Home

Need For Threat Detection Engineer// San Antonio, TX or Remote at San Antonio, Texas, USA
Email: [email protected]
Hi,

Hope you are doing well,

We are looking for Threat Detection Engineer at San Antonio, TX or Remote
The client is TCS. Please confirm if you are interested.

Position -

Threat Detection Engineer

Location San Antonio, TX or Remote

Exp.      + yrs

Contract 

Ro
les & Responsibilities

Technical knowledge to write & develop rules for CIRT analysis, experience on ELK stack, Fireeye HX, Sysmon, Winlogbeat, CI-CD pipeline.

             Deep understanding of cyber threat actor attacker techniques and tools (such as malware, common attack types) including evasion techniques, reconnaissance, scanning, exploitation, evasion,
lateral movement, persistence, and exploits), proficient with MITRE ATT&CK

             Deep understanding of security operations center processes, tools, and data for analysis & control mitigations, security event timeline analysis and baselining with experience in the analysis
of logs and data for the development and implementation of custom detections to counter attacker techniques, known vulnerabilities and evasion methods

             Security architecture (network topology, firewalls, proxies, web content filtering, wireless, EDR, IDS, IPS, SIEM, SOAR, etc.)

             Network data sources (full packet analysis, flow data, dns logs, proxy logs, NIDS, etc.)

             Knowledge and experience with common scripting languages and tools Python, PowerShell, Bash, YAML

             Deep knowledge of compound logical operations (AND, OR, NOT), regular expressions

             Experience extracting data from logs, SQL, and APIs

             Knowledge and experience with tools used to build threat detections (Elastalert, Logstash, Kibana (ELK), Fireeye HX, Sysmon, Winlogbeat, Linux Auditd)

             Deep understanding and experience with Operating Systems Including: Administration, configuration, registry, processes (Windows, Mac, and Linux)

             Experience in red team/blue team/incident responder interactions

             Understanding of CI/CD pipelines

             Experience with source control tools (Git)

ELK stack, Fireeye HX, Sysmon, Winlogbeat

Develop Use cases for Threats, Python, Bash scripting

Please respond with

Consultant's Full Name:

Phone:

Email:

Expected Rate on C2C or W2:

Total Experience:

Visa Status:

DOB(MM/DD):

Linkedin:

Current Location:

Regards

Shivam Singh | US IT Recruiter

Desk: 919-706-0119

[email protected]

--

Keywords: continuous integration continuous deployment materials management information technology wtwo Texas
[email protected]
View all
Sat Aug 12 05:59:00 UTC 2023

To remove this job post send "job_kill 520971" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]
Time Taken: 9

Location: San Antonio, Texas