Share this Job

Sr. Analyst, Cybersecurity (Lead)

Apply now »

Date: Jul 15, 2022

Location: Airport City, IL, 70151

Company: Corning

 

 

Senior Analyst, Cybersecurity (Lead)

 

The Senior Analyst for Cybersecurity will perform data analysis, incident response, investigative analysis, and research on existing and emerging cyber threats, particularly those directed against the company's global networks. You will be charged with part of leading the maturation and optimization of our EDR capability through the development of custom content that focuses on threat actor TTPs and reduces false positives. You will be expected to "think like an adversary" and engage in threat hunting operations leveraging your understanding of the tactics, techniques and procedures employed by advanced threats combined with intelligence from multiple sources and provide reporting and briefings to other teams and leadership to maintain appropriate levels of situational awareness.

 

 

RESPONSIBILITIES:

 

  • Review and build host-based detection content in EDR solutions such as Crowd Strike, Microsoft Defender and other leading vendors.
  • Perform network traffic analysis utilizing raw packet data, net flow, IDS, and custom sensor output and mentor cyber analysts.
  • Leverage understanding of tactics, techniques and procedures associated with advanced threats to create and evolve custom detections that mitigate highly dynamic threats to the enterprise.
  • Proactively research advanced and emerging cyber threats, and apply analytical understanding of attacker methodologies, system vulnerabilities, and key indicators of attacks and exploits in threat hunting efforts
  • Collaborate using information and knowledge sharing networks and professional relationships to achieve common goals.

 

REQUIREMENTS:

 

  • Threat analysis and incident response experience
  • Understanding of cyber threat models, including ATT&CK, Cyber Kill Chain, Racetrack, Diamond Model, etc.
  • Experience working with EDR tools
  • Experience with a SIEM-type platform
  • Experience performing analysis and correlation of log data and forensic artifacts from multiple sources.
  • Experience in incident response activities
  • Must be proficient, verbally and in writing with the English language.

 

Preferred Skills

 

  • Familiarity with customizing and deploying Sysmon
  • Previous experience as Threat Researcher and/or Intelligence Analyst.
  • A deep understanding of advanced cyber threats targeting enterprises, along with the tools, tactics, and procedures used by those threats.
  • Relevant certifications (CISSP, SANS GIAC, CEH, etc.)

 

WE PROVIDE:

 

  • Competitive salary according to experience & competences
  • Private medical care
  • Company Pension
  • Annual Salary Review
  • Remote work and Hybrid options