Social network you want to login/join with:
As one of the most established cybersecurity companies in the world, we at NetWitness are dedicated to helping our customers and partners protect their organizations from cyberattacks. Our products and incident response services are used by large enterprises, governments, and militaries for incident response and threat hunting.
We are seeking a candidate with in-depth industry knowledge and technical expertise to assist customers in gaining market share and improving operational efficiencies. The role involves providing technical and consultative leadership on complex engagements, focusing on specific industries or service offerings.
Responsibilities
- Provide technical and consultative services on NetWitness solutions across various complex projects.
- Conduct workshops, analyze requirements, develop solution designs, document, and deliver training on NetWitness solutions.
- Collaborate with project managers, team members, and clients to ensure smooth project execution and transition.
- Deliver services independently and as part of a team, working closely with sales and other stakeholders.
- Manage multiple work streams, define deliverables, and adhere to project methodologies, margins, and SOW requirements.
- Lead quality assurance activities, including technical reviews, and ensure proper escalation and change management procedures.
- Possibly manage or act as technical lead on small to medium projects, understanding customer challenges and providing strategic solutions.
- Prepare and maintain activity reports, keep stakeholders informed, and provide knowledge transfer and training.
- Create detailed project plans, validate SOW, and categorize requirements accordingly.
Technical Responsibilities
- Assist customers in enhancing their threat hunting and detection capabilities.
- Track threat actors and their TTPs.
- Develop detection content and use cases within NetWitness for various security tools.
- Create advanced queries, alerts, dashboards, and reports to identify threats and anomalies.
- Assess visibility gaps and recommend improvements.
- Support customers in increasing detection capabilities and investigating attacks.
- Contribute to sales project scoping and provide technical guidance.
- Participate in course development, assessments, and content quality assurance.
- Maintain instructor documentation and lab use-cases, assist with lab deployments and upgrades.
- Deliver webinars and participate in customer training events.
Required Experience/Qualifications
- Understanding of logging mechanisms for networks, security solutions, servers, and databases.
- Knowledge of networking and security infrastructure.
- Ability to analyze data flow in network topologies.
- Strong communication, presentation, and interpersonal skills.
- Analytical thinking and problem-solving abilities.
- Understanding of logs, events, packets, and incidents.
- Experience with collection methodologies like Syslog, SNMP, ODBC, LEA, FTP, SFTP.
- Knowledge of security threats, trends, and policies.
- Professional-level English skills in speaking and writing.
- Federal security clearance is an advantage.