Job Description
Overview
Responsible for investigating security incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are responsible for collecting data and reviewing alerts. Tier 2/3 analysts use threat intelligence, such as indicators of compromise, TTPs, and company host system/network data sets to assess the alerts, threats and potential incidents in more depth.
Responsibilities
- Review and investigate security incidents escalated by Tier 1 analysts; determine root causes and contribute to incident resolution.
- Utilize threat intelligence, indicators of compromise, TTPs, and system/network data to assess alerts and threats with depth.
- Develop, tune, and manage SIEM use cases; reduce false alerts; lead investigations until issues are resolved.
- Monitor systems and events across Windows, macOS, and Linux operating systems.
- Collaborate with stakeholders to coordinate tim...
Apply for this Position
Ready to join Plurilock? Click the button below to submit your application.
Submit Application