WASHINGTON, DC, USA
3 days ago
Information Security Analyst
Job Seekers, Please send resumes to resumes@hireitpeople.com My customer, an international organization located in Washington, DC, has a 6+ month contract position available for anĀ Information Security Analyst.
Position Overview:
The Office of Information Security (OIS) ensures that security efforts throughout the World Bank Group are coordinated and aligned with the Bank's business and IT strategy. This Office delineates the client's information security plans and ensures, in coordination with the Information Security Council, that resources and all implementation of plans, procedures, and standards are reviewed, supported, and deployed in the most effective and efficient manner and are consistent with overall risk management. The Office of Information Security needs a suitable resource to support the Incident Response functions. The Information Security Analyst will be expected to review logs from various security monitoring tools, analyze and triage the incident data, determine the impact of the incident, and act appropriately to limit the damage and restore normal services. The Information Security Analyst needs to have a strong understanding of Networking and Operating systems concepts in order to triage the incident. She/he will also be responsible for generating tickets in the ticketing system and following the appropriate workflow. The Information Security Engineer will also be responsible for the production of adhoc reports and other ad hoc tasks, as assigned by the Team Lead.
Essential Job Functions:Monitor Security Events from IDS, SIEM, etc.Log tickets to the Ticketing SystemHandle calls from the MSSP(Managed security service provider, users regarding incidents/events, perform triage, resolve problems, or escalate to team membersPerform triage on alerts from all sources including Monitored Email Distribution ListsParticipate in rotating weekly shift supporting off hours and weekend activity (24x7)Produce ad hoc reports and other ad hoc tasksEducational Qualifications and Experience:Education: Bachelor's degree in Computer Science or Information SystemsRole Specific Experience: 2+ years of relevant experience in Information Security Incident HandlingExperience with Firewalls and information security technologiesExperience with CERT/CSIRT/CIRT/SOCCertification Requirements:CEH, Security +, CCNARequired Skills/Abilities:Monitoring skills related to IDS and SIEMUnderstanding of TCP/IP, Ethernet, OSI model, layer 2 and layer 3 conceptsUnderstanding of Windows Registry, File system, etc.Hands-on knowledge of Network Packet Analysis using toolsAbility to work with team members with varying levels of technical skills and diverse international backgroundsStrong understanding of Networking and Operating systems conceptsAbility to adapt to and function in a project environment with multiple timetables and changing prioritiesAbility to learn new concepts and approaches in Analyzing Security Incidents.Good communication skills (Verbal and Written)Desired Skills/Abilities (not required but a plus):Pluses for Levels: (level II, III)Level IIEssential Job Functions:Carry out detailed Incident Response activities, including containment, remediation, and root cause analysisEducational Qualifications and Experience:Bachelor's degree and 5+ years of information security experienceExperience in malware remediation and containmentsHands on experience of Incident Response /Malware analysisDesired Skills/Abilities:Malware AnalysisCyber Forensics (Memory, Disk)Scripting Languages e.g. PythonPreferred Certifications:GIACLevel IIIEssential Job Functions:Perform advanced Malware Analysis, along with Incident ResponseGenerate detailed Malware Analysis reports on PE and other common file structure samplesProvide actionable intelligence and suggestions for control updates based on the reverse engineering and malware analysisAssist OIS in Identifying zero-day/vulnerable applications and impactEducational Qualifications and Experience:Master's degree and 7 + years of work experienceExperience with Malware Analysis of PE and other common file structuresDesired Skills/Abilities:Expert understanding of Windows API callsExpert knowledge of Debuggers and disassemblersScripting language knowledge.
Confirm your E-mail: Send Email