Cyber Security Analyst
Current- Monitor and respond to detections and alerts in endpoint protection software (such as NGAV and Windows Defender ATP), ensuring prompt investigation and remediation of any potential security incidents.
- Evaluate and determine the nature of detections and alerts in order to determine whether they are true positives or false positives, using knowledge of IOCs and IOAs to guide the decision-making process.
- Deploy and secure enterprise cloud applications in Azure, leveraging knowledge of Azure Active Directory, Azure Security Center, and other relevant technologies to ensure that cloud infrastructure is protected from.
- Contribute to the development and maintenance of the Threat and Vulnerability Management (TVM) program, ensuring that security risks are identified and mitigated in a timely manner.
- Participate in incident response activities, working collaboratively with cross-functional teams to investigate and resolve security incidents and breaches.
- Provide security guidance and recommendations to other teams and stakeholders, leveraging expertise in cyber security best practices and emerging threats to ensure that the organization is adequately protected from.