Information Security Professional with Operational experience in a (CSIRT,/SOC) and focus on Security Incident Management – analysis, detection and handling of security events.
- Operational experience in Incident Response role
- Proficiency in event collection and analysis tool such as Arcsight, Splunk
- Demonstrable understanding of how Malware behaves
- Knowledge of information security threat types and which indicators of compromise (IOCs) are useful for detecting, identifying, and mitigating each.
-Knowledge of attacker tactics, techniques, and procedures (TTPs) useful to assist the response teams (CSIRT)
- Experience working with relevant operating system security (...