Posted in

Staff Cybersecurity Researcher

Staff Cybersecurity Researcher

CompanyCVS Health
LocationBoston, MA, USA
Salary$130295 – $260590
TypeFull-Time
Degrees
Experience LevelSenior, Expert or higher

Requirements

  • 7+ years of experience in cybersecurity research, threat intelligence, vulnerability analysis, or another cybersecurity related role.
  • 5+ years of experience with cybersecurity principles, technologies, and best practices.
  • 5+ years of experience in conducting research, analyzing data, and synthesizing complex information.
  • 3+ years of experience with emerging cybersecurity threats and trends.
  • 3+ years of experience with formal communication and presentation skills and the ability to convey technical information to both technical and non-technical audiences.

Responsibilities

  • Conduct ongoing research and analysis of emerging cybersecurity threats, vulnerabilities, and attack vectors.
  • Develop deep expertise in complex and evolving cybersecurity domains, such as cloud security, AI-driven attacks, zero-trust architecture, and post-quantum cryptography.
  • Proactively analyze potential cybersecurity risks and their potential impact on CVS Health’s systems, data, and operations.
  • Investigate and analyze both software and hardware vulnerabilities then assess their exploitability.
  • Monitor and analyze cybersecurity trends, publications, and industry best practices to provide insights into potential security challenges and opportunities.
  • Provide well-researched recommendations and insights to shape CVS Health’s cybersecurity strategy, policies, and procedures.
  • Contribute to the evolution of existing security positions and practices based on research findings and emerging threats.
  • Clearly and concisely communicate research findings, security risks, and mitigation strategies to technical teams, management, and stakeholders, including the ELT and Audit Committee.
  • Collaborate effectively with other cybersecurity team members, IT professionals, and business units to implement security best practices and address security concerns.

Preferred Qualifications

  • Experience in the healthcare industry or a strong understanding of HIPAA and other relevant regulations.
  • Experience with cloud security, AI security, or other advanced cybersecurity domains.
  • Excellent analytical, problem-solving, and critical-thinking skills.
  • Familiarity with threat intelligence platforms and tools.
  • Ability to work independently and as part of a team.
  • Relevant certifications (e.g., CISSP, OSCP, CEH) are a plus.