המקום בו המומחים והחברות הטובות ביותר נפגשים
U.S. Bank is seeking anInformation Security Analysttoutilize security tools to monitor the U.S. Bancorp network to identify, analyze and respond to cyber security alerts to determine whether a security incident has occurred.
RESPONSIBILITIES
Remediate serious attacks escalated from Tier 1
Perform in-depth triage of security incidents
Assist with the development of incident response plans, workflows, and SOPs
Assist with the development of automation playbooks
Work with cyber intelligence analysts to convert intelligence into useful detection
Collaborate with detection team to build and/or tune detection rules and signatures as needed
Identify root cause and implement proactive/mitigation steps
Develop and implement detection use cases
Assist Cyber Security Incident Response (CSIRT) Team with response efforts if/when needed
Track and report on security metrics
Utilize IDS, SIEM, SOAR, Endpoint Detection & Response, etc. to monitor the network of USB
Identify, analyze, and respond to security incidents
Research security events and incidents to provide details and recommendations
Follow standard operating procedures (SOPs) to perform internal and external escalations
Review incidents to assess their urgency and escalate if necessary
EXPERIENCE SHOULD INCLUDE
Common ports and services
IPv4 and IPv6 basic packet structure
HTTP methods (GET/POST)
DNS resolution
SSL/TLS
Common malware strategies (recon, exploit, callback)
Types of Security Threats
MITRE ATT&CK Framework
2 Years I.T. experience (System Administration, Network Administration, Pen Tester, Security Administrator, etc.)
Fundamental networking, TCP/IP understanding
Strong analytical skills
1st/2nd shift flexibility
Strong written and verbal English communication skills
Advanced Threat Actors
Lateral Movement
Root causes & Attack vectors
SIEM Platforms
SOAR Technologies
Scripting Languages (Python, PowerShell, etc.)
PREFERRED QUALIFICATIONS
Bachelor’s Degree
At least one Industry accepted security certification.
5+ years of total IT related experience
2+ years’ experience working in a Security Operations Center
משרות נוספות שיכולות לעניין אותך