Apply

Cyber Security Analyst

Posted about 6 hours agoViewed

View full description

πŸ’Ž Seniority level: Junior, 1 to 3 years

πŸ“ Location: Argentina

πŸ” Industry: Cyber Security

🏒 Company: Netrix GlobalπŸ‘₯ 501-1000InternetInformation TechnologyTelecommunications

πŸ—£οΈ Languages: English

⏳ Experience: 1 to 3 years

πŸͺ„ Skills: CybersecurityElasticSearchLinuxJSONScripting

Requirements:
  • Working knowledge of the TCP/IP suite of protocols
  • Use Elastic SIEM to monitor security events and logs across the network, endpoints, and cloud environments
  • Identify and analyze security threats, vulnerabilities, and anomalies in real-time
  • Investigate security incidents, including malware infections, phishing attacks, and unauthorized access attempts
  • Perform initial triage and classification of security incidents
  • Perform log analysis and correlate security events from multiple sources (e.g., firewalls, IDS/IPS, web servers) to identify potential threats or breaches
  • Create and tune detection rules and alerts in Elastic SIEM to improve accuracy and reduce false positives
  • Integrate external threat data (e.g., Indicators of Compromise - IOCs, TTPs) into Elastic SIEM
Responsibilities:
  • Use Elastic SIEM to monitor security events and logs across the network, endpoints, and cloud environments.
  • Identify and analyze security threats, vulnerabilities, and anomalies in real-time, including possible malicious activity, intrusions, and policy violations.
  • Investigate security incidents, including malware infections, phishing attacks, and unauthorized access attempts.
  • Perform initial triage and classification of security incidents.
  • Support the incident response process by gathering relevant data, escalating threats when necessary, and assisting in the remediation and containment of incidents.
  • Maintain a detailed incident report with findings, actions taken, and recommendations for future prevention.
  • Perform log analysis and correlate security events from multiple sources (e.g., firewalls, IDS/IPS, web servers) to identify potential threats or breaches.
  • Create and tune detection rules and alerts in Elastic SIEM to improve accuracy and reduce false positives.
  • Collaborate with threat intelligence teams to integrate external threat data (e.g., Indicators of Compromise - IOCs, TTPs) into Elastic SIEM for enhanced detection capabilities.
  • Document incidents, findings, and lessons learned to improve future detection capabilities and response protocols.
  • Assist in producing periodic security reports and metrics to communicate the effectiveness of threat detection efforts to management.
  • Work closely with other teams (e.g., IT, Security Operations, SOC) to ensure a coordinated approach to threat detection and response.
  • Contribute to security awareness by sharing insights and recommendations for improving overall security posture.
Apply

Related Jobs

Apply

πŸ“ Argentina

🧭 Full-Time

πŸ” Cybersecurity

🏒 Company: SenseOnπŸ‘₯ 51-100πŸ’° $20,000,000 Series A over 3 years agoArtificial Intelligence (AI)Machine LearningInformation TechnologyCyber SecuritySoftware

  • 1 - 3 years experience in cybersecurity
  • Understanding of networking infrastructure and protocols
  • Experience with SIEM, MDR, EDR, and vulnerability management tools
  • Proficient in SQL
  • Strong knowledge of MITRE ATT&CK and D3FEND frameworks
  • Knowledge of OS fundamentals and security hardening
  • Confident in making security configuration changes
  • Strong customer-facing experience in English
  • Respond to and triage security alerts
  • Analyze logs and security events
  • Handle security incidents and incident management
  • Generate customer-facing security reports
  • Perform proactive threat hunting
  • Assist in threat detection analytics
  • Conduct quality checks for junior analysts
  • Implement new processes for improvement
  • Provide customer training on the SenseOn platform

SQLCybersecurity

Posted about 1 month ago
Apply
Apply

πŸ“ Argentina

πŸ” Cybersecurity

🏒 Company: Intuition Machines, Inc.πŸ‘₯ 51-100InternetEducationInternet of ThingsMachine LearningSoftware

  • Exposure to web and API security, coding standards, WAFs, advanced persistent threat actors, botnets (off the shelf and custom), and attack mitigation.
  • Hands-on SQL proficiency is a must-have.
  • Knowledge of managing, securing, and preparing production web environments with tools like Kubernetes.
  • Familiar with Threat Hunting - Web/API, web hacking, web data analysis, or WAF hands-on experience.
  • In-depth knowledge of the web technology and web application security field.
  • Deep understanding of the cybersecurity threat landscape and the attacker mindset.
  • Experience in scripting and programming (JavaScript, Python, etc.).
  • Interest in keeping up with industry trends and market demands to recommend product enhancements and new sources of intelligence.
  • Demonstrated interest in working with data and metrics as applied to security.
  • Be a great collaborator and communicator, stay curious and enjoy innovating.
  • Monitor, identify and analyze events from various sources to spot threats and respond with urgency.
  • Collaborate with globally distributed teams to accomplish tasks.
  • Assist in collecting metrics to measure the efficiency of Security Operations functions.
  • Audit the effectiveness of security measures to ensure systems meet compliance norms.
  • Assist in implementing security policies and procedures.
  • Fine-tune processes and update standard operating procedures for the team.
  • Participate in incident investigations and threat hunting engagements.
  • Work closely with internal teams such as Product and Customer Success.

PythonSQLCybersecurityData AnalysisJavascriptKubernetesScripting

Posted 6 months ago
Apply