Network Security Analyst 1
[Austin, TX, 78751] | 2023-12-19 13:26:31
Share Job
Job Code : 2023-MY3TECH1733
Network Security Analyst 1
Austin, Texas 78751 (Onsite)
7 months Contract with possibility to extension
Administer and Operate a RSA Netwitness Platform, a SIEM cyber security tool.
** If applicable, please verify and note clearly in the response that the candidate possess the Netwitness XDR Specialist Administrator Certification.
** The interview and job is onsite.
Candidate Skills and Qualifications:
Years | Required/Preferred | Experience |
3 | Required | Evaluate and review existing SIEM platform capabilities to determine current system state. Aspects include benchmarking of in use hardware, storage and virtualization features, evaluating overall system performance, investigating log and packet ingestion |
3 | Required | Design, prepare, and present supporting documentation such as status reports, upgrade/optimization suggestions, project plans, briefings, and presentations, to present to audiences such as CSOC Engineering Team Members. |
3 | Required | Use experience, research, documentation, meetings, and collaboration to understand the Clients’ CSOC’s SIEM operations, strategic objectives, processes, issues, challenges, and opportunities for improvement. |
3 | Required | Interact extensively with Clients’ internal organizational stakeholders, including CSOC Team, CSOC Team Leads and CSOC Management, Internal and Perimeter network teams, Application and Database administrators and developers. |
3 | Required | Fulfill basic CSOC SIEM project management duties to ensure the successful completion of CSOC short-term engagements with vendors and support organizations, to include creation of project plans and change tickets, communications management with team. |
3 | Required | Perform review and editing on existing Clients’ CSOC SIEM documentation to include checks for relevance, completeness format, clarity, and overall cohesiveness. Manage updates as architecture(s) evolve and change and make revisions to technical literature. |
5 | Preferred | Experience with RSA Netwitness SIEM Platform to include evaluation and selection of supporting hardware, installation, configuration and maintenance of SIEM system components such as servers and/or virtual machines and SIEM configuration and maintenance. |
5 | Preferred | Perform steady state operation, tuning, optimization and support for RSA Netwitness SIEM platforms, using tools to include the Health and Wellness features and service status features within Netwitness. |
5 | Preferred | Use research, team meetings, collaboration with other functional groups, understanding of the Clients’ organization’s strategic objectives and candidate’s past experience with RSA Netwitness to determine a long term roadmap for the Clients’ CSOC SIEM. |
5 | Preferred | Perform frequent meetings with relevant software and other technical vendors such as RSA Netwitness and Dell to include feedback on current RSA Netwitness SIEM usage, performance and utilization, incorporating vendor roadmaps into the overall SIEM strat. |
5 | Preferred | Troubleshoot, research and resolve systemic issues in the RSA Newitness SIEM system and supporting software and hardware, providing short, medium and long term solutions to improve and maintain desired performance levels. |
5 | Preferred | Assist in data parsing and normalization in RSA Netwitness SIEM platform on data streams both existing and new, leveraging advanced knowledge of regular expressions and other programmatical tools such as scripting languages like Python and/or Perl. |
5 | Preferred | Netwitness XDR Specialist – Administration certification. |
Any Graduate