Requirements
· 8+ years of experience in Security Operations monitoring.
· Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (preferred)
· Experience with Security Operations processes, procedures, and services.
· Experience working with cyber security tools and software such as Sentinel, Splunk, ATP, Symantec End Point, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets.
· Advanced knowledge of network monitoring and network exploitation techniques.
· Strong technical background in security, network, infrastructure, cloud, applications.
· Knowledge of risk assessment tools, technologies and methods.
· Experience with common attack vectors, including advanced adversaries (nation state/financial motivation).
· Knowledge around common web application attacks including SQL injection, cross-site scripting, invalid inputs, and forceful browsing.
· Knowledge of how common protocols and applications work at the network level, including DNS, HTTP, and SMB.
· Experience working with cyber security tools and software such as Splunk, ATP, Symantec Endpoint, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets.
· Technical certifications such as GCIA, GCFA, GCIH or CASP is a plus.
· Tines (or other automation) experience is highly valued
· Proficient with Microsoft Office & documentation skills (Word, Excel, PowerPoint)