Flag: Tornado! Hurricane!

 Forums >>  Job Openings  >>  Career: Threat Intelligence Analyst - Alert Logic - Houston, TX

Topic created on: November 10, 2011 07:59 CST by aeppert .

The Threat Intelligence Analyst manages IDS and Expert System content ensuring detection for clients is optimal and up-to-date.  The analyst will be responsible for monitoring a global network of sensors looking for trends and patterns in signatures firing and making updates as necessary.  These changes will include making sure signatures perform well and keeping signatures up-to-date for clients.

Alert Logic is a leading provider of on-demand compliance and security solutions.  Our threat, log and IT compliance management solutions run as a Software-as-a-Service, and are cost-effective, easily deployed, and easily maintained.  Customers can protect their networks and comply with policies and regulations with no maintenance needed on their part as services are delivered �in-cloud�, without the need to work onsite to deploy, configure, tune, maintain or upgrade.  We pride ourselves on offering efficient, no-hassle, reliable network security and compliance solutions and continually exceeding customer expectations.

Responsibilities:

Monitor and collect information on information security threats from various sources
Analyze, categorize and rank threats so that clients have current information on detection
Communicate updates to clients and partners on a regular basis through email, blogs and presentations
Manage dependencies between Signature, Expert System and vulnerability scanner detection logic
Track and report on detection performance

Required Experience:

Linux/Unix administration
Experience writing, tuning and developing IDS (Snort) signatures
Systems performance tuning
Technical writing, strong written communication skills
Ability to automate computer operations through custom programming
Ability to analyze raw network traffic through tools such as tcpdump

Preferred Experience:

Python and Shell programming
Experience with Source Control Systems such as SVN, CVS and /or GIT
SQL knowledge
A GIAC Certified Intrusion Analyst Certification or equivalent is preferred.  If the candidate does not have one it must be acquired within 6 months.
Snort Certified Professional; Sourcefire Certified Expert; CEH; GPEN; OSCP

Alert Logic offers an exceptional company culture with a group that works hard and has fun.  We are looking for someone with a passion for technology, a drive for continual learning and the love of solving problems.

Contact:
Andrea Roe - [email protected]

No posts found under this topic.

There are 31,313 total registered users.


Recently Created Topics
[help] Unpacking VMP...
Mar/12
Reverse Engineering ...
Jul/06
hi!
Jul/01
let 'IDAPython' impo...
Sep/24
set 'IDAPython' as t...
Sep/24
GuessType return une...
Sep/20
About retrieving the...
Sep/07
How to find specific...
Aug/15
How to get data depe...
Jul/07
Identify RVA data in...
May/06


Recent Forum Posts
Finding the procedur...
rolEYder
Question about debbu...
rolEYder
Identify RVA data in...
sohlow
let 'IDAPython' impo...
sohlow
How to find specific...
hackgreti
Problem with ollydbg
sh3dow
How can I write olly...
sh3dow
New LoadMAP plugin v...
mefisto...
Intel pin in loaded ...
djnemo
OOP_RE tool available?
Bl4ckm4n


Recent Blog Entries
halsten
Mar/14
Breaking IonCUBE VM

oleavr
Oct/24
Anatomy of a code tracer

hasherezade
Sep/24
IAT Patcher - new tool for ...

oleavr
Aug/27
CryptoShark: code tracer ba...

oleavr
Jun/25
Build a debugger in 5 minutes

More ...


Recent Blog Comments
nieo on:
Mar/22
IAT Patcher - new tool for ...

djnemo on:
Nov/17
Kernel debugger vs user mod...

acel on:
Nov/14
Kernel debugger vs user mod...

pedram on:
Dec/21
frida.github.io: scriptable...

capadleman on:
Jun/19
Using NtCreateThreadEx for ...

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit