Junior CSIRT Security Engineer
⚲ Warszawa
500 - 700 PLN/dzień netto (B2B)
Wymagania
- Tanium
- Cyber threat intelligence
- Trellix
- ServiceNow
- Elasticsearch
- CTI
Opis stanowiska
Key Responsibilities
• Incident Handling & Response: Manage and respond to cybersecurity incidents.
• Investigations & Forensics: Conduct investigations, including digital forensics.
• Data Leak Protection: Implement and monitor data leak protection measures.
• Phishing Identification: Detect and respond to phishing attempts.
• Threat Hunting: Conduct threat hunting campaigns to proactively identify risks.
• Cyber Threat Intelligence: Produce and analyse cyber threat intelligence.
• Vulnerability Management: Identify, assess, and manage vulnerabilities.
Core Competencies & Education
• Preferably MSc in Information Security.
• Fluent in English (written & verbal); French is a plus.
• Autonomy and ability to deliver within set timeframes.
• Strong organisational and analytical skills.
• Good interpersonal and communication skills; effective team player.
• Ability to function effectively in a matrix structure.
• Certifications such as GREM, Blue Team Level 1 (BTL1), Blue Team Level 2 (BTL2), Certified Red Team Expert (CRTE), or Certified Red Team Professional (CRTP) are a plus.
Experience & Technical Skills
• Proven record as an incident handler or cyber threat intelligence (CTI) analyst.
• Proven experience in digital forensics.
• Experience using ServiceNow.
• Experience with EDR (e.g., Tanium), Antivirus (e.g., Trellix), SIEM (e.g., Elastic Search), and security tools (Netcraft, Virustotal, Symantec DLP, Ghidra).
• Detailed technical knowledge of attacker tactics, techniques, and procedures.
• Interest in all aspects of security research and development.
Engagement & Methodology
• Engagement type: Time & Material (T&M).
• Delivery methodology: Agile with bi-weekly sprints.
• Governance: Quarterly planning, daily meetings, sprint planning, demos, and retrospectives.
• Incident Handling & Response: Manage and respond to cybersecurity incidents.
• Investigations & Forensics: Conduct investigations, including digital forensics.
• Data Leak Protection: Implement and monitor data leak protection measures.
• Phishing Identification: Detect and respond to phishing attempts.
• Threat Hunting: Conduct threat hunting campaigns to proactively identify risks.
• Cyber Threat Intelligence: Produce and analyse cyber threat intelligence.
• Vulnerability Management: Identify, assess, and manage vulnerabilities.
Core Competencies & Education
• Preferably MSc in Information Security.
• Fluent in English (written & verbal); French is a plus.
• Autonomy and ability to deliver within set timeframes.
• Strong organisational and analytical skills.
• Good interpersonal and communication skills; effective team player.
• Ability to function effectively in a matrix structure.
• Certifications such as GREM, Blue Team Level 1 (BTL1), Blue Team Level 2 (BTL2), Certified Red Team Expert (CRTE), or Certified Red Team Professional (CRTP) are a plus.
Experience & Technical Skills
• Proven record as an incident handler or cyber threat intelligence (CTI) analyst.
• Proven experience in digital forensics.
• Experience using ServiceNow.
• Experience with EDR (e.g., Tanium), Antivirus (e.g., Trellix), SIEM (e.g., Elastic Search), and security tools (Netcraft, Virustotal, Symantec DLP, Ghidra).
• Detailed technical knowledge of attacker tactics, techniques, and procedures.
• Interest in all aspects of security research and development.
Engagement & Methodology
• Engagement type: Time & Material (T&M).
• Delivery methodology: Agile with bi-weekly sprints.
• Governance: Quarterly planning, daily meetings, sprint planning, demos, and retrospectives.
🔍 Dekoder Ogłoszenia
🔴
Junior CSIRT Security Engineer
Pomimo tytułu 'Junior', zakres obowiązków może być szeroki i wymagać doświadczenia, które zazwyczaj kojarzone jest z bardziej seniorskimi rolami.
🔴
Autonomy and ability to deliver within set timeframes
Oczekuje się, że będziesz pracować samodzielnie i efektywnie, często pod presją czasu, bez ciągłego nadzoru.
🔴
Ability to function effectively in a matrix structure
Będziesz musiał radzić sobie z pracą dla wielu przełożonych lub zespołów, co może oznaczać niejasne priorytety i konflikty zadań.
🔴
Proven record as an incident handler or cyber threat intelligence (CTI) analyst
Chociaż ogłoszenie jest na stanowisko 'Junior', wymagane jest 'udowodnione doświadczenie', co może oznaczać, że oczekiwane są już pewne konkretne osiągnięcia.
🟡
Certifications such as GREM, Blue Team Level 1 (BTL1), Blue Team Level 2 (BTL2), Certified Red Team Expert (CRTE), or Certified Red Team Professional (CRTP) are a plus
Posiadanie tych certyfikatów jest 'plusem', ale w kontekście 'Junior' może sugerować, że kandydaci bez nich będą mieli mniejsze szanse, jeśli inni je posiadają.