Cyber Intrusion Analyst I

AsurionSmyrna, GA
1d

About The Position

Responsibilities: Operates and monitors network intrusion detection and prevention sensors and other information security monitoring infrastructure. Collects, assesses, and reports upon relevant threat intelligence / actionable security information and appropriately modifies tactical operations. Performs analysis and response to Tier I security relevant alerts and events. Assesses network traffic patterns and session data for indicators of malicious activity with assistance. Plays a strong supporting role in prompt and effective response to information security incidents. Performs operational assessment, prioritization, and remediation of enterprise vulnerabilities and exposures. Generates, edits, and delivers reports derived from security tools and Security Operations activities. Support of forensic investigations and penetration testing activity. Supports the automation and improvement of the overall cloud security posture at Asurion. Assists with executing remediation plans for any gaps reported in audits or recommended process improvements that effect core information security services. Updates job knowledge by tracking and understanding emerging security practices and standards; participating in educational opportunities; reading professional publications; maintaining professional networks; participating in professional organizations. Performs other related duties as assigned. Requirements: BA or BS in Computer Science, Management Information Systems, or related field desirable, practical experience plus education and certifications may be considered. MS in Computer Science, Information Systems, or a related field, desired. One or more years of progressive experience in computing and information security, including experience with Internet technology, security technology, issue resolution and leading teams in a cross functional, global setting. GSEC, GCIA, GCIH, GCFA, or other security related certifications desired. Basic understanding of core network protocols (TCP/IP, ICMP, DHCP, DNS, etc) Familiarity needed with several key security technologies: SEIM Tools (Splunk, ArcSight, LogLogic), Network Intrusion Detection / Prevention Tools (TippingPoint, SourceFire, Snort, CheckPoint IPS blades, NetWitness, MIR) DLP packages (Symantec Vontu), Host IDS, AV & endpoint management, network anti-malware (FireEye, Palo Alto), Forensic tools (EnCase, FTK, etc). Familiarity with common OOP languages desirable (Python, Java, C#, etc.) Strong analytical and problem solving skills are necessary. The ability to operate under ambiguous circumstances, address uncomfortable issues and leverage data to make informed decisions. Excellent communication (oral, written, presentation), interpersonal and consultative skills are required. This position requires some weekend and evening assignments as well as availability during off-hours for participation in scheduled and unscheduled activities. For two decades, Asurion has led the technology protection industry around the globe. The Company provides premier support solutions to enable optimum use of technology; digital applications to protect their privacy and provide security; and rapid replacement of lost, stolen, damaged or malfunctioning devices. Asurion partners with the leading wireless companies, retailers and service providers enabling them to focus on their businesses and to provide services that delight their customers. Asurion's 16,000+ employees worldwide specialize in fulfilling the needs of more than 280 million consumers. We value open source technologies, solve challenging and unique problems, and innovate quickly. We embrace continuous delivery and Lean Startup principles. We encourage creativity from our architects and engineers every step of the way, working with various teams including product, user experience, call center operations, mobile and systems. Our teams are small enough to make fast decisions, yet our audience is large enough that our work makes a tremendous impact. Use this site to view the status of applications you’ve submitted and to take action on important tasks related to those applications. Asurion is a global tech solutions industry leader that creates a work culture where employees are valued, regardless of their level or position. Our products and services help nearly 300 million customers worldwide. The Asurion Way informs our values as colleagues and emphasizes that how we work matters just as much as the work itself. Here’s how we practice the Asurion Way: Customer First We provide our customers with excellent service through empathetic, helpful, and simple interactions. Our first step? To listen. One Team We believe that our success depends on collaborating, staying humble, and embracing diverse viewpoints. Divine Discontent We're not afraid to roll up our sleeves and do more. We start small, scale with success, and tap into our full potential to deliver the best products and services. Act with Integrity We take ownership and pride in the work we do. We build trust-based relationships and do what's right-even when no one is looking. Asurion is an equal opportunity employer. We hire the best available person for the job regardless of marital status, sex, gender orientation, age, religious belief, race, nationality and ethnic origin, color, or disability.

Requirements

  • BA or BS in Computer Science, Management Information Systems, or related field desirable, practical experience plus education and certifications may be considered.
  • One or more years of progressive experience in computing and information security, including experience with Internet technology, security technology, issue resolution and leading teams in a cross functional, global setting.
  • GSEC, GCIA, GCIH, GCFA, or other security related certifications desired.
  • Basic understanding of core network protocols (TCP/IP, ICMP, DHCP, DNS, etc)
  • Familiarity needed with several key security technologies: SEIM Tools (Splunk, ArcSight, LogLogic), Network Intrusion Detection / Prevention Tools (TippingPoint, SourceFire, Snort, CheckPoint IPS blades, NetWitness, MIR) DLP packages (Symantec Vontu), Host IDS, AV & endpoint management, network anti-malware (FireEye, Palo Alto), Forensic tools (EnCase, FTK, etc).
  • Familiarity with common OOP languages desirable (Python, Java, C#, etc.)
  • Strong analytical and problem solving skills are necessary.
  • The ability to operate under ambiguous circumstances, address uncomfortable issues and leverage data to make informed decisions.
  • Excellent communication (oral, written, presentation), interpersonal and consultative skills are required.
  • This position requires some weekend and evening assignments as well as availability during off-hours for participation in scheduled and unscheduled activities.

Nice To Haves

  • MS in Computer Science, Information Systems, or a related field, desired.

Responsibilities

  • Operates and monitors network intrusion detection and prevention sensors and other information security monitoring infrastructure.
  • Collects, assesses, and reports upon relevant threat intelligence / actionable security information and appropriately modifies tactical operations.
  • Performs analysis and response to Tier I security relevant alerts and events.
  • Assesses network traffic patterns and session data for indicators of malicious activity with assistance.
  • Plays a strong supporting role in prompt and effective response to information security incidents.
  • Performs operational assessment, prioritization, and remediation of enterprise vulnerabilities and exposures.
  • Generates, edits, and delivers reports derived from security tools and Security Operations activities.
  • Support of forensic investigations and penetration testing activity.
  • Supports the automation and improvement of the overall cloud security posture at Asurion.
  • Assists with executing remediation plans for any gaps reported in audits or recommended process improvements that effect core information security services.
  • Updates job knowledge by tracking and understanding emerging security practices and standards; participating in educational opportunities; reading professional publications; maintaining professional networks; participating in professional organizations.
  • Performs other related duties as assigned.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service