Security Analyst / Engineer - Threat & Cortex XSIAM (Hybrid)
concepts: confidence intervals, MITRE, kill chain, C2, passive DNS, traffic light protocol, and collections bias...
concepts: confidence intervals, MITRE, kill chain, C2, passive DNS, traffic light protocol, and collections bias...
. · Performs platform tuning to improve performance, reduce noise, and align to MITRE ATT&CK and Zero Trust principles. 4... operations processes (triage, threat detection, incident response, threat modeling). · MITRE ATT&CK, NIST CSF, Zero Trust...
and frameworks (MITRE Attack Framework, CIS, etc.) Working knowledge in RegEx, Splunk search language, etc. Knowledge...
frameworks and standards (NIST, ISO 27001, CIS, MITRE ATT&CK). Preferred: Certifications such as CISSP, CEH, GSEC...
Apps) Azure Security Center/Defender for Cloud Threat Hunting Methodology: Solid understanding of MITRE ATT&CK...
environments. Familiar with industry security regulations and frameworks (MITRE Attack Framework, CIS, etc.) Working knowledge...
operational threat environments, and associated attacks (MITRE ATT&CK framework) Knowledgeable of network security monitoring...
knowledge of Splunk (or other SIEM’s) Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK...