• United States Of America, Usa
  • Save Job
  • 1 - 3 Years
  • Posted : above 1 month

Job Description:

An experienced Threat Operations Hunter performs intelligence-driven network defense supporting the monitoring and incident response capabilities The role involves analysis of large amounts of data from vendors and internal sources, including various indicator feeds, Splunk, and several threat intelligence tools, etc Threat Hunters perform the functions of threat operations and hunting and serve as the liaison for Threat Intelligence in the Security Operations Center, and mentor the incident handling, incident response, and forensics teams

Job Responsibilities

Enhancing the Security Operations and Threat Intelligence workflow by redesigning process and approach to operationalize the sharing and utilization of actionable intelligence and indicators
Assist in identifying (hunting) and profiling threat actors and TTPs
Custom tool design to assist in analysis and investigation (Related experience in programming, database, system administration, etc)
Implementing integration/orchestration of existing security infrastructure and indicators
Design and run custom analysis models on (centralized) security event information to discover active threats, including collaboration on the development of use cases when appropriate
Perform as an Information Security SME in the following areas Threat Intelligence
Incident Response
Log analysis (statistical modeling, correlation, pattern recognition, etc)
Microsoft platform (Server, workstation, applications)
Open Systems platforms (Linux, UNIX, VM Ware ESX)
Web Application
Networking (firewalls, IDS/IPS, packet capture)
Databases (Oracle, SQL Server, DB2, IMS)
and others

Providing mentorship and support to teammates with regard to Threat Intelligence, communication/rapport with other divisions and various levels of leadership, technical expertise, and career development
Capable of identifying need & driving solutions, and providing guidance, in an autonomous manner

Primary Skills

Degree and/or certifications in Engineering, Computers Science, or related field
X years overall technical experience in either threat intelligence, incident response, security operations, or related information security field
X years experience in application design/engineering, including but not limited to programming/scripting, Windows/Linux system administration, RDBMS/NoSQL database administration, etc
X years experience in penetration testing, ethical hacking, exploit writing, and vulnerability management
Deep understanding of common network and application stack protocols, including but not limited to TCP/IP, SMTP, DNS, TLS, XML, HTTP, etc
Strong and recent experience with malware analysis and reverse engineering
Advanced experience with security operations tools, including but not limited to SIEM (eg Splunk, Arc Sight)
Indicator management (eg ThreatConnect)
Link/relationship analysis (eg Maltego, IBM i2 Analyst Notebook)
Signature development/management (eg Snort rules, Yara rules)

Broad experience with various common security infrastructure tools (NIDS, HIPS, EDR, etc)
Excellent analytical and problem solving skills, a passion for research and puzzle-solving
Expert understanding of large, complex corporate network environments
Strong communication (oral, written, presentation), interpersonal and consultative skills, especially in regard to white papers, briefs, and presentations
Good organization and documentation skills
Leadership and mentorship skills


Six to Eight Years

Shift Timing

0800Am IST to 0900PM IST any shift

Profile Summary:

Employment Type : Full Time
Eligibility : Any Graduate
Industry : Financial Services/Stockbroking, Banking
Functional Area : IT Software : Software Products & Services
Role : Software Engineer
Salary : As per Industry Standards
Deadline : 07th Apr 2020

Key Skills:

Would you like to try out these free online tutorials?

People who search this job also searched for the following Keywords

Salary trends based on over 1 crore profiles

View Salaries

All rights reserved © 2018 Wisdom IT Services India Pvt. Ltd DMCA.com Protection Status