About the Role
As part of the Behavox Cyber Security team the Security Incident Response Analyst will monitor, detect, analyze, and mitigate cyber security incidents.
The role requires a highly talented individual who is willing to demonstrate strong problem-solving skills, has experience in various investigation toolsets and best practices, is able to think critically, and can allow for flexible scheduling.
This role will act as an appointed leader of the Incident Response Team (IRT) for the duration of the incident being responded to.
This is a great opportunity for the right talented individual to :
1. Improve and optimization of SIEM security events working on a team dedicated to extraordinary Cyber Security standards.
2. Use modern IR approaches and frameworks (e.g. MITRE ATT&CK and Threat Intelligence).
3. Learn and manage our EDR (Endpoint Detection and Response) platform.
What You'll Bring
- A deep and genuine interest in Behavox as demonstrated by a connection to its mission, marketplace and / or technologies.
- 2+ years of working experience in cyber security incident response, managing threat intelligence strategy, monitoring of cloud infrastructure and web application security.
- Experience working with Endpoint Detection and Response (EDR) tools, Intrusion Detection Systems, Firewalls, Vulnerability Assessment tools.
- Experience working with Security Information and Event Management (SEIM) solutions with Security-related designations e.
g. GCIH / CCFP preferred.
Background in hands-on computer and networking experience to include an understanding of TCP / IP, routing, and major Internet protocols.
What You'll Do
- Respond to security incidents using SIEM systems and / or IDS monitoring to contain, eradicate and report on them.
- Design and / or improve on Incident Response capabilities that positively impact risk assessmnet and planning.
- Implement Incident Response capabilities utilizing EDR or other relevant technologies that deliver efficiencies in incident handling.
- Document Incident Response processes through the development of Playbooks and / or Runbooks to provide continuous improvement.
- Write Incident Reports that incorporate recommendations and directives to create iterative feedback loops.
What We Offer
- A truly global mission with a passionate highly talented community in locations all over the World.
- The ability to have significant impact and potential for learning as our aspirations require bold innovation.
- A highly competitive cash compensation package with performance bonuses baked into salary payments .
- A flexible work schedule that allows for Remote or Hybrid work as appropriate to the role and location.
- A very generous time-off policy (30 days annually), with public holidays for your geography in addition.