远程工作雷达

事件响应安全分析专员顾问 - 夜班 - 远程(临时)

Incident Response Security Analysis Specialist Advisor-Night Shift- Remote (Temp

开发工程职能支持限定地区(需当地身份)
公司NTT DATA
薪资未公开
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

Req ID:386961
NTT DATA 寻找具有卓越能力、创新精神和热情的个人,希望与我们共同成长。如果您希望加入一个包容、灵活且具有前瞻性的组织,请立即申请。
我们目前正寻求一名事件响应安全分析师顾问-夜班-远程办公,加入位于美国亚利桑那州坦佩(US-AZ)的团队。
职位简介:
主要职责

  • 对各种证据进行分析,确定入侵方法并制定最佳解决措施,同时推动安全改进
  • 具备扎实的事件响应知识和经验
  • 熟悉 Mac OS、Linux、Windows 操作系统及云环境的理论和实践知识
  • 具有安全数据收集、分析和关联的经验
  • 具备良好的分析、定性和定量推理能力
  • 具有出色的创造性解决问题的能力
  • 安全事件监控、调查及整体事件响应流程
  • 使用各种工具和技术,在多个环境中调查潜在的网络安全事件
  • 制定信息安全政策、标准和流程
  • 具备良好的时间管理能力,能够平衡多项任务,并在需要时指导初级分析师
  • 了解进攻性安全,包括常见的攻击方法
  • 了解如何在多个数据集之间切换,以关联证据来分析单一安全事件
  • 在产品安全和信息安全方面具备多样化技能,包括组织结构和管理实践、系统开发和维护流程、系统软硬件安全控制、访问控制、计算机操作、物理和环境控制以及备份和恢复流程
  • 熟悉安全和合规框架(CRI、ISO 27001、NIST 800 系列、FFIEC、SOC2、STAR 等)
  • 支持合规团队的查询,如 IT 风险管理和内部及外部审计师,确保文档完整,流程符合信息安全政策
  • 编写报告,分析组织内外的活动或趋势
  • 支持安全运营检测、预案和自动化开发,确保威胁检测、监控、响应和取证活动符合最佳实践,减少检测和响应中的漏洞,并提供全面的缓解方案
查看英文原文

Req ID:386961
NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.
We are currently seeking a Incident Response Security Analysis Specialist Advisor-Night Shift- Remote to join our team in Tempe, Arizona (US-AZ), United States (US).
Job Profile:
Major Responsibilities

  • Conduct analysis of artifacts to determine methods of intrusion and best course of resolution while driving security improvement
  • Strong Incident Response knowledge and experience
  • Theoretical and practical knowledge with Mac OS, Linux, Windows operating systems and clouds
  • Experience with security data collection, analysis and correlation
  • Well-developed analytic, qualitative, and quantitative reasoning skills
  • Demonstrated creative problem-solving abilities
  • Security event monitoring, investigation, and overall incident response process
  • Investigate potential cybersecurity events across multiple environments using various tools and techniques
  • Development of information security policies, standards, and procedures
  • Strong time management skills to balance multiple activities and lead junior analysts as needed
  • Understanding of offensive security to include common attack methods
  • Understanding of how to pivot across multiple datasets to correlate artifacts for a single security event
  • A diverse skill base in both product security and information security including organizational structure and administration practices, system development and maintenance procedures, system software and hardware security controls, access controls, computer operations, physical and environmental controls, and backup and recovery procedures.
  • Detailed knowledge and experience in security and regulatory frameworks (CRI, ISO 27001, NIST 800 series, FFIEC, SOC2, STAR, etc.)
  • Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security policies
  • Create reports analyzing activities or trends both within and outside of the organization
  • Support the development of security operations detections, playbooks, and automations to ensure threat detection, monitoring, response, and forensics activities align with best practices, minimize gaps in detection and response, and provide comprehensive mitigation of threats
  • Reviews internal logs and alerts to identify potential cybersecurity events. Triage cases based on output from automated alerts, and determine when to escalate to other teams
  • Monitors external service provider activity to detect potential cybersecurity events
  • Analyzes security data from all systems in real time to spot and thwart potential threats, attacks, and other violations
  • Analyzes compromised systems and remediates to a clean state
  • Performs breach indicator assessments to investigate network traffic for malicious activity
  • Assists with internal or third-party employee investigations
  • Assists in the production of various reports which identify and analyze relevant upcoming and ongoing threats to the enterprise
  • Research evolving threats, techniques, tools, and vulnerabilities in support of information security efforts
  • Stays current with information security program developments, industry frameworks, changes in the company, industry trends, and current security practices

Qualifications

  • Bachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline
  • 5 + years of experience working in the Cybersecurity Operations or Information Security
  • Relevant technical and industry certifications, such as CISSP, ISSMP, SANS, GIAC, GCIA, CISM, CEH, GCFA, GCFE, GCIH, or GSEC are preferred
  • Experience in one or more security domains including Incident Response and Forensics, Security Governance and Oversight, Security Risk Management, Network Security, or Threat and Vulnerability Management preferred
  • Experience with information security risk management, including information security audits, reviews, and risk assessments
  • Night Shift - Remote

About NTT DATA
NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. our consulting and Industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is a part of NTT Group, which invests over $3 billion each year in R&D.
Whenever possible, we hire locally to NTT DATA offices or client sites. This ensures we can provide timely and effective support tailored to each client’s needs. While many positions offer remote or hybrid work options, these arrangements are subject to change based on client requirements. For employees near an NTT DATA office or client site, in-office attendance may be required for meetings or events, depending on business needs. At NTT DATA, we are committed to staying flexible and meeting the evolving needs of both our clients and employees. NTT DATA recruiters will never ask for payment or banking information and will only use @nttdata.com, @nttdatafed.com and @talent.nttdataservices.com email addresses. If you are requested to provide payment or disclose banking information, please submit a contact us form, .
NTT DATA endeavors to make accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at . This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here. For Pay Transparency information, please click here.
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位