Who We AreJoin a team that puts its People First! Since 1889, First American (NYSE: FAF) has held an unwavering belief in its people. They are passionate about what they do, and we are equally passionate about fostering an environment where all feel welcome, supported, and empowered to be innovative and reach their full potential. Our inclusive, people-first culture has earned our company numerous accolades, including being named to the Fortune 100 Best Companies to Work For list for ten consecutive years. We have also earned awards as a best place to work for women, diversity and LGBTQ+ employees, and have been included on more than 50 regional best places to work lists. First American will always strive to be a great place to work, for all. For more information, please visit www.careers.firstam.com.
What We DoThe Senior Security Engineer would be responsible for supporting the Cyber Defense program initiatives, including protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, perusal, inspection, recording or destruction.
This role is hybrid. For local candidates, this role will be onsite in Santa Ana two days per week.
What You'll Do:
Analyze threat intelligence data to understand adversary tactics, techniques, and procedures (TTPs).
Assist in conducting threat hunting activities to identify and mitigate cyber threats.
Collaborate with internal teams to enhance threat detection and response capabilities.
Monitor and analyze security alerts from various sources to identify potential threats.
Provide recommendations for improving security posture based on threat intelligence findings.
Act as a senior technical resource in developing processes to proactively monitor, detect, and respond to security threats, including the ongoing refinement and enhancements of security controls and configurations for security monitoring systems.
Monitor information security systems, alerts and indicators of compromise used to protect the network from attacks and identify compromised systems.
Work proactively to identify, develop, and implement incident response processes and procedures to mitigate security risks.
Lead, develop, and mature the cyber threat intelligence function of the SOC.
Identify, advise and contribute to system and alert tuning to ensure security related events are properly prioritized and addressed.
Contribute to the ongoing development and enhancement of Cyber Threat Intelligence handling and associated CTI playbooks.
Contribute to the execution activities in the areas of security risk identification, analysis, classification, and mitigation strategies.
Advise customers on security requirements, internal security policies, and security best practices.
Provide training and support related to security incidents, intelligence, and requests to other junior level analysts on the team.
Identify/receive problem, research alternatives, prepare analysis and determine best remediation actions to address issues at hand.
Conduct risk assessments, interview internal and external customers to gain technical knowledge of security/compliance requirements.
Develop and maintain threat intelligence reports and briefings; research and analyze data, report trends and vital information to management/business partner.
Keep abreast of industry advancements and incorporates that knowledge into daily work activities.
Research and stay abreast of emerging technologies, new vulnerabilities and exploits that may compromise internal systems.
Track, analyze, and report security metrics and propose counter measures to address security trends that are not in line with company's desire risk profile.
Contribute to the evaluation, testing and implementation of new security systems and processes.
Asist internal audit and disaster recovery activities as needed.
Develop and maintain documentation for all assigned r
CLZUU DOMUU SK111 SK222 SK333 SK444 SK555 SK666