Technical Knowledge and Skills :
- Minimum of 5+ years of technical experience conducting security incident response and forensic analysis.
- Working experience of obtaining Cyber Threat Intelligence and making the information usable through the security incident process.
- Working experience of applying IOCs to identify threats in current environment and apply information to prevent future vulnerabilities in infrastructure.
- Technical security project management skills.
- Working experience using best practices standards and frameworks : ISO 27001 / 27002; PCI DSS v4, GLBA; HIPPA / HITECH; NIST 800-53; CIS CONTROLS, NIST CSF; CIS RAM.
Working Experience At A Minimum :
Hardware : Network Switches, Routers, Load Balancers, Servers, Storage Systems, End-User Systems, Mobile Devices, or other devices that enable the organization to complete its mission.Operating Systems : UNIX, LINUX, WINDOWS.Network : LAN WAN, Internet, Proxy / Filtering, Firewall, VPN, DMZNetwork Protocols : TCP / IP, SNMP, SMTP, NTP, DNS, LDAP, NFS, SAMBA, etc.Databases : Oracle, SQL, MYSQL.Cloud Platforms : IAAS, PAAS, SAAS.Security Concepts : Encryption, Hardening, etc.Security GRC.Forensic Analysis Tools.ctive Directory.Programming Languages are a plus.Computer Forensic experience a plus.Prior SIEM experience a plus.Malware analysis skills a plus.