Avp Senior Information Security Analyst
Current• Displaying working knowledge with HTTP methods (GET/POST), DNS resolution, SSL/TLS, and Common malware strategies (recon, exploit, callback), IPv4 and IPv6 basic packet structure, SSL/TLS• Understanding multitudes of Security Threats the MITRE ATT&CK and the Cyber Kill Chain.• Working within Risk Management Frameworks, SOAR Technologies, and utilized IDS, SIEM, SOAR, Endpoint Detection & Response, etc. to monitor the network of U.S. Bank• Demonstrate project management skills to develop and create new processes. • Experience with managing data-driven approaches, from project ideation to production deployment of data processes, analytical solutions, or predictive models• Collaborate with the detection team to build and/or tune detection rules and signatures as needed•Identify root cause and implement proactive/mitigation steps•Assist Cyber Security Incident Response (CSIRT) Team with response efforts if/when needed•Track and report on security metrics•Research security events and incidents to provide details and recommendations•Review incidents to assess their urgency and escalate if necessary