8 часов назад
Offensive Security Analyst
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Offensive Security Analyst (Threat Hunting and Incident Response): Conducting hypothesis-based threat hunts, investigating cyber anomalies, and responding to major incidents with an accent on SIEM, EDR, malware analysis, and computer forensics. Focus on developing detection logic, analyzing compromised systems, and supporting mitigation, remediation, and post-incident reviews.
Location: Performance Hub, K136, India
Company
is an employer offering a cybersecurity role focused on threat detection, investigation, and incident response.
What you will do
- Plan, conduct, and document iterative, hypothesis-based threat hunts.
- Analyze SIEM alerts, anomalies, and data from compromised systems to identify threat activity.
- Develop custom searches and detection logic based on hunt findings.
- Track cybersecurity incidents from detection through resolution and support major-incident mitigation, remediation, and post-incident reviews.
- Provide computer forensic support, including evidence seizure, forensic analysis, and data recovery.
- Conduct static and dynamic analysis of complex malware and produce hunt, detection, and incident reports.
Requirements
- 5–8 years of experience in cybersecurity threat hunting or incident response.
- Proficiency with threat-hunting methodologies, tools, and techniques.
- Advanced knowledge of SIEM systems and experience with EDR agents such as CrowdStrike.
- Experience with Microsoft Azure, Microsoft O365, and Microsoft Active Directory.
- Experience with IT service-management ticketing systems; ServiceNow is preferred.
- High school diploma or GED required; a related bachelor's degree and cybersecurity certifications such as GCIA, GSEC, GMON, or Security+ are preferred.
Culture & Benefits
- Full-time employment.
- Participation in daily Agile Scrum meetings and collaborative cybersecurity investigations.
- Equal opportunity employment with a commitment to a discrimination-free workplace.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →