Cyber Triage and Forensics (CTF) -
Your key responsibilities- Perform front line accurate and precise real-time monitoring and analysis correlation of logs/alerts from a multitude of security devices with a focus on the determination of what was said as events constitute security incidents.
- They will work multi-functionallyto detect and respond to information security incidents, develop, maintain, and follow procedures for security event alerting, and participate in security investigations.
- The CTF Analyst I must be competent to work at a technical level, be capable of identifying threats and vectors that cause security events and be able to follow defined procedures for mitigating said threats.
Skills and attributes for success- How to respond to network and host based security events
- Ability to participate in detecting, investigating, and resolving security events
- Capable of working independently
- Identify and propose areas for improvement within the Cyber Triage and Forensics
- Good interpersonal skills
To qualify for the role you must haveBachelors in Computer Science, Information Systems, Engineering or 2 - 3 years of related work experience.
Experience:
- Minimum of 1-2 years of experience in one or more of the following:
- Working in a Security Monitoring/Security Operations Center environment (SOC)
- Experience investigating security events, threats and/or vulnerabilities
- Demonstrate incident handling ability
- Demonstrate ability to analysis log output from various devices
- Understanding of electronic investigation and log correlationProficiency with the latest intrusion detection platforms; working knowledge of Windows systems administration (Including AD) and/or Linux.
Ideally, you’ll also have- Information Security Principles, Technologies, and Practices
- Proven experience with multiple security event detection platforms
- Thorough understanding of TCP/IP
- Demonstrated integrity in a professional environment
- Good social, communication and technical writing skills
- Comfortable navigating and troubleshooting Windows system issues
- Desired Certifications - SSCP,CEH, GCIH, GCFA, GCIA, GSEC,GIAC,GSOC, Security+
What we look forUnder limited supervision the CTF (Cyber Triage and Forensics) Analyst I will report to the US CTF Manager. The CTF Analyst I will perform tasks including monitoring, research, classification and analysis of security events that occur on the network or endpoint. The CTF Analyst I should have familiarity with the principles of network and endpoint security, current threat and attack trends, a basic understanding of the OSI model, and have a working knowledge of defense in depth strategies.
What we offer- Continuous learning:You will develop the mindset and skills to navigate whatever comes next.
- Success as defined by you:We will provide the tools and flexibility, so you can make a significant impact, your way.
- Transformative leadership:We will give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture:You will be accepted for who you are and empowered to use your voice to help others find theirs.