Cyber Advisor, Post-Cyber Event Hardening
Job Description
<p><strong>Why you should join our At-Bay Security team:</strong></p> <p>Cyber insurance has become indispensable for businesses against the existential threat of cyber attacks which become more common and more devastating year after year. In response, At-Bay invented the concept of InsurSec to bridge the gap between insurance and security. Our award-winning team combines the unparalleled risk insights available to a full-stack cyber insurance carrier with full-spectrum cyber operations capabilities to bring our customers a safer and more secure working world. If you’re reading this, then you’re probably looking for a new adventure. But how about a new perspective? If impact is your goal, then join us and find out what you’re worth when a single conversation can avert a significant ransomware incident and save a small business from having their lights turned out permanently. </p> <p><strong>Role Overview:</strong></p> <p>The Cyber Advisor for the Post-Cyber Event Hardening service is essential in helping customers enhance their security posture following a cyber event. This role bridges the gap between recovery and long-term resilience by implementing and optimizing technical security controls directly within the customer's environment to minimize future risk.</p> <p><strong>Engagement-Based Responsibilities:</strong></p> <p>Assessment & Prioritization</p> <ul> <li>Conduct targeted reviews of the insured’s environment to identify security control gaps</li> <li>Analyze and prioritize system weaknesses across cloud and on-premise infrastructure to focus remediation on the highest-risk areas</li> </ul> <p>Implementation & Hardening</p> <ul> <li>Deploy security improvements, including advanced endpoint protection, email security tools, and modern network access controls</li> <li>Integrate zero-trust principles and robust identity protections to ensure resilient access management</li> <li>Execute technical hardening measures to eliminate common attack vectors and secure critical infrastructure components</li> <li>Apply technical remediations to align the environment with At-Bay’s security standards</li> </ul> <p>Strategic Resilience & Advisory</p> <ul> <li>Achieve a demonstrably stronger security posture for the insured than existed prior to the cyber event</li> <li>Translate technical improvements into strategic business value, helping the insured build a sustainable culture of security</li> </ul> <p><strong>Internal Responsibilities:</strong></p> <p>Security Product & Tooling Evolution</p> <ul> <li>Continuously evaluate and update technical “betterment” playbooks and toolsets to stay ahead of evolving threat actor tactics</li> <li>Test and vet new security solutions to ensure the service utilizes the most effective and reliable technologies available</li> </ul> <p>Cross-Functional Intelligence Sharing</p> <ul> <li>Provide anonymized insights from engagements to help internal teams refine risk models and security requirements</li> <li>Collaborate with internal teams to align technical remediation efforts with policy standards and emerging insurance trends</li> </ul> <p>Knowledge Leadership & Training</p> <ul> <li>Act as a subject matter expert for the broader security and insurance teams on the "what and how" of modern infrastructure hardening</li> <li>Create internal anonymized post-mortems to demonstrate the ROI of the service and highlight successful security transformations</li> </ul> <p>Continuous Threat Research</p> <ul> <li>Stay current on the threat l