Associate Security Analyst
Bitdefender Associate Security Analyst
Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumer, enterprise, and government environments, Bitdefender is one of the industry’s most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling cyber resilience. With deep investments in research and development, Bitdefender Labs discovers hundreds of new threats each minute and validates billions of threat queries daily. The company has pioneered breakthrough innovations in antimalware, IoT security, behavioral analytics, and artificial intelligence and its technology is licensed by more than 180 of the world’s most recognized technology brands. Founded in 2001, Bitdefender has customers in 170+ countries with offices around the world. For more information, visit https://www.bitdefender.com
Associate Security Analyst - Managed Detection and Response
Our mission at Bitdefender is to reduce risk to customers’ business to allow them to achieve their objectives. We are focused on delivering real security value for an affordable price – no snake oil. To help in this mission, we are looking for an Associate Security Analyst.
About Us
The Managed Detection & Response service is a new line of business (think division, business unit, etc). We are an experienced team having built successful Managed Security offerings in the past and staffed by a multitude of cybersecurity organizations and veteran cyber-warfare operators from the military and intelligence services. We all got into this business to provide security services that make customers safer. We must make some money to do that, but our primary goal is to provide services that secure, not just ones that sell.
Our team has been around the block together and operate in a 24x7 environment where we manage emergency situations for customers. For this to work, we must trust each other. As a leadership team, we focus on building that trust through accountability, processes and personal relationships. We have plenty of experienced team members with and without families and understand that not all teams can be built outside of work, but we focus on teamwork to build authentic and meaningful engagement.
About the Role
- Under supervision perform real-time monitoring and analysis of security events from multiple sources including both host and network telemetry
- Triage security events to determine priority and severity
- Proactively review customers environments searching for anomalous behavior using the cyber kill chain, cyber intelligence, and investigative techniques
- This will be Monday - Friday normal shift hours.
About you
Be familiar with and able to articulate when discussing the following:
- Cybersecurity principles
- Cyber threats and vulnerabilities
- Current incident response methodologies
- Current cyber investigative techniques
- Current cyber threat trends
- Computer networking concepts and protocols, and network security methodologies
- Knowledge of basic physical computer components and architectures, including the functions of various components and peripherals (e.g., CPUs, NICs, HDDs)
- Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security
- Basic system administration, network, and operating system hardening techniques
- Identifying, modifying, and manipulating applicable system components within Windows, Unix, or Linux (e.g., passwords, user accounts, files)
- Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings)
- Defense-in-depth principles and practices (e.g., defense-in-multiple places, layered defenses, security robustness)
- Virtualization and cloud computing
- Knowledge of which system files (e.g., log files, registry files, configuration files) contain relevant information and where to find those system files
- Hacking methodologies
- Networking protocols (e.g., TCP/IP), services (e.g., web, mail, DNS), and how they interact to provide network communications
- Knowledge of encryption algorithms (e.g., Internet Protocol Security [IPSEC], Advanced Encryption Standard [AES], Generic Routing Encapsulation [GRE], Internet Key Exchange [IKE], Message Digest Algorithm [MD5], Secure Hash Algorithm [SHA]) and how they are used
- How to perform packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump)
- Security Information and Event Management (SIEM) tools - Searching, aggregating, and correlating data
- Web Application Firewall (WAF)
- Regular Expressions (Regex)
#LI-SA1
#LI-AP
As published by greenhouse
First Name, Last Name, Email, Phone, Resume/CV, Cover Letter, Location
- Preferred First Name
- Are you legally authorized to work in the country where the role is based at? choose one
- What are your net salary expectations for this role (in local currency)? optional
- For the purpose of this recruitment process for a position within Bitdefender, you agree that the personal data that you provide (including special categories of personal data, where necessary) can be processed by Bitdefender . Additionally, you agree that, for this purpose, your data can also be transferred to Bitdefender’s Processors and Subprocessors, if the reason of the transfer is relevant for your application; this includes the processing by service providers in countries outside the EU / the EEA. Further details regarding the handling of your personal data specified in the Bitdefender Data Protection Information Policy for Candidates are available here. We would also like to let you know that you may withdraw your consent at any time in your applicant profile or by reaching out to Bitdefender via email at privacy@bitdefender.com. Any legal provisions, which might allow the processing of your data despite a withdrawal of consent, remain unaffected. Proceeding with the recruitment process expresses your agreement to those terms&conditions. choose one