Technical Lead – Threat Mitigations

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $129k - $253k / year

⏰ Full Time

🟠 Senior

🧑‍💻 Full-stack Engineer

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Eli Lilly and Company

Eli Lilly and Company

10,000+ employees

💊 Pharmaceuticals

🏥 Healthcare

🧬 Biotechnology

💰 $6.5M Post-IPO Debt - Eli Lilly on 2024-02

Pharmaceuticals • Healthcare • Biotechnology

Eli Lilly and Company is a multinational pharmaceutical company that researches, develops, manufactures, and markets prescription medicines across multiple therapeutic areas including diabetes, oncology, immunology, neuroscience, and pain. Headquartered in Indianapolis, Indiana, Lilly is known for its extensive R&D, clinical development, and global commercialization of biologic and small-molecule drugs. The company focuses on drug discovery, clinical trials, regulatory approvals, and large-scale pharmaceutical manufacturing and distribution.

📋 Description

• Partner with internal cyber teams, platform and application owners, and business stakeholders to reduce the impact of identified vulnerabilities and threats • Drive burndowns of targeted risks across the organization • Support application teams in executing cyber mitigation plans • Serve as a technical anchor for the threat surface management squad • Intake vulnerability, exposure, and threat intelligence data and translate it into scoped, executable burndown campaigns • Define campaign owners, targets, and timelines • Develop solutions to accelerate burndon execution, including automation of triage, deduplication, ownership identification, and notification • Track progress against targets, unblock remediation owners, and escalate stalled or high-severity work • Capture root cause, technical recommendations, and lessons learned for durable process improvement • Assist platform, application, and infrastructure teams in interpreting mitigation requirements and completing security plans • Confirm implementation of threat mitigation requirements in the GRC tool by validating controls, evidence, and records • Lead technical deep dives into vulnerabilities, adversary TTPs, and threat intelligence • Identify and close analyst skill gaps • Develop and refine threat surface management capabilities and strategies • Build relationships with Cyber Defense, Identity and Access Management, Security Architecture & Engineering, and Platforms teams • Advise cyber leadership and stakeholders by translating threat and remediation data into actionable decisions

🎯 Requirements

• Bachelor’s degree in Computer Science, Information Systems, or Cyber Security • 5+ years of experience in threat surface management, vulnerability management, cyber defense, or a related security discipline • 3 years+ experience scoping and driving remediation or mitigation campaigns to closure across teams you do not directly manage • 3 years+ of threat intelligence and exposure data, and how to apply it to prioritization, including CVSS, EPSS, KEV, adversary TTPs, and active exploitation reporting • Demonstrated technical leadership, including mentoring analysts and running deep technical dives • Hands-on experience with vulnerability scanning and prioritization tooling, EDR, and SIEM • Experience automating triage, deduplication, ownership identification, or notification within a remediation workflow • Experience working alongside a cyber defense, SOC, or threat intelligence function • Experience in a regulated industry with formal control validation and audit expectations • Excellent stakeholder communication and ability to translate technical threat and remediation data into decisions • Strong problem-solving, analytical, detail-orientation, and risk-management skills • Certifications such as CISSP, OSCP, GEVA, or equivalent are preferred

🏖️ Benefits

• Company bonus depending, in part, on company and individual performance • Company-sponsored 401(k) • Pension • Vacation benefits • Medical benefits • Dental benefits • Vision benefits • Prescription drug benefits • Flexible benefits, including healthcare and/or dependent day care flexible spending accounts • Life insurance and death benefits • Certain time off and leave of absence benefits • Well-being benefits, including employee assistance program, fitness benefits, and employee clubs and activities • Employee resource groups open to all employees

Apply Now

Similar Jobs

🔥 2 hours ago

Astreya

1001 - 5000

💼 Consulting

📦 Logistics

📣 Marketing

AI-first Oracle SCM engineer modernizing Supply Chain applications across the SDLC. Applying Copilot, RAG, automation, and AI-enabled DevOps to improve delivery outcomes.

🔥 5 hours ago

Infracore

51 - 200

💼 Consulting

🏥 Healthcare

📦 Logistics

Senior Business Central technical lead designing AL extensions, integrations, and architecture for VetaTek, a Microsoft Solutions Partner. Mentoring developers and resolving complex client environments.

🔥 6 hours ago

Ivyhill Technologies

11 - 50

💼 Consulting

🏥 Healthcare

📦 Logistics

Software Engineer I developing and testing software applications for Ivyhill Technologies. Troubleshooting defects, translating requirements into code, and supporting quality assurance efforts.

🔥 8 hours ago

Mozilla

501 - 1000

👥 B2C

🔒 Cybersecurity

Browser engine specialist developing experimental browser capabilities at Mozilla, the open-source technology company behind Firefox. Investigating engine internals, performance, correctness, and AI-agent interactions.

🔥 9 hours ago

Doppel

1 - 10

💼 Consulting

📦 Logistics

📣 Marketing

Backend engineer building scalable AI-native cybersecurity infrastructure for Doppel. Developing software that detects and disrupts phishing, impersonation, fraud, and other digital threats.