As one of the most established cybersecurity companies in the world, we at NetWitness are dedicated to helping our customers and partners protect their organizations from cyberattacks. Our products and incident response services are used by large enterprises, governments, and militaries for incident response and threat hunting.
We are seeking a professional with in-depth industry knowledge and technical expertise to assist customers in gaining market share and improving operational efficiencies. The role involves providing technical and consultative leadership on complex engagements, focusing on specific industries or service offerings.
Responsibilities
- Provide technical and consultative services on NetWitness solutions across various complex projects, including workshops, requirements analysis, solution design, documentation, and training.
- Collaborate with project managers, team members, and clients to ensure smooth project execution and transition.
- Manage multiple work streams, define deliverables, and ensure projects adhere to approved methodologies, margins, and scope of work.
- Lead quality assurance activities and ensure proper escalation and change control procedures.
- Analyze requirements, propose solutions, and create documentation to meet evolving client needs.
- Act as technical lead on small to medium projects or workstreams within larger projects.
- Understand customer business challenges and develop strategies aligned with long-term goals.
- Analyze large datasets, provide logical options, and produce high-quality documentation and deliverables.
- Maintain activity reports, progress updates, and end-of-project documentation.
- Provide knowledge transfer and training to clients and team members.
- Develop detailed project plans and validate statements of work.
Technical Responsibilities
- Assist customers in threat hunting and detection, tracking threat actors and their TTPs.
- Develop detection content and use cases within NetWitness for network, endpoint, and log analysis.
- Create advanced queries, alerts, dashboards, and reports to identify threats and anomalies.
- Assess customer visibility gaps and recommend improvements.
- Support sales scoping and provide technical guidance.
- Contribute to the development of technical training materials and participate in lab and content quality assurance.
- Deliver webinars and participate in public training events as needed.
Required Experience and Qualifications
- Understanding of logging mechanisms for network, security solutions, servers, and databases.
- Knowledge of networking and security infrastructure, data flow, and collection methodologies.
- Strong communication, analytical, and problem-solving skills.
- Proficiency in logs, events, packets, and incident analysis.
- Familiarity with threats, security trends, and policies.
- Excellent presentation and interpersonal skills.
- Professional-level English proficiency; federal security clearance is a plus.