Source description
About the role
BS in Incident Management, Operations Management, Cybersecurity, or related degree. HS Diploma with 7-9 incident management or cyber security experience 5+ years of directly relevant experience in cyber incident management or cybersecurity operations Knowledge of incident response, threat hunting, and handling methodologies Ability to track multiple active engagements, personnel or equipment deployments, as well as coordinate with internal and external stakeholders. Knowledge of the NCCIC National Cyber Incident Scoring System to be able to prioritize triaging of incidents Knowledge of general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.) Skill in recognizing threat actor campaigns, tactics, techniques, and procedures Familiar with basic system and network administration, traffic analysis techniques, Computer Network Defense policies, procedures, and regulations Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non-nation-state sponsored], and third generation [nation-state sponsored]) Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return-oriented attacks, and malicious code) Excellent oral and written communication skills
More at ARSIEM
Related open roles
Network Based Systems Analyst III
United States · Onsite
Network Based Systems Analyst III
United States · Onsite
Security Specialist
Remote · United States
Incident Manager III
United States · Onsite
382 - Analytic Developer
United States · Onsite
378 - Information System Security Engineer
United States · Onsite
