- Conduct analysis of network traffic and host activity across a wide array of technologies and
platforms
- Assist in incident response activities such as host triage and retrieval, malware analysis, remote
system analysis, end-user interviews, and remediation efforts
- Recognize cyber-attacks based on their signatures.
- Differentiate the false positives from true
intrusion attempts and help remediate/prevent cyber attacks
- Compile detailed investigation and analysis reports for internal CSOC consumption and delivery
to management
- Analyze malicious campaigns and evaluate effectiveness of security technologies
- Develop advanced queries and alerts to detect adversary actions
- Provide expert analytic investigative support of large scale and complex security incidents
- Perform Root Cause Analysis of security incidents for further enhancement of alert catalogue
Requirements
- BSc is a must, MSC is preferable.
- 2+ years’ experience working within the information security field
- Knowledge of applications, databases, middleware to address security threats.
- Proficient in preparation of reports, dashboards and documentation.