Senior Cyber Defense Analyst
Defense Point Security, Llc
Provide Tier 3 incident management and security configuration advice for multiple clients at the MSSP • Constructing Splunk Phantom playbooks. • Performs Intrusion Detection System (IDS) monitoring and analysis, analyzes network traffic, conducts log analysis, prioritizes and differentiates between potential intrusion attempts and false alarms, and creates and tracks investigations to resolution.• Composes security alert notifications and advises customers in the steps to take to investigate and resolves computer security incidents.• Researches and analyzes intelligence sources and malware, performs remote management of network and security devices, performs operations and maintenance of internal Security Operations Center (SOC) systems, builds custom detective and preventative content, and provides reporting to customers on a daily, weekly, monthly, and annual basis.• Provides support services to various customers in accordance with the established service agreements.• Required to multitask and give equal attention to a variety of functions while under strict time deadlines.