Senior Cyber Security Analyst
Brak informacji o wynagrodzeniu
SeniorFull-time
#449988·Dodano wczoraj·0
Źródło: Sigma SoftwareTech Stack / Keywords
KibanaOpenSearchSnowflakeDatadogSQLJavaScriptPythonJupyter NotebookMITRE ATT&CKGitHub
Firma i stanowisko
As a Senior Cyber Security Analyst at Sigma Software, you will work with a client delivering advanced cybersecurity solutions focused on bot defense and anti-malvertising technologies in the AdTech industry. The project involves real-time threat detection and bot mitigation for enterprise-scale clients, collaborating with customers and internal teams to improve security.
Wymagania
- 3–5 years of experience in Cybersecurity, Threat Research, or Threat Intelligence.
- Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or related field.
- Strong understanding of web technologies and networking fundamentals, including HTTP/HTTPS, TCP/IP, DNS, authentication, cookies, and browser-server interactions.
- Experience in web security research, bot management, fraud detection, or related domains.
- Hands-on experience with threat investigations, IOC analysis, and threat intelligence research.
- Experience with log analysis platforms such as Kibana, OpenSearch, Snowflake, or Datadog.
- Strong SQL skills including working with large datasets and UDFs.
- Basic knowledge of JavaScript for web and client-side analysis.
- Strong analytical and problem-solving skills.
- Ability to work independently and manage investigations.
- Strong communication and collaboration skills.
- Passion for cybersecurity and continuous learning.
Nice to have:
- Knowledge of MITRE ATT&CK, malware analysis, vulnerabilities, and adversary TTPs.
- OSINT and cyber threat intelligence research experience.
- Experience with Python and Jupyter Notebook for investigations and automation.
- Experience with GitHub and version control workflows.
Obowiązki
- Monitor and investigate potential security threats using tools such as Kibana, OpenSearch, and Snowflake.
- Analyze security logs for suspicious activity, including traffic spikes and changes in attack patterns.
- Determine malicious activity and implement detection engineering to block threats.
- Develop, tune, and deploy detection rules based on traffic behavior and various indicators.
- Monitor existing detections and known attack patterns for effectiveness.
- Support customer onboarding by analyzing web traffic and configuring baseline protections.
- Investigate customer-reported incidents and missed detections to improve coverage.
- Document newly discovered threats, including evidence and indicators.
- Communicate findings to Engineering and stakeholders to support remediation.
- Collaborate through ticketing systems and support portals to resolve security requests.
Sigma Software
46 aktywnych ofert