IT SECURITY ASSOCIATE
Uses security monitoring tools to review and investigate data
security incidents and recommends appropriate corrective actions.
• Handle Tier 1 level alerts in ArcSight/Splunk via the standard work processes and escalate to Tier 2 teams where applicable.
•
Correlate and analyze events using Splunk and ArcSight Security
Information and Event Management (SIEM) tool to detect IT security
incidents.
• Independently follow detailed operational
process and procedures to appropriately analyze, escalate, and assist in
remediation of critical information security incidents.
• Triage phishing emails and escalate potential real phishing email to Tier2 team.
• Triage of SIRT and SOC email mailboxes and route sensitive alerts/questions to Tier2 team for immediate handling
Primary
on call in rotation with other Cyber Threat Center Analysts to cover
night and weekend escalation as needed - 10-7 PM ET (9-6 PM CT) shift
• Junior Level resource looking to start a career in IT Information Security.
•
Must have a good foundational knowledge of Computer IT and Networking
with 1-2 Years of professional IT experience or a bachelor’s degree in
computer related field. (Recent college grads with IT related degrees will also be considered.)
• Skilled and proficient in problem solving, with an aptitude to learn new technologies.
• Experience in Security aspects of multiple platforms, operating systems, software, communications and network protocols.
• Strong interpersonal and team skills.
Preferred Skills:
• 1-2 years of information security related experience
•
1-2 years’ experience of one of the following: -Network operations or
engineering or System administration on Unix, Linux, or Windows
• 1-2 years’ experience of network and host security technologies and products (such as Firewalls, Network IDS, scanners)
Tools: ArcSight/Splunk (Not mandatory; Training will be provided if needed)
$25/hr
6 MONTHS