Cyber Security Specialist (Proxy Firewalls, and IPS/IDS) - HYBRID - Addison, TX

Apply now »

Date: Nov 8, 2024

Location: Addison, TX, US

Company: NTT DATA Services

Req ID: 301467 

NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.

We are currently seeking a Cyber Security Specialist (Proxy Firewalls, and IPS/IDS) - HYBRID - Addison, TX to join our team in Addison, Texas (US-TX), United States (US).

The Threat Hunter, Advanced Security Analytics is a member of a team who proactively manages IT security on behalf of customers to reduce the impact of security incidents and system compromises. The successful candidate will provide security monitoring, level 2 and 3 event analysis, and countermeasure proposals. This position requires shift work in a 8/5 environment during US business hours and after-hours work may be required.

 

Position’s Responsibilities:

 

- Leads the Cyber Threat Hunt function with SOC Analysts, Incident Responders and Threat Managers

- Conduct threat hunting and analysis using various toolsets based on intelligence gathered

- Actively hunt for Indicators of Compromise (IOC) and APT Tactics, Techniques, and Procedures (TTP) in the network and in the host as necessary

- Search network flow, PCAP, logs, and sensors for evidence of cyber-attack patterns, and hunt for Advanced Persistent Threats (APT)

- Create detailed Incident Reports and contribute to lessons learned in collaboration with the appropriate team

- Analyze network perimeter data, flow, packet filtering, proxy firewalls, and IPS/IDS to create and implement a concrete plan of action to harden the defensive posture

- Monitor open source and commercial threat intelligence for IOCs, new vulnerabilities, software weaknesses, and other attacker TTPs

- Provides guidance to contracted subordinates within the latitude of established policies

- Recommends changes to policies and establishes procedures that affect immediate organization(s)

- Methodically examine all collected windows/linux host data for evidence of intrusion, malware, or unauthorized activity

- Directly support the provide incident response support for critical security incidents as they arise

- Familiarity with offensive strategies and assessment methodology

- Work/Assist SIEM Admin team to create new use cases and provide them with all the required details

- Ability to perform general office requirements

- Must be able to perform essential responsibilities with or without reasonable accommodations

 

**The Expected Schedule for this Position is: Monday- Friday, 8am - 5pm CST. The expectations is to work a minimum of 3 days in the office. (typically Tues, Wed, Thurs.'s). Being onsite at the client's location in Addison, TX is required. 

 

Role Requirements:

 

    • 8+ years overall of Cyber Security -Related experience
    • 6+ years of SIEM, or SOC experience (ideally Securonix and/or similar Splunk)
    • Azure Defender experience is required
    • Must have Endpoint Detection Response (EDR) Tool knowledge and experience ( ie. Darktrace, CrowdStrike, Carbon Black, and/or Sentinel One, etc)
    • Must have experience conducting in-depth forensic analytical studies and/or investigations
    • Must have client facing/ customer service and support experience

 

Highly Preferred Qualifications:

 

    • KQL Experience is highly preferred
    • Strong communication, written, and verbal skills
    • Experience with writing/creation of formal documentation such as reports, slide decks, and architecture diagrams
    • Bachelor’s degree in related filed, to include computer science, or equivalent combination of education and experience

 

#INDICS 

#LI-MIWS

About NTT DATA

NTT DATA is a $30 billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long term success. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure and connectivity. We are one of the leading providers of digital and AI infrastructure in the world. NTT DATA is a part of NTT Group, which invests over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. Visit us at us.nttdata.com

NTT DATA endeavors to make https://us.nttdata.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at https://us.nttdata.com/en/contact-usThis contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here. For Pay Transparency information, please click here.


Job Segment: Open Source, Linux, Computer Science, Consulting, Technology

Apply now »