Need || Cyberthreat Detections Engineer || San Antonio. TX at San Antonio, Texas, USA |
Email: [email protected] |
http://bit.ly/4ey8w48 https://jobs.nvoids.com/job_details.jsp?id=565221&uid= From: Nikhil Singh, Smartit frame [email protected] Reply to: [email protected] Hello, Job title: Cyberthreat Detections Engineer Job location: San Antonio. TX Duration:12+ months Job Description Technical knowledge to write & develop rules for CSIRT analysis Experience on ELK stack, Fireeye HX, Sysmon, Winlogbeat, CI-CD pipeline Deep understanding of cyber threat actor attacker techniques and tools (such as malware, common attack types) including evasion techniques, reconnaissance, scanning, exploitation, evasion, lateral movement, persistence, and exploits), proficient with MITRE ATT&CK Deep understanding of security operations center processes, tools, and data for analysis & control mitigations, security event timeline analysis and baselining with experience in the analysis of logs and data for the development and implementation of custom detections to counter attacker techniques, known vulnerabilities and evasion methodso Security architecture (network topology, firewalls, proxies, web content filtering, wireless, EDR, IDS, IPS, SIEM, SOAR, etc.)o Network data sources (full packet analysis, flow data, dns logs, proxy logs, NIDS, etc.) Knowledge and experience with common scripting languages and tools Python, PowerShell, Bash, YAMLo Deep knowledge of compound logical operations (AND, OR, NOT), regular expressionso Experience extracting data from logs, SQL, and APIs Knowledge and experience with tools used to build threat detections (Elastalert, Logstash, Kibana (ELK), Fireeye HX, Sysmon, Winlogbeat, Linux Auditd) Deep understanding and experience with Operating Systems Including: Administration, configuration, registry, processes (Windows, Mac, and Linux) Experience in red team/blue team/incident responder interactions Understanding of CI/CD pipelines and Experience with source control tools (Git) Proficiency in Python, Java, Power Shell , Linux/Unix, GitHub AWS , GCP and Azure. Docker, Kubernetes. Independent and good communication skills. Thanks & Regards Nikhil Singh 732-992-3184. Ext 154 [email protected] Keywords: continuous integration continuous deployment Texas http://bit.ly/4ey8w48 https://jobs.nvoids.com/job_details.jsp?id=565221&uid= |
[email protected] View All |
07:53 PM 24-Aug-23 |