As one of the most established cybersecurity companies in the world, we at NetWitness are dedicated to helping our customers and partners protect their organizations from cyberattacks. Our products and incident response services are widely used by large enterprises, governments, and militaries for incident response and threat hunting.
We are seeking a candidate with in-depth industry knowledge and technical expertise to assist customers in gaining market share and increasing operational efficiencies. The role involves providing technical and consultative leadership on complex engagements, focusing on industry or service offerings.
Responsibilities
- Provide technical and consultative services on NetWitness solutions across various complex projects, including workshops, requirements analysis, solution design, documentation, and training.
- Collaborate with project managers, team members, and clients to ensure smooth project execution and transition.
- Manage multiple work streams, define deliverables, and adhere to project methodologies, margins, and scope of work.
- Lead quality assurance activities and ensure proper escalation and change control procedures.
- Analyze requirements, develop proposals, and deliver solutions that meet client needs.
- Serve as technical lead on small to medium projects or workstreams within larger projects.
- Understand customer challenges and provide strategic solutions aligned with long-term goals.
- Analyze large data sets, produce documentation, and ensure customer satisfaction.
- Maintain activity reports, progress updates, and end-of-project documentation.
- Provide knowledge transfer and training during and after projects.
- Create detailed project plans and validate statements of work.
Technical Responsibilities
- Assist customers in threat hunting and detection, tracking threat actors and their TTPs.
- Develop detection content, use cases, queries, alerts, dashboards, and reports within NetWitness.
- Identify visibility gaps and recommend improvements.
- Support sales scoping and provide technical guidance.
- Contribute to the development of technical training materials and lab content.
- Participate in lab deployments, upgrades, and customer training events.
Required Experience / Qualifications
- Understanding of logging mechanisms for network, security solutions, servers, and databases.
- Knowledge of networking/security infrastructure and data flow analysis.
- Strong communication, presentation, and interpersonal skills.
- Analytical and problem-solving abilities.
- Proficiency in logs, events, packets, and incident analysis.
- Experience with data collection methods such as Syslog, SNMP, ODBC, LEA, FTP, SFTP.
- Knowledge of security threats, trends, and policies.
- Professional-level English skills, both written and verbal.
- Federal security clearance may be advantageous.