direct improvement to HCA Healthcare’s defensive posture.
The TIS team is tasked with being the Subject Matter Experts on threat actor behavior, intent, motivations, and capabilities. This position will be highly visible and will provide intelligence products directly to senior leadership on request. The successful candidate will have familiarity with all major topics within the Cybersecurity domain and expertise in some. Excellent critical thinking skills and familiarity with intelligence analysis processes and estimative probability will be required. The position will also require strong written communication skills and verbal presentation skills. The position will be required to maintain a number of vendor relationships and external relationships with intelligence providers.
Major Responsibilities:
Leadership
- Demonstrated understanding and performance of the art and science of servant leadership
- Demonstrated expertise in building new processes and procedures in an enterprise environment
- Build, manage, and mentor a team of cyber threat intelligence analysts.
- Foster a collaborative and high-performing team environment.
- Set team goals and objectives, and track performance metrics.
- Develop and implement the TIS team's strategy and roadmap in coordination with the Director of Threat Informed Defense and AVP of Cybersecurity Operations
- Stay abreast of emerging cybersecurity threats, vulnerabilities, and technologies.
- Evaluate and recommend new threat intelligence tools and technologies.
- Effectively communicate complex technical information to both technical and non-technical audiences.
- Build strong relationships with internal stakeholders and external partners.
- Establish and maintain relationships with vendors.
- Represent the TIS team in cross-functional meetings and projects.
- Manage goals, budgets, and human resources associated with the threat intelligence team
- Familiarity with NIST CSF 2.0
Threat Intelligence Operations
- Expertise in the threat intelligence lifecycle based on industry standard best practices.
- Expertise in maintaining and operating an intelligence team based on Priority Intelligence Requirements (PIRs)
- Oversee the collection, analysis, and dissemination of cyber threat intelligence from various sources (open source, commercial feeds, internal data, etc.).
- Develop and maintain threat intelligence models and frameworks.
- Proactively identify and assess emerging threats and vulnerabilities relevant to the organization.
- Produce timely and actionable threat intelligence reports and briefings for various audiences (technical teams, executives, etc.).
- Collaborate with security operations, incident response, and other teams to proactively mitigate threats.
- Collaborate with Vulnerability management, Red Team, and other Threat Informed Defense stakeholders to identify and document Threat Informed Defense findings for remediation
- Maintain a deep understanding of the current threat landscape, attack vectors, and threat actor TTPs.
- Provide detailed reporting on the health and performance of the Threat Intelligence Operations function
- Expertise in MITRE ATT&CK and similar threat intelligence frameworks
Excellence
- Familiarity with SOAR platforms and associated workflows
- Familiarity with detection development and SIEM platforms and associated workflows
- Oversee the detection development and onboarding process
- Oversee the SOAR development process
- Provide detailed reporting on the health and performance of the Excellence function
Adversarial Readiness
- Familiarity with purple teaming strategy and execution
- Familiarity with deception technology strategy and execution
- Support the development and execution of purple team and deception programs
- Provide detailed reporting on the health and performance of the Adversarial Readiness function
What qualifications you will need:
- Bachelor's degree - Required
- 7+ years of experience in similar role - Required
- 1+ years experience in a leadership role – Required
Work Location/Schedule:
- Nashville, TN area (near the airport)
- Hybrid – 2 days/week min onsite
HCA Healthcare has been recognized as one of the World's Most Ethical Companies® by the Ethisphere Institute more than ten times. In recent years, HCA Healthcare spent an estimated $3.7 billion in cost for the delivery of charitable care, uninsured discounts, and other uncompensated expenses.
"Good people beget good people."- Dr. Thomas Frist, Sr.
HCA Healthcare Co-Founder
We are a family 270,000 dedicated professionals! Our Talent Acquisition team is reviewing applications for our Manager of Threat Intelligence Services opening. Qualified candidates will be contacted for interviews. Submit your resume today to join our community of caring!
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.