Topic created on: November 10, 2011 07:59 CST by aeppert .
The Threat Intelligence Analyst manages IDS and Expert System content ensuring detection for clients is optimal and up-to-date. The analyst will be responsible for monitoring a global network of sensors looking for trends and patterns in signatures firing and making updates as necessary. These changes will include making sure signatures perform well and keeping signatures up-to-date for clients.
Alert Logic is a leading provider of on-demand compliance and security solutions. Our threat, log and IT compliance management solutions run as a Software-as-a-Service, and are cost-effective, easily deployed, and easily maintained. Customers can protect their networks and comply with policies and regulations with no maintenance needed on their part as services are delivered �in-cloud�, without the need to work onsite to deploy, configure, tune, maintain or upgrade. We pride ourselves on offering efficient, no-hassle, reliable network security and compliance solutions and continually exceeding customer expectations.
Responsibilities:
Monitor and collect information on information security threats from various sources
Analyze, categorize and rank threats so that clients have current information on detection
Communicate updates to clients and partners on a regular basis through email, blogs and presentations
Manage dependencies between Signature, Expert System and vulnerability scanner detection logic
Track and report on detection performance
Required Experience:
Linux/Unix administration
Experience writing, tuning and developing IDS (Snort) signatures
Systems performance tuning
Technical writing, strong written communication skills
Ability to automate computer operations through custom programming
Ability to analyze raw network traffic through tools such as tcpdump
Preferred Experience:
Python and Shell programming
Experience with Source Control Systems such as SVN, CVS and /or GIT
SQL knowledge
A GIAC Certified Intrusion Analyst Certification or equivalent is preferred. If the candidate does not have one it must be acquired within 6 months.
Snort Certified Professional; Sourcefire Certified Expert; CEH; GPEN; OSCP
Alert Logic offers an exceptional company culture with a group that works hard and has fun. We are looking for someone with a passion for technology, a drive for continual learning and the love of solving problems.
Contact:
Andrea Roe - [email protected]