CSIRT Analyst
Bekijk en reageer bij Cegeka Consulting B.V. (externe link)
CSIRT Analyst at Cegeka's Security Operations Center in Hasselt, hybrid, focusing on DFIR, MDR, and Threat Hunting.
- Locatie
- Hasselt, BE
- Werkvorm
- hybride
- Contractvorm
- zzp
- Eerste waarneming
- Opdrachtgever
- Cegeka
Eisen
- Good knowledge of Security Monitoring with SIEM technologies
- Speak and write English fluently
- Ability to perform forensically sound acquisition, parsing and analysis of disk, memory images, forensic artifacts and logs
- At least 3-5 years of experience in a similar position
- Bachelor or master degree or equivalent through experience
Wensen
- Experience and/or interest in MDR tools (EDR: CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One; NDR: Vectra, Darktrace; xDR: CrowdStrike Identity Protection, MS Defender for Office/Cloud Apps/Identity)
- Passion for Security Monitoring, Digital Forensics, Incident Response, Threat Intelligence, Threat Hunting
- Hands-on and proactive mindset with a 'can do' mentality
Omschrijving
Cegeka is looking for a CSIRT Analyst to join its Security Operations Center in Hasselt. The role involves handling security alerts/incidents escalated by SOC Analysts (Tier 2), conducting DFIR assignments including readiness assessments, participating in weekly Threat Hunting duties, performing compromise assessments, collecting Threat Intelligence, contributing to Detection Engineering in SIEM and xDR, Purple Teaming exercises with the Red Team, creating playbooks in SOAR, co-writing processes and procedures related to DFIR, Threat Intelligence, Threat Hunting, and being part of the Incident Response on-call service. Requirements include at least 3-5 years of experience in a similar position, a bachelor or master degree or equivalent experience, forensically sound acquisition and analysis of disk, memory images, forensic artifacts and logs (extensive hands-on experience is mandatory), experience and/or interest in MDR tools such as EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One), NDR (Vectra, Darktrace), xDR (CrowdStrike Identity Protection, MS Defender for Office/Cloud Apps/Identity), good knowledge of Security Monitoring with SIEM technologies, passion for Security Monitoring, Digital Forensics, Incident Response, Threat Intelligence, Threat Hunting, a hands-on proactive mindset, and fluent English. Cegeka offers a Top Employer environment, fair compensation, an electric car or mobility budget, meal vouchers, eco vouchers, group and hospitalization insurance, mobile phone subscription, fixed expense allowance, flexible working hours, hybrid work model, continuous learning, career paths, and for freelancers a market-conform daily rate. The application flow consists of applying, assessment, meeting, and start.
Alle opdrachtenBekijk en reageer bij Cegeka Consulting B.V. (externe link)
Gegevens automatisch overgenomen uit de oorspronkelijke publicatie; controleer de details bij de bron. Wij zijn geen partij bij de aanvraag. Hoe wij werken.