Arctic Wolf is the leader in security operations in the exciting and fast-growing industry of cybersecurity. We have won numerous awards for our excellence in security operations and remain dedicated to providing an industry-leading customer and employee experience.
We're looking for a Triage Security Engineer to help us End Cyber Risk.
About the Role:
The Triage Security Engineer will be part of our Security Services department, supporting customers through our Security Operations Centre. This role will be hybrid, working from our Waterloo, CA office.
This role will leverage your security expertise to identify, detect, and notify customers of security events within their environment.
You'll work shifts in a 24x7 environment, focusing on security investigations, security-related tasks, and improvement activities to better the triage function.
As a Triage Security Engineer, you'll manage security incidents and work with Concierge Security Teams to provide post-incident remediation activities.
Responsibilities:
1. Assist in the incident Response life cycle for Analysis; Containment, and Eradication
2. Advise and coach clients during an active breach on how to remediate and secure their environment.
3. Create and audit new and existing detections for malicious activity
4. Analyze incoming security events in a SIEM based on network, endpoint, firewall, cloud, DNS and others as needed expediently, consistently, and accurately to determine if an event is malicious
5. Experience working in a Security Operation Center, security incident response teams, or in roles with security forensics or malware analysis disciplines.
6. Analyze log and system data from the above list and other IT systems
7. Know how to use one or more scripting tools and languages such as Python, Bash, and Power Shell
8. Great writing and speaking skills
9. A positive