Select Cyber, an Information Security recruitment specialty firm, seeks to fill the following role for our client:
Information Security Analyst
Be part of a cutting-edge Computer Incident Response Tea, (CIRT) for a fortune 500 client. The selected candidate will be responsible for identifying and mitigation of external and internal threats.
Responsibilities:
Perform the following functions as individual assignments or as part of a team:
- Respond to alerts from various monitoring systems and platforms
- Triage potentially malicious events to determine severity and criticality of the event
- Analyze network traffic using a variety of analysis tools in support of service objectives
- Analyze malicious artifacts obtained from network monitoring with a focus on generation of threat intelligence and service improvement
- Identify, develop, and implement new detections and mitigations across the services platforms
- Communicate and collaborate with the analyst team for situational awareness
- Communicate threat information with clients accurately and professionally through formal and informal interactions
- Apply structured analytical methodologies to maximize threat intelligence growth and service efficacy.
Requirements:
Perform the following functions as individual assignments or as part of a team:
- 3-7 years of technical experience supporting enterprise-scale Secure Operations Centers
- Experience with log collection and analysis, network and host monitoring platforms, and various analysis tools including Splunk, Symantec Security Analytics, Wireshark, and Vortex.
- Experience analyzing logs for indicators of compromise, collected from various network monitoring devices such as firewalls, IDS/IPS, web proxies, email filters, etc.
- Experience defining and refining operational procedures, workflows, and processes to support analyst team in consistent, quality execution of defensive mission
- Functional knowledge of at least one scripting languages (Python, perl, bash, etc)
- Proficiency with Linux CLI tools (awk, sed, jq, etc)