Diyar United Company
Cyber Security Analyst Level-2

Job Description and Requirements

-Research, analysis, and response for alerts; including log retrieval and documentation
-Conduct analysis of network traffic and host activity across a wide array of technologies and platforms
-Assist in incident response activities such as host triage and retrieval, malware analysis, remote system analysis, end-user interviews, and remediation efforts
-Recognize cyber-attacks based on their signatures. Differentiate the false positives from true intrusion attempts and help remediate/prevent cyber attacks
-Compile detailed investigation and analysis reports for internal CSOC consumption and delivery to management
-Analyze network traffic, IDS/IPS/DLP events, packet capture, and FW logs
-Analyze malicious campaigns and evaluate effectiveness of security technologies
-Develop advanced queries and alerts to detect adversary actions
-Lead response and investigation efforts into advanced/targeted attacks
-Identify gaps in IT infrastructure by mimicking an attacker’s behaviors and responses
-Provide expert analytic investigative support of large scale and complex security incidents
-Perform Root Cause Analysis of security incidents for further enhancement of alert catalog
-Continuously improve processes for use across multiple detection sets for more efficient Security Operations
-Review alerts generated by detection infrastructure for false positive alerts and modify alerts as needed'

b) Qualifications:
-Certified CEH, SANS SEC503 or any other Professional security certificates
-Direct prior experience with core security technologies (SIEM, firewalls, IDS/IPS, HIPS, proxies, vulnerability scanners, AV, etc.) 
-Industry certifications (CISSP, GIAC – GREM/GCIH/GCIA/GCFA) are a strong asset, proficiency in scripting languages (Python, shell, etc.)

c) Generic & Specific Skills:
-Good communication skills (English)
-Flexibility on Working Hours (24X7) - Operations