Website MCB Bank
Career Opportunity: Cyber Threat Hunting Engineer
Proactively Defend Pakistan’s Financial Frontier at MCB Bank
Organization: MCB Bank Limited • Group: Risk Management
Location: Lahore, Pakistan
Apply: [MCB Careers Portal Link]
🏦 About MCB Bank
For 75+ years, MCB’s “Bank for Life” legacy has been built on trust and innovation. As cyber threats grow in sophistication, our Risk Management Group pioneers proactive defense strategies to safeguard 20M+ customers and Pakistan’s financial ecosystem.
🔍 Role Mission
As a Cyber Threat Hunting Engineer, you’ll be MCB’s digital bloodhound—proactively scouring networks, endpoints, and cloud environments for hidden threats before they strike. Your work will disrupt advanced adversaries targeting critical banking infrastructure.
⚔️ Core Responsibilities
| Proactive Hunting | Technical Execution |
|---|---|
| Lead hypothesis-driven hunts for stealthy threats (APTs, zero-days, insider risks) | Develop custom scripts (Python/PowerShell) to automate hunt methodologies |
| Analyze memory, registry, and log artifacts for IOCs/IOAs | Reverse-engineer malware to uncover novel TTPs (Tactics, Techniques, Procedures) |
| Perform deep-dive forensic investigations during breaches | Build threat models using MITRE ATT&CK and Cyber Kill Chain |
| Design and optimize EDR/XDR platforms (e.g., CrowdStrike, SentinelOne) | Create hunting playbooks for SOC integration |
⚙️ Qualifications & Skills
Education
-
Mandatory: Bachelor’s/Master’s in Cybersecurity, Computer Science, or Digital Forensics.
-
Certifications (Preferred): OSCP, GCFA, GNFA, or CRT.
Experience
-
3–5 years in threat hunting, digital forensics, or malware analysis (financial sector prioritized).
-
Technical Must-Haves:
-
Memory forensics (Volatility, Rekall)
-
Endpoint/network forensic tools (Wireshark, FTK, Elastic Stack)
-
Cloud hunting (AWS GuardDuty, Azure Sentinel KQL)
-
Competencies
-
🔹 Hunter Mindset: Persistent curiosity + adversarial thinking
-
🔹 Technical Depth: Kernel-level analysis • Sandboxing • Threat actor profiling
-
🔹 Communication: Document/present findings to technical and executive audiences
-
🔹 Regulatory Knowledge: SBP TRM Guidelines • NIST Incident Response
🌟 Why Join MCB?
-
Impact: Neutralize threats targeting PKR 2.2T+ in assets.
-
Tech Arsenal: Access Splunk ES, CrowdStrike Falcon, and custom AI-hunting tools.
-
Growth: Advance to Lead Threat Hunter or Threat Intelligence Director.
-
Perks: Competitive salary (PKR 180K–300K) + cyber bonuses + certifications.
♿️ Inclusive Hiring Commitment
MCB champions:
-
Women in cyber hunting roles
-
Professionals with disabilities
Support includes: -
Adaptive tech (voice-controlled analysis tools)
-
Flexible SOC shift rotations
📮 How to Apply
-
Prepare:
-
CV highlighting hunting operations (e.g., “Uncovered dormant ransomware in 200+ endpoints”).
-
Sample hunt hypothesis or forensic report (redacted).
-
-
Apply Online:
MCB Risk Management Careers Portal
(Use link in original post caption) -
Subject Line:
"Application: Cyber Threat Hunting Engineer – Lahore"
“The best defense is finding what hides in the shadows.”
— MCB Threat Hunting Ethos
🔎 Hunting Focus Areas
| Threat Landscape | Tools/Techniques |
|---|---|
| Stealth Malware | Fileless attacks • Living-off-the-land (LOLBAS) • Rootkits |
| Insider Threats | UEBA analytics • Data exfiltration pattern detection |
| Cloud Compromises | Container escapes • Serverless function exploits |
| Evasion Tactics | DNS tunneling • Encrypted C2 channels |
💻 Day in the Life
7:00 AM: Review overnight alerts + threat intel briefs 9:00 AM: Hypothesis: "APT group X may exploit Zoho vulnerability" → Launch hunt 12:00 PM: Memory dump analysis → Uncover process hollowing 3:00 PM: Build custom Sigma rule for detection automation 5:00 PM: Brief SOC on new hunting playbook
MCB Bank is an equal-opportunity employer.
We believe cognitive diversity uncovers hidden threats.
Ready to hunt the hunters? Join Pakistan’s cyber vanguard! 🎯
For Accommodations:
[email protected] | +92 42 111 000 222
Critical Need: MCB faces 10+ advanced intrusion attempts weekly. Your hunts could prevent the next breach.
Apply within 7 days for expedited review! ⏱️
To apply for this job please visit lnkd.in.
