Overview
In this role you will strengthen Millennium’s security posture by leading threat hunting, building high-fidelity detections, and automating response workflows. You will collaborate across teams to deliver proactive security outcomes and act as a security ambassador for policy enforcement. You’ll monitor emerging threats and translate them into practical defensive measures that scale with the organization. This is a hands-on, technically diverse position with a focus on operational excellence and impact.
Responsibilities
- Threat hunting across multiple data sources to identify evolving threats and craft new detection/response approaches
- Design, operate and optimize high-fidelity detections to enable efficient incident response
- Own and automate detection and response playbooks to free up strategic work
- Lead information security response activities for the firm
- Collaborate across business and technology teams to drive secure outcomes
- Explain complex security concepts to diverse stakeholders and act as security ambassador
- Monitor new security and privacy technologies and assess their applicability to business initiatives
- Ensure security capabilities remain fit for purpose and evolve with the threat landscape
Key requirements
- Bachelor or Master in computer science or cyber security or equivalent experience
- 3 years in a security engineering role; financial industry experience preferred
- Experience creating detections using KQL, SQL, SPL
- Security certifications (Security+, OSCP, CISSP, CEH, GCIA, GCIH)
- Experience with modern security tooling across network, endpoint, data, identity and cloud domains
- Experience with enterprise tech stack: Active Directory, Entra, Group Policy, Intune, DNS, TCP/IP, PKI, Microsoft 365, Windows, Linux, MacOS
- PowerShell or Python for scripting/automation
- Experience with OSINT, threat hunting and analyzing malicious emails
- Ability to prioritize in fast-moving, high-pressure environments
- Strong collaboration across teams
- Excellent communication with varied stakeholders
- Discretion handling sensitive information
- KQL
- SQL
- SPL
…
