Director of Advanced Threat Unit

Apply Now

Company: Black & Veatch

Location: Overland Park, KS 66212

Description:

Together, we own our company, our future, and our shared success.

As an employee-owned company, our people are Black & Veatch. We put them at the center of everything we do and empower them to grow, explore new possibilities and use their diverse talents and perspectives to solve humanity's biggest challenges in an ever-evolving world. With over 100 years of innovation in sustainable infrastructure and our expertise in engineering, procurement, consulting and construction, together we are building a world of difference.

Company : Black & Veatch Corporation

Req Id : 108575

Opportunity Type : Staff

Relocation eligible : No

Full time/Part time : Full-Time

Project Only Hire : No

Visa Sponsorship Available: Yes

Why Black and Veatch

Black & Veatch allows you to lend your talent and perspective to humanity's biggest challenges in a flexible environment where you are empowered to grow and explore new possibilities. We offer competitive compensation; 401K match and benefits that start day 1.

Our hybrid environment allows you to balance your work and personal life. At Black & Veatch, you own your career with purpose and meaning. You are empowered to grow and explore new possibilities at every step of your career journey. Bring your big ideas knowing you are safe to be who you are and speak up with concerns or questions and put your diverse talents and perspectives to use.

The Opportunity

The Director of the Advanced Cyber Threat Unit will be responsible for leading a team dedicated to the detection and response to advanced cyber security threats and nation-state hacking activities. The position is a senior leadership role responsible for overseeing the management, coordination, and response to cybersecurity incidents within the organization. This position ensures the organization's preparedness and swift response to any cyber threats, minimizing the impact on operations and safeguarding data integrity. The unit's scope includes threat intelligence, threat hunting, security orchestration and automation response platforms (SOAR), tracking of advanced persistent threats (APTs), and implementing the MITRE ATT&CK framework and cyber kill chain methodologies.

The Team

Black & Veatch's Business Enablement consists of critical groups that help enable the organizations people, projects, and businesses to be as successful as possible. Functions in this group include Digital & Information Technology, Global Finance, Global Human Resources, Legal, Risk Management, and Government Affairs and Real Estate and Building Services.

Key Responsibilities

Leadership and Strategy
  • Develop and implement detection strategies, policies, and procedures for effective incident response and management against organized crime and nation-state actors.
  • Lead the Incident Response Team, ensuring readiness and coordination during cyber incidents.
  • Oversee the development and implementation of threat intelligence strategies and threat hunting operations.
  • Create, utilize and enhance SOAR platforms to automate and streamline cybersecurity operations.
  • Track and analyze advanced threats using the MITRE ATT&CK framework and cyber kill chain methodologies.
  • Generate and disseminate actionable threat intelligence related to nation-state cyber threat actors.
  • Collaborate with federal law enforcement agencies to document, share, and address nation-state cyber threats.
  • Ensure compliance with federal regulations in cybersecurity operations including Cybersecurity Maturity Model Certification (CMMC) areas.
  • Collaborate with executive leadership to align the incident response strategies with the organization's overall risk management framework.
  • Oversee the development and maintenance of an incident response plan, ensuring it is current, comprehensive, and effective.
  • Maintain up-to-date knowledge of the latest cybersecurity threats, vulnerabilities, and attack vectors.
  • Develop and deliver reports and presentations on cyber threat activities to senior management and stakeholders.
  • Foster a culture of continuous improvement and innovation within the Advanced Cyber Threat Unit.

Incident Management
  • Coordinate the response to cybersecurity incidents, ensuring timely containment, eradication, and recovery efforts.
  • Conduct post-incident analysis to document and identify root causes, evaluate response effectiveness, and implement improvements.
  • Manage communication with stakeholders during and after an incident, providing timely updates and maintaining transparency.
  • Develop and maintain relationships with external partners, including law enforcement, intelligence agencies, and cybersecurity vendors.

Monitoring and Detection
  • Oversee the implementation and operation of advanced monitoring and detection systems to identify potential cybersecurity threats.
  • Ensure continuous monitoring of the organization's network, systems, and applications for signs of malicious activity.
  • Lead efforts to enhance threat intelligence capabilities, staying informed on the latest cyber threats and attack vectors.

Training and Awareness
  • Develop and deliver training programs to enhance the incident response capabilities of the Cyber Incident Response Team and other relevant staff.
  • Promote cybersecurity awareness across the organization, ensuring employees understand their role in incident response and prevention.


Management Responsibilities

Supervises work of others. Responsible for hiring, discipline, and pay administration of their subordinates.

Minimum Qualifications

  • Bachelor's or Master's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • At least 10 years of experience in cybersecurity, with a focus on incident response and management.
  • All applicants must be able to complete pre-employment onboarding requirements (if selected) which may include any/all of the following: criminal/civil background check, drug screen, and motor vehicle records search, in compliance with any applicable laws and regulations.


Preferred Qualifications

  • Proven track record of leading incident response teams and managing complex cybersecurity incidents.
  • In-depth knowledge of cybersecurity threats, vulnerabilities, and attack vectors.
  • Strong leadership and management skills, with the ability to lead a team under pressure.
  • Excellent analytical and problem-solving skills, with the ability to quickly assess and respond to incidents.
  • Effective communication skills, with the ability to clearly convey technical information to non-technical stakeholders.
  • Experience with cybersecurity tools and technologies, including SIEM, IDS/IPS, and threat intelligence platforms.
  • Certifications such as CISSP, CISM, or CEH are desirable.

Skills and Competencies
  • Experience in threat intelligence and threat hunting operations.
  • Knowledge of security orchestration and automation response (SOAR) platforms.
  • Familiarity with the MITRE ATT&CK framework and cyber kill chain methodologies.
  • Experience working with Department of Defense and federal law enforcement agencies.
  • Understanding of Department of Energy and Nuclear regulations in cybersecurity.
  • Ability to generate and analyze threat intelligence related to nation-state cyber threats.
  • In-depth knowledge of cybersecurity threats, vulnerabilities, and attack vectors.
  • Strong leadership and management skills, with the ability to lead a team under pressure.
  • Excellent analytical and problem-solving skills, with the ability to quickly assess and respond to incidents.
  • Effective communication skills, with the ability to clearly convey technical information to non-technical stakeholders.
  • Experience with cybersecurity tools and technologies, including SIEM, IDS/IPS, and threat intelligence platforms.


Work Environment/Physical Demands

Typical office environment with a hybrid work schedule: 3 days in office and 2 days remote

Salary Plan

ITS: Information Technology Service

Job Grade

008
Black & Veatch endeavors to make www.bv.com/careers accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process because of a disability, please contact the Employee Relations Department at +1-913-359-1622 or via our accommodations request form. This contact information is for disability accommodation requests only; you may not use this contact information to inquire about the status of applications. General inquiries about the status of applications will not be returned.

Black & Veatch is committed to being an employer of choice by creating a valuable work experience that keeps our people engaged, productive, safe and healthy.

Our comprehensive benefits portfolio is a key component of this commitment and offers an array of health care benefits including but not limited to medical, dental and vision insurances along with disability and a robust wellness program.

To support a healthy work-life balance, we offer flexible work schedules, paid vacation and holiday time, sick time, and dependent sick time.

A variety of additional benefits are available to our professionals, including a company-matched 401k plan, adoption reimbursement, tuition reimbursement, vendor discounts, an employment referral program, AD&D insurance, pre-taxed accounts, voluntary legal plan and the B&V Credit Union. Professionals may also be eligible for a performance-based bonus program.

We are proud to be a 100 percent ESOP-owned company. As employee-owners, our professionals are empowered to drive not only their personal growth, but the company's long-term achievements - and they share in the financial rewards of the success through stock ownership.

By valuing diverse voices and perspectives, we cultivate an authentically inclusive environment for professionals and are able to provide innovative and effective solutions for clients.

BVH, Inc., its subsidiaries and its affiliated companies, complies with all Equal Employment Opportunity (EEO) laws and regulations. Black & Veatch does not discriminate on the basis of age, race, religion, color, sex, national origin, marital status, genetic information, sexual orientation, gender Identity and expression, disability, veteran status, pregnancy status or other status protected by law.

For our EEO Policy Statement, please click here.

Notice to External Search Firms: Black & Veatch does not accept unsolicited resumes and will not be obligated to pay a placement fee for unsolicited resumes. Black & Veatch Talent Acquisition engages with search firms directly for hiring needs.

Similar Jobs