Job Details

ID #5338302
Estado Georgia
Ciudad Atlanta
Tipo de trabajo Permanent
Salario USD TBD TBD
Fuente Apex Systems
Showed 2020-10-30
Fecha 2020-10-29
Fecha tope 2020-12-27
Categoría Seguridad
Crear un currículum vítae

Threat Analyst

Georgia, Atlanta, 30301 Atlanta USA

Vacancy caducado!

Threat Analyst Location: Atlanta, Ga Compensation: Commensurate with Experience MUST BE ABLE TO WORK SHIFTS WED - SAT 12-10pm Responsibilities

  • Take action on security events presented to Analyst via SIEM, user submissions, dashboards, etc.
  • Self-initiate hunting initiatives to discover potential breaches or undiscovered cyber threats
  • Remain abreast of emerging threat patterns and provide recommendations to detect threats
  • Assists with patching recommendations and workarounds for zero-day threats.
  • Coordinate mitigation or remediations task with stakeholders or supporting teams
  • Communicates with management on incident updates.
  • Monitors SIEM and analyzes security events to determine appropriate actions
  • Monitors emails containing links/attachments associated with potential phishing attempts to determine appropriate actions
  • Identify and tune false positives associated with current security events
  • Document analytical steps and findings associated with security event investigations
OR (for Senior Analyst all the above including)
  • Escalation resource for other Cyber Security Analyst
  • Represents Security Operations Center at internal/external meetings
  • Develop use cases to increase visibility across company threat landscape
  • Draft processes and procedures associated with daily operations
Qualifications Required for Cyber Security Analyst
  • 2 years IT security experience
  • Minimum 2 years of experience in performing analysis on Windows and LINUX/UNIX systems
  • Minimum 2 years of experience and/or familiarity in the following areas:
  • Network/Endpoint: analysis tools
  • Scripting languages
  • Windows/Unix command line utilities
  • Reputation analysis associated with IP's, Domains, Email Addresses
  • Ticketing Systems
  • Required to submit to a background examination.
  • Experience operating within a security application such as Kali, Metasploit, and etc.
(for Senior Analyst consideration) all the above qualifications including:
  • 2 years Security Operations Center experience
  • Exposure investigating security events associated with cloud applications
  • Developed and tuned use cases for alerting in a SIEM
  • Experience drafting Security Analyst procedures
  • Experience working with an Incident Response team during a Cyber Security event/incident
• Familiar with and have worked within Cyber Security Frameworks such as: o NIST 800 - 61 o Attack Life Cycle o SANS Security Controls o MITRE • SANS Security 500 Series or other industry standard equivalent • Experience with PCAP analysis • Experience investigating endpoint and network security events • Experience investigating user reported Phishing events (specifically investigating suspicious links and attachments) • Experience analyzing security events utilizing sandbox technology • Experience operating within a security application such as Kali, Metasploit, and etc. • Oral and written communication skills • Experience taking ownership of incidents from acknowledgement to resolution • Ability to identify and mitigate security events by recommending and/or implementing defensive/preventive strategies • Experience initiating security event investigations Preferred capabilities:
  • Oral and written communication skills
  • Ability to take ownership of incidents from acknowledgement to resolution
  • Ability to initiate security event investigations
  • Ability to comprehend and articulate business impact associated with security events
  • Interacting with vendors to support proof of concepts
  • Proficient in Microsoft Office products: Excel, Word, Outlook and etc.
  • Exposure, experience and/or knowledge of cloud technology
  • Familiar with NIST 800-61 and SANS Critical Security Controls
  • Ability to identify and mitigate security events by recommending and/or implementing defensive/preventive strategies
Desired certifications:
  • GIAC Security Essentials (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)
  • Security+
  • Other certifications within IT Security

EEO Employer Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department at or

Vacancy caducado!

Suscribir Reportar trabajo