Netwitness Senior Engineer - Remote at Idaho State Job Bank #vacancy #remote

Netwitness Senior Engineer – Remote at MindPoint Group in Boise, Idaho, United States Job Description Netwitness Senior Engineer – Remote Department: A&E Location: Text code NETW to to apply Since 2009, MindPoint Group has been the cybersecurity firm of choice for the most security-conscious US federal agencies and commercial enterprises. We’re proud to be one of Inc. 5000’s fastest-growing companies in the country. With several Best Places to Work awards under our belts, we have a diverse employee-focused culture, accessibility, and communication between all levels and departments, and over 4 stars in reviews on Glassdoor. Come be a part of what we’re building. We use our award-winning recruitment process to seek the most skilled, experienced, and driven information security consulting experts in the industry, while simultaneously empowering applicants to determine if MindPoint Group is the right fit for them. We are profoundly invested in selecting the right people to join our team and are equally driven to expand and develop careers long-term. With positions throughout the US, a role at MindPoint Group promises you: + An opportunity to work within one of the most diverse DC-based organizations + Generous tuition and professional development reimbursements + Mentorship opportunities with leaders focused on your growth + Competitive benefits like 401k matching, 11 federal holidays, etc. + And more Job Description This role is contingent upon award. The Senior Engineer Leverages in-depth industry knowledge of the business environment and various technical solutions to assist the customer in gaining market share and increasing operational efficiencies. Provides technical and consultative leadership for Consulting technical solutions opportunities on a range of complex projects, focused on a government client. Focuses on understanding the customer-s strategic, organizational and business challenges and offers solutions as they relate to the future business environment and operational objectives. What you get to do every day: + Work with customers to better enable their ability to hunt for and detect threats + Track threat actors and associated tactics, techniques, and procedures (TTPs) + Hunt for and identify threat actor groups and their techniques, tools, and processes + Provide input on cybersecurity best practices, especially as pertains to threat intel, threat hunting, and using/incorporating Network (NDR), Endpoint (EDR), and Log (SIEM) analysis. + Develop detection content and use cases within the NetWitness product for Network full packet capture, EDR, SOAR, and SIEM + Develop advanced queries and alerts to detect adversary actions + Develop dashboards and reports to identify potential threats, suspicious/anomalous activity, malware, etc. + Assess customer gaps in visibility and provide next-step recommendations + Assist customers to increase visibility and detection capability, working in synergy with incident response team members and providing expert advice about how to investigate potential attacks + Support with pre and post-sale opportunities to help demonstrate advanced usage of the NetWitness product suite and Threat Hunting techniques + Support internal teams for cross-training, collaboration, innovation, and subject matter expertise Perform research and develop techniques to identify and mitigate threats, staying abreast of emerging threats and developing creative solutions to solve customer issues + Deploy NetWitness into security-conscious environments and tune appropriately Qualifications US Citizenship, Public Trust Eligibility required What skills are required? + Bachelor’s degree or equivalent experience + Minimum eight (8) years of general experience and six (6) years of relevant experience in forensics + Experience configuring and deploying Netwitness + A passion for research, new ideas, and uncovering the unknown about internet threats and threat actors Expertise in at least one of the following: Network Forensics, Host-Based Forensics, Log Analysis Basic threat intel understanding and analysis UNIX/Linux expertise, Specifically CentOS Understanding of baselining, tuning, and reviewing alerts generated by detection + Excellent written/verbal communication and interpersonal skills + Applicable experience in a threat-hunting and/or incident-response role + An understanding and application of the MITRE ATT&CK framework Additional Information + All your information will be kept confidential according to EEO guidelines. + Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically $120-130k. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range. + Highlights of our benefits include Health/Dental/Vision, 401(k) match, Flexible Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, maternity/paternity leave, mobile phone stipend, pre-tax commuter benefits, the opportunity to participate in our mentorship program, and more + MindPoint is committed to maintaining a diverse environment. All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Job applicants that are interested in one of our openings and may require a reasonable accommodation to participate in the job application or interview process, should contact us to request an accommodation. Are you interested in a posted job opportunity but may not check all of the boxes for desired qualifications? If so, we encourage you to apply Our commitment to sustain and champion an inclusive and dynamic community of employees is a high priority Text code NETW to to apply To view full details and how to apply, please login or create a Job Seeker account

SIEM MITRE ATT&CK SOAR Endpoint Detection and Response (EDR)

Залишити відповідь