Cyber Security Threat Hunter
Posted on: November 18, 2018
Position Details:Industry: Networking IndustryPosition: Cyber Security Threat HunterLocation: Englewood, CO- 80112Duration: 3 months contract to hire Job Description:? The focus of the Cyber Security Threat Hunter is to proactively investigate security events in an effort to identify artifacts of a cyber-attack. ? They will also be expected to participate in several different areas within Security Operations and Incident Response process; these activities can include digital forensics, use case development, security control testing, and hunt plan development. ? The Threat Hunter will use data analysis, threat intelligence, and cutting-edge security technologies. Working within the Security Analysis and Operations Team at Dish Network, the Cyber Security Threat Hunter is responsible for reviewing system log events and data packets to proactively detect advanced threats that evade traditional security solutions The Threat Analyst will ensure that new environments are identified and understood to enable accurate and actionable reporting for other tiers. ? Threat Hunters will also participate in developing processes, procedures, training, etc. for new technologies. The candidate must have a curious investigative mind, an interest in information security, and the ability to communicate complex ideas to varied audiencesResponsibilities:? Track threat actors, their tactics, techniques, and procedures (TTPs), and their associated Indicators of Compromise (IOCs)? Capture intelligence on threat actor TTPs/IOCs and coordinate with SecOps pods to develop countermeasures? Provide forensic analysis of network packet captures, DNS, proxy, Netflow, malware, host-based security and application logs, as well as logs from a variety of security sensors? Perform Root Cause Analysis of security incidents to develop enhancements to existing alerting tools? Compile detailed investigation and analysis reports for internal SecOps consumption and delivery to management? Assist in incident response activities such as host triage and retrieval, malware analysis, remote system analysis, end-user interviews, and remediation efforts? Develop advanced queries and alerts to detect adversary actionsQualifications:? 3+ years of experience in Information Security (Required)? 2+ years of experience with the incident response process, including detecting advanced adversaries, log analysis using SIEM, and malware triage (Required)? Experience with packet analysis and usage of deep packet inspection toolsets.? Knowledge and experience working with the Cyber Kill Chain Model, Diamond Model or MITER ATT&CK Matrix. (Required)? Familiarity with EDR/SOAR/Anomaly detection solutions? Prior experience working with in the following areas: (Desired)? Computer Incident Response Team (CIRT)? Computer Security Incident Response Center (CSIRC)? Security Operations Center (SOC)? Experience with APT/crimeware ecosystems (Desired)
Keywords: Collabera, Denver , Cyber Security Threat Hunter, Other , Englewood, Colorado
Didn't find what you're looking for? Search again!