As one of the most established cybersecurity companies in the world, we at NetWitness are dedicated to helping our customers and partners protect their organizations from cyberattacks. Our products and incident response services are utilized by large enterprises, governments, and militaries for incident response and threat hunting.
We are seeking a candidate with in-depth industry knowledge of the business environment and technical solutions to assist customers in gaining market share and increasing operational efficiencies. The role involves providing technical and consultative leadership on complex engagements, focusing on specific industries or service offerings.
Responsibilities
- Provide technical and consultative services on NetWitness solutions across various complex projects, including workshops, requirement analysis, solution design, documentation, and training.
- Collaborate with project managers, personnel, and clients to ensure smooth project implementation and transition.
- Deliver services independently and within team environments, working closely with sales and other stakeholders.
- Manage multiple work streams, define deliverables, and adhere to project methodologies, margins, and scope.
- Lead quality assurance activities and ensure proper escalation and change procedures.
- Analyze requirements, develop proposals, and create functional prototypes as needed.
- Serve as technical lead on projects, understanding customer challenges and providing strategic solutions.
- Analyze data, produce documentation, and ensure customer satisfaction with deliverables.
- Maintain activity reports, progress updates, and project documentation.
- Provide knowledge transfer and training throughout projects and at completion.
- Develop detailed project plans, validate statements of work, and categorize requirements.
Technical Responsibilities
- Assist customers in threat hunting and detection, tracking threat actors, and understanding TTPs.
- Contribute to cybersecurity best practices, focusing on threat intelligence, hunting, and analysis using NDR, EDR, and SIEM tools.
- Develop detection content, use cases, queries, alerts, dashboards, and reports to identify threats and suspicious activities.
- Assess customer visibility gaps and recommend improvements.
- Support sales project scoping and provide technical guidance.
- Contribute to the development of NetWitness training courses, assessments, and content quality assurance.
- Assist with lab deployments, upgrades, and content creation for training purposes.
- Participate in webinars and public training events as needed.
Required Experience and Qualifications
- Understanding of logging mechanisms for network, security solutions, servers, and databases.
- Knowledge of networking and security infrastructure.
- Strong communication, analytical, and problem-solving skills.
- Proficiency in differentiating logs, events, packets, and incidents.
- Experience with collection methodologies such as Syslog, SNMP, ODBC, LEA, FTP, SFTP.
- Knowledge of security threats, trends, and policies.
- Excellent presentation, facilitation, and interpersonal skills.
- Professional-level English speaking and writing skills.
- Federal security clearance is a plus.