Diligently monitor and interpret security alerts from Endpoint Detection and Response (EDR) tools to detect potential threats.
Conduct investigations into unusual network activities, escalating incidents as needed.
Support incident response efforts by aiding in preparation, identification, containment, eradication, and recovery phases.
Employ EDR and Security Information and Event Management (SIEM) systems, firewalls, and threat intelligence platforms to enhance network security.
Assist in the appraisal, deployment, and tuning of security tools.
Produce comprehensive reports detailing security incidents, investigations, and the organization’s security posture.
Document cybersecurity activities through the maintenance of standard operating procedures.
Contribute to the formulation of security policies and the advancement of overall cybersecurity readiness.
Gain expertise in wireless spectrum monitoring and discovery solutions to support network security initiatives.
Proactively discover and evaluate wireless access points and mobile communication applications to bolster the security and functionality of our mission-critical wireless enterprise network.
Leverage both open-source and proprietary cyber threat intelligence sources to pinpoint and analyze threats targeting the enterprise network.
Develop a thorough understanding of networking technologies, including TCP/IP, routing concepts, and subnetting.
Engage in the creation and ongoing refinement of Standard Operating Procedures (SOPs)