- Detect, respond, and report on cyber threats/incidents that may impact the environment using security tools such as a SIEM, IDS/IPS, EDR, firewalls, and more
- Conduct host-based forensics, event analysis, and lead triage of critical security incidents
- Proactively search for Indicators of Compromise (IOC) and Advanced Cyber Threat tactics, techniques, and procedures (TTP)
- Lead development of threat detection signatures, analytics, and correlation rules
- Support and/or lead incident response activities to include host based forensics and containment
- Assist security engineers with automation efforts to simplify processes
- Oversee and monitor routine security administration
Qualifications
- 7+ years of experience in information security
- 7+ years of experience in security monitoring and/or digital forensics, incident response
- 5+ years of experience with threat detection and/or threat hunting
- Strong written and verbal communication
- Industry security certifications, such as GCIA/GCIH/GCFA, Security+, or related
- Bonus: Experience with cloud technologies such as AWS, GCP, and/or Azure
- Bonus: Experience in Cyber Fraud analysis, tactics and techniques
- Bonus: Experience in responding to Advanced Persistent Threats (APTs)
- Bonus: Experience in digital forensics or malware analysis
- Bonus: Experience in scripting (Bash, Python, and/or Ruby)
Vision: To be the world's leading digital identity network empowering people to control their own information and to prove their credentials across all channels: online, call center, and in-person.
Mission: To make the world a more trusted place by delivering the highest level of security with the least amount of friction at the lowest possible cost.