Description
Description :
What you'll do
" Aid application teams seeking to consume threat Client into the appropriate tools and services
" Consistently work with CIR and Application team in an iterative fashion to ensure that all security logs are monitored, accounted for, and complete
" Tune alerts generated from all Cybersecurity tooling
" Work with the Cybersecurity Incident Response (CIR) groups to enforce process governance and ensure regulatory compliance
" Work with Security Analytical platforms, SOAR, SIEM, EDR, and other detection and incident response technologies.
" Develop a playbook and process automation utilizing the SOAR technologies
" Assist external teams in the proper configuration of security infrastructure that CIR relies on (IDS/IPS, Phish technologies, Firewalls, etc.)
" Aid external teams in ingestion of asset data into CIR systems
" Createsprocesses that allow non-security minded teams the ability to achieve regulatory compliance
Minimum Qualifications- Education & Prior Job Experience
" Bachelor's degree in Computer Science, Information Systems, Engineering, Technology, or related field or equivalent experience/training
" 3 years of scripting and automation experience
" 3 years of Information Technology Security related experience
" Available to travel
" Available to work a flexible schedule and support the incident response teams during triage
Preferred Qualifications- Education & Prior Job Experience
" 5+ years of Information Technology Security related experience
" 1 years of building and using APIs
" 2 years of networking experience
" 5+ years of Windows/Linux experience
" 2 years of data engineering experience
" Active Directory experience
" Information Security Certification
" Security+
" CISSP
Skills, Licenses & Certifications
" Ability to script in languages like Power Shell, Python, or JavaScript
" Knowledge of Linux/Unix, BASH/Power Shell, Basic Windows Administration
" Knowledge of basic security controls and architecture
" Knowledge of Networking concepts, services, and protocols
" Knowledge of SIEM, EDR, SOAR Platforms, Big Data Platforms
" Experience with Agile methodologies and tools
" A solid understanding of cyber security concepts, vulnerability identification and cyber threat intelligence
" Must be detail oriented, well organized, thrive in a sense-of-urgency environment, leverage best practices, and most importantly, innovate through any problem with a can-do attitude
" Aptitude in solving problems independently while also having the openness to work collaboratively
" Demonstrated problem-solving skills
" Ability to lead a small squad of engineers to deliver sustainable, scalable, and staff tolerant enterprise services
Bachelor's degree in Computer Science, Information Systems, Engineering, Technology