2 дня назад
Associate Solution Consultant – Security Incident Handler (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Associate Solution Consultant – Security Incident Handler (Cybersecurity) (Trellix security platform): Monitoring customer environments and responding to security incidents across a 24x7x365 CSIRT and joint Security Operations Task Force with an accent on digital forensics, threat detection, and incident remediation. Focus on analyzing host and network artifacts, investigating malware and phishing threats, mitigating vulnerabilities, and producing technical DFIR reports for technical and executive audiences.
Location: Irvine, California, United States; hybrid schedule with 3 days onsite and 2 days remote. Occasional after-hours and weekend on-call shifts may be required.
Company
provides an open cybersecurity platform using artificial intelligence, automation, and analytics to protect organizations from advanced threats.
What you will do
- Monitor customer environments and respond to security incidents in a 24x7x365 CSIRT and joint Security Operations Task Force.
- Investigate and remediate endpoint malware infections, phishing, spam, and other email-borne threats.
- Conduct host and network forensics, analyze system artifacts, and identify indicators of compromise.
- Identify vulnerabilities, apply compensating controls, and mitigate security violations and their impact.
- Prepare technical DFIR reports, end-of-engagement reports, executive summaries, architecture designs, and security guidance.
- Support project estimation, proposals, invoicing, consulting opportunities, client presentations, and peer mentoring.
Requirements
- 3–4 years of information security experience, including operational security monitoring or incident response.
- Bachelor’s degree in computer science, information technology, cybersecurity, or a related technical field.
- Experience with ePO, ENS, Detection & Response/Active Response, ATD, TIE, DXL, DLP, SIEM, XDR, and Email Gateway ATP.
- Knowledge of network and host forensics, threat hunting, MITRE ATT&CK, TCP/IP, packet analysis, Syslog, and operating-system logs.
- Familiarity with Windows, Mac, and Linux administration, application hardening, VMware or Nutanix, and AWS or Azure.
- Strong client-facing communication, Microsoft Office skills, and the ability to manage multiple priorities independently.
Nice to have
- Strong Linux and Python skills.
- Experience with PowerShell, Perl, Go, C#, or shell scripting.
- Technical degree or diploma in computer science, information technology, or a related cyber field.
Culture & Benefits
- Flexible work hours and a collaborative workforce focused on inclusion and diverse experiences.
- Retirement plans.
- Medical, dental, and vision coverage.
- Paid time off and paid parental leave.
- Support for community involvement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Sr. Staff Security Analyst - Incident Commander (Cybersecurity)
145 600 - 209 300$
7 дней назад
Security Operations Center (SOC) Lead - L3 (Cybersecurity)
5 дней назад
Incident Response Analyst (Cybersecurity)
140 000 - 160 000$
8 дней назад
Manager / Sr. Manager, SecOps & Cyber Defense
185 000 - 235 000$
7 дней назад
Senior Detection and Response Engineer
200 000 - 240 000$
8 дней назад