- Monitor intrusion detection and security information management systems for malicious or anomalous activity.
- Triage and evaluate security events to determine whether an incident occurred.
- Analyze logs, packet captures, and related enterprise data to support incident conclusions.
- Coordinate incident response and document incidents from initial detection through final resolution
Required Qualifications
Required Education / Experience Bachelor of Science/Arts degree in Engineering, Computer Science, Science, Business Administration, or Mathematics plus three (3) years of specialized experience; or an Associate's degree plus seven (7) years of specialized experience; or a major certification plus seven (7) years of specialized experience; or eleven (11) years of specialized experience.
Required Specialized Certification At least one of the following: Cisco CyberOps Professional; SANS certification (any); Microsoft Certified: Security Operations Analyst Associate; Blue Team Level 1; OSDA.
Required Specialized Experience Experience monitoring intrusion detection and security information management systems; triaging and evaluating detected events; analyzing logs and packet captures; coordinating incident response with technical and non-technical parties; understanding hacker TTPs and exploits; and documenting incidents from initial detection through final resolution
Preferred Qualifications
Related Positions
Cyber Threat Analyst
Germany - RCC-E (On-site)
Intelligence Support to Information Operations (ISIO) Analyst/SME
#J-18808-Ljbffr
Kontaktdaten:
Strategic Resilience Group Recruiting-Team