We are seeking a proactive and technically capable Cyber Threat Management Engineer to join our cybersecurity threat management team. This early-career role is ideal for individuals with foundational experience in cybersecurity who are ready to grow their technical skills and contribute to BMCs threat detection and response capabilities. You will play an integral part in identifying, analyzing, and mitigating cyber threats across BMCs global environment.
Here is how, through this exciting role, YOU will contribute to BMC's and your own success:
Monitor and analyze data from security systems including open source and enterprise solutions.
Effectively communicate identified threats and track remediations until completion.
Participate in the investigation and technical analysis of security incidents and provide remediation guidance.
Integrate threat intelligence feeds and use frameworks like MITRE ATT&CK to assess and defend against current adversary tactics.
Contribute to automation initiatives to streamline threat detection, alerting, and response workflows.
Support threat hunting and red team exercises.
Document findings, techniques, and outcomes in knowledge bases and reports.
To ensure youre set up for success, you will bring the following skillset & experience:
Bachelors degree in Cybersecurity, Computer Science, Information Technology, or related fieldor equivalent hands-on experience.
Foundational experience (e.g., 12 years) in cybersecurity operations, threat analysis, or incident response.
Proficiency with at least one SIEM platform (e.g., Splunk, QRadar, Sentinel).
Proficiency with enterprise solutions providing dark web monitoring, attack surface management, threat intelligence, and risk rating.
Understanding of network protocols, operating systems, and cybersecurity fundamentals.
Strong scripting or automation skills (e.g., Python, PowerShell, Bash)
Excellent communication and documentation abilities.
Whilst these are nice to have, our team can help you develop in the following skills:
Familiarity with threat intelligence tools and frameworks (e.g., MISP, STIX/TAXII).
Knowledge of cloud security practices (AWS, Azure, or GCP).
Relevant certifications such as CompTIA Security+, CySA+, SC-200, or GIAC (GCIH, GCIA, GCTI).
Curiosity for cybersecurity and continuous learning.