CSIRT Analyst

4 weeks ago


Vancouver, Canada Hamilton Barnes Associates Limited Full time

Hamilton Barnes is representing a European transformational consultancy with over 3000 employees and 20 office locations. with a mission to shape the future of cybersecurity.

This 12-month contract offers the potential for an extension over 3 years, with onsite work in Hasselt 1-2 days per week. This role is integral to meeting the increased demand for SOC clients.

Responsibilities:

  • Handle security alerts/incidents escalated by SOC Analysts (Tier 2).
  • Work collaboratively with your team to manage security alerts and incidents.
  • Conduct DFIR assignments, including readiness assessments.
  • Participate in weekly Threat Hunting duties to proactively chase threats using novel Tools, Techniques & Procedures (TTPs).
  • Perform compromise assessments to identify potential compromises and their scope.
  • Collect Threat Intelligence (IOCs and TTPs).
  • Contribute to Detection Engineering in SIEM, xDR, etc.
  • Conduct Purple Teaming exercises with the Red Team to test and improve defense.
  • Assist in creating scenarios in SOAR.
  • Co-write processes and procedures related to DFIR, Threat Intell, Threat Hunting, etc.

Skills/Requirements:

  • Experience or interest in working with MDR tools such as EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One, etc.), NDR (Vectra, Darktrace, etc.), xDR (CrowdStrike Identity Protection, MS Defender for Office/Clouds Apps/Identity, etc.).
  • Good knowledge of Security Monitoring with SIEM technologies.
  • Passion for security capabilities: Security Monitoring, Digital Forensics, Incident Response, Threat Intelligence, Threat Hunting, etc.
  • Fluency in Dutch and English.

Benefits:

  • View to Extension / Long Term mission

Salary:

  • €500 Per Day

Join and be in the forefront of cybersecurity, where your skills will make a difference in safeguarding clients' digital assets and shaping the future of the industry. Apply now to be part of this dynamic team

#J-18808-Ljbffr