Loading ...

le contenu du travail

First Line Security Event Analyst (FLSEA)


  • Working Location:Mons, Belgium
  • Security Clearance:NATO Secret / SC
  • Language:High proficiency level in English language


EXPERIENCE AND EDUCATION:


Essential Qualifications/Experience:

· University degree in technical subject with focus on Information Technology (IT), obtained from nationally recognized / certified institution in addition to 1+ year experience in field of cybersecurity analysis. Lack of degree may be compensated by 3+ years of relevant experience in field of cybersecurity analysis. Similarly, the lacking experience can compensate by demonstrating high level of knowledge in field of cybersecurity
· Comprehensive knowledge of principles of computer and communications security including knowledge of TCP/IP networking, Windows and Linux operating systems
· Broad understanding of common network security threats and mitigation techniques
· Security Information and Event Management products (SIEM) – e.g. ArcSight, Splunk
· Analysis of Network Based Intrusion Detection Systems (NIDS) events– e.g. SourceFire, Palo Alto Network Threat Prevention
· Log analysis from variety of sources (e.g. Firewalls, Proxies, Routers, DNS and other security appliances)
· Network traffic capture analysis using Wireshark
· Logical approach to analysis and ability to perform structured security investigations using large, complex data sets


Desirable Qualifications/Experience:

  • Holding industry leading certification in area of cyber security such as GCIA, GNFA, GCIH
  • Computer Incident Response Centre (CIRT), Computer Emergency Response Team (CERT)
  • Proficiency in Intrusion/Incident Detection and Handling
  • Full Packet Capture systems – e.g. Niksun, RSA/NetWitness
  • Host Based Intrusion Detection Systems (HIDS)
  • Computer security tools (Vulnerability Assessment, Anti-virus, Protocol Analysis, Anti-Virus, Protocol Analysis, Anti-Spyware, etc)
  • Computer forensics tools (stand alone, online and network)
  • Military communication systems and networks.



DUTIES/ROLE

  • Perform initial analysis of logs and network traffic, determine alert severity and escalate when required. Analyst will collate information and present findings in a clear, structured format, providing remediation recommendations and first line response where applicable
  • Conduct research and assessments of security events within NATO Cyber Security Centre (NCSC) team
  • Provide analysis of firewall, IDS, anti-virus and other network sensor produced events and present findings
  • Appropriately leverage the comprehensive extended toolset (e.g. Log Collection, Intrusion Detection, Packet Capture, VA, Network Devices etc) for enhancing investigations
  • Support the end-to-end Incident Handling process
  • Propose optimizations and enhancements which help to both maintain and improve NATO’s Cyber Security posture
Loading ...
Loading ...

Date limite: 31-12-2025

Cliquez pour postuler pour un candidat gratuit

Postuler

Loading ...

MÊMES EMPLOIS

Loading ...
Loading ...