Incident Response Expert
- תל אביב
- משרה קבועה
- משרה מלאה
- Participate in forensic and incident response investigations, including large scale sophisticated attacks, conduct log analysis, host and network-based forensics and malware analysis.
- Participate in threat hunting: proactively hunt for targeted attacks and new emerging threats in client's networks; as well as security assessments and simulations.
- Identify indicators of compromise (IOCs) and tools, tactics, and procedures (TTPs) to help ascertain whether and how breaches have occurred.
- Utilize and develop tools and methodologies to improve Sygnia's existing investigative and hunting technological stack.
- Collaborate with IT and Security teams during investigations.
- Generate and present a comprehensive and professional report of findings from investigations.
- At least 3 years of a relevant experience (from military service and/or industry).
- Bright, curious and determined team player, who strive for excellency.
- Problem solver, in-depth thinker with growth mindset.
- Demonstrated in-depth understanding of the life cycle of advanced security threats, attack vectors and variant methods of exploration.
- Deep technical understanding of network fundamentals and common Internet protocols.
- Solid understanding of system and security controls on at least two OSs (Windows, Linux / Unix and MacOS), including host-based forensics and experience with analyzing OS artifacts.
- Fluency with one or more scripting language (i.e. Python).
- Multidisciplinary knowledge and competencies, such as:
- Excellent communication and interpersonal skills. Fluent English, including the ability to document and explain technical information in a concise, understandable manner.
- Willing to travel abroad (~30% of the time).
Mploy