Source description
About the role
Deep technical understanding of wired and wireless network protocols and traffic analysis, and Windows and Linux based hosts.
5+ years experience in intrusion detection, threat hunting, offensive security, or adversary emulation.
Intimate familiarity with MITRE ATT&CK and/or D3FEND Frameworks.
Experience developing detection use cases using a SIEM (e.g Splunk, Elastic), big data/data lake query platforms (e.g. Apache Spark), or relational database.
Programming experience with at least one modern language (e.g. Python, Go, Rust).
Experience with embedded Windows and Linux variants a plus.
Experience with industrial, operational, or fulfillment environments a plus.
Experience with remediation or incident response also a plus.
More at Galvanick