Vacancy expired!
- Triage active alerts and campaigns for potential systemic threats to our global business
- Proactively seek out suspicious activity and threats within the environment, act appropriately to contain and mitigate them
- Perform real-time detection, analysis, and response to threats via an EDR tool
- Analyze attacks and trends facing the organization and industry to better define proactive defensive measures
- Track, provide, and present analysis into observed attacks against the client
- Take proactive actions to have observed brand impersonating and malicious sites removed
- Review processes, defense plane, technologies, and alerts in search of improvement
- Participate in ongoing and annual role and level-specific training as part of the team development plan, understanding that actor methodologies are constantly advancing, so all teammates must evolve to stay ahead of our adversaries.
- Must have a minimum of 1 to 2 years of related security experience in enterprise environments
- Must have a strong understanding of security technology and defense topologies
- Splunk or other large log aggregation system
- An Endpoint detection and response (EDR) platform
- Email gateway security controls
- Analyzing Emails (e.g reading and understanding email headers, infrastructure)
- Analytical mindset
- Offensive Security/Adversarial mindset
- Familiarity with various network or cloud architectures
- Identity and Access Management (IAM)
- User and Entity Behavior Analytics (UBA/UEBA)