Simira'
On-site
SAR 200,000 - 300,000
Full time
Job summary
A leading security firm in Saudi Arabia is seeking professionals skilled in incident response to analyze and remediate security incidents. Candidates should possess strong experience in enterprise managed security services and a high level understanding of network security tools and forensics. This role involves prioritizing tasks, assisting teams, and documenting technical details in a concise manner.
Qualifications
- Certified experience in Enterprise Managed Security Services focused on Incident response activities.
- Strong knowledge of tools used for network security.
- Understanding of basic attack and defense techniques.
Responsibilities
- Analyze, escalate and assist in the remediation of information security incidents.
- Prioritize multiple tasks and formulate responses/recommendations to customers.
- Provide assistance to other incident response teams.
Skills
Incident response
Malware identification and remediation
Logging and threat research
Network security tools
Operating System knowledge (Linux & Windows)
Tools
Redline
Wireshark
Metasploit
Scope of Work
- Analyze, escalate and assist in the remediation of information security incidents.
- Prioritize multiple tasks and formulate responses/recommendations to customers.
- Provide assistance to other incident response teams.
- Apply technical acumen and analytical capabilities to speed and enhance response.
- Capable of following an investigative process
- Strong Operating System understanding (Linux & Windows)
- High level understanding of malware identification/remediation processes
- Ability to document and explain technical details in a concise, understandable manner
- Ability to read and understand diverse log sources quickly
- Research and document threats and their behavior.
- Good understanding of incident response & forensics tools including redline, volatility, FTK, Encase, Photorec, Bulk extractor, etc.
- Good understanding of Packet analysis tools (tcpdump, Wireshark, ngrep, etc.)
- Working knowledge with tools such as: Web App Tools Intercepting proxies (e.g. Burp Proxy, Paros Proxy, etc.) and automated scanners (e.g. Nessus, Acunetix, WebInspect, Netsparker, nikto, Skipfish)
- Working knowledge with Exploitation Tools - Metasploit, Karmetasploit, BurpSuite, BackTrack/Kali Linux, SQLMap, Social Engineering Toolkit
Skills
- Certified experience in Enterprise Managed Security Services focused on Incident response activities
- Strong knowledge of tools used for network security
- Understanding of basic attack and defense techniques
- Develop and follow detailed operational processes and procedures