Posting Date: 2024-09-27

Atlanta, GA

Security Analyst

2024-09-27

Iris

Qualifications:

WHAT ARE WE LOOKING FOR? / WHAT EXPERIENCE DO YOU NEED?

– 8+ years' experience with Incident Response

– Experience in a 24×7 global enterprise, preferably in the Financial industry

– SANS GIAC certifications

– Experience with cloud platforms

– Experience managing or maintaining malware analysis sandboxes,

– Knowledge of malware analysis tools

– Python and/or PowerShell scripting

– Knowledge of Exabeam suite of products or other SIEM tools

– Excellent communication and interpersonal skills

– Understanding of the business and the ability to assess and address risk without negatively impacting the business

– Ability to identify and analyze malicious code

– In depth understanding of Windows operating systems

– Ability to evaluate exploit code in relationship to existing security controls

 

WHAT ELSE?

– Strong knowledge of networking technologies (TCP/IP, HTTP, SMTP, etc.)

– Strong knowledge of web application vulnerabilities and solutions

– Strong knowledge of Unix & Linux operating systems

– Strong knowledge of the functions of various security infrastructure, including firewalls,

– Intrusion Prevention Systems, Proxy Servers, Security Event Managers, VPNs

– Strong knowledge of web application technologies (HTML, JavaScript, etc.)

– Ability to identify vulnerabilities in networks, systems and applications using COTS tools and manual processes

– General knowledge of network and systems forensics

– In depth knowledge of incident response processes and procedures

– General knowledge of threat intelligence

– Ability to provide 24-hour on-call support on a rotating basis

– CISSP Certified

 

Responsibilities:

Key Responsibilities:

– Develop and execute security incident response plans and cyber forensic investigations for investigating all reported security incidents.

– Develop comprehensive incident reports and investigation summaries.

– Develop and collect intelligence to proactively detect and identify high-confidence threats to the brand, service infrastructure and enterprise users and systems.

– Responsible for analyzing/validating security control requirements and tuning, defining the mitigation rules, scripting and performing changes or mitigating attacks, and assisting with troubleshooting support related to any issues which may arise from security detection or protection technologies.

– Assist with reviewing existing tools, applications, and processes to help strengthen and optimize current security capabilities, as well as identifying any gaps or technical solutions to further enhance the team's effectiveness.

– Communicate problems and solutions verbally and in written form to peers and management.

– Compliance and governance: help achieve compliance, identify compliance initiatives, and promote appropriate security policies.

– Lead analysis and review security events for anomalous activity, collaborate with respective peer groups to take appropriate action to safeguard company information assets against current and foreseen threats.

– Lead the exploration of practical security solutions to address emerging threats and compliance requirements, including design and implementation of recommended solutions.

Equal opportunity employer including disability/veterans.

  • Max. file size: 300 MB.

Discover your next career move.

We want to get too know you.