SENIOR PRINC. INCIDENT/THREAT RESPONSE/FORENSIC INVESTIGATOR-MTN, CA
Job Field: Legal Jobs
Location: Mountain View, CA
Salary: $Not stated
JOB SUMMARY:
</tr>
<tr><td valign="top" width="450"><b>The Security Threat Response and Investigations
Team is chartered to provide rapid proactive and
reactive threat response and special
investigations to the Symantec Corporation. We are
looking for an individual contributor to
compliment our existing team to do the following
Conduct highly-confidential internal
investigations into violations of Acceptable Use
Policies and other activities counter to the
success of the Symantec Corporation.
Be a first responder for cyber-security
incidents, monitor alerts, events and incidents
identified through security event management
tools, virtual SOC, etc. and confirm validity of
identified incidents
Provide education to existing staff on the
emerging trends of security operations
methodology, information security concepts,
security analysis and monitoring.
Differentiate false positives from true
intrusion attempts track the latest in security
vulnerabilities, advisories, incidents, and
penetration techniques, review periodic
vulnerability scan results
Manage issues resulting from
investigation, work collaboratively with technical
and business leads to follow up accordingly to
security incident management procedures and
processes, and assist in development and
resolution of daily reports.
Provide comprehensive computer forensic
investigations Acquire, collect, document, and
preserve evidence from various forms of electronic
media and equipment.
Conduct examination of digital media.
Identify, document and prepare reports on relevant
findings.
Handle evidence in accordance with company
policies and forensic lab best practices.
Participate in the improvement and
development of process/procedure manuals and
documentation
Conduct quarterly Information Security
Site Assesment Visits
Conduct highly-confidential internal
investigations into violations of Acceptable Use
Policies and other activities counter to the
success of the Symantec Corporation.
Be first responder for cyber-security
incidents, monitor alerts, events and incidents
identified
QualificationsDemonstrated expertise in
Security Operations methodology, information
security concepts, security analysis and
monitoring.
Demonstrated expertise in presenting
detailed technical information protection concepts
in business terms create reports and
visualizations of security attacks
Demonstrated computer forensic
investigations experience.
Demonstrated ability to excel in a team as
well as a self-sufficient individual contributor.
Have expert-level knowledge of typical
attack vectors and information systems penetration
techniques.
Have a solid working knowledge of
networking technology and tools, firewalls,
proxies.
Advanced proficiency with systems
administration in Unix and Windows platforms.
Advanced proficiency with vulnerability
management, scanning and monitoring tools.
Excellent technical writing and
presentation skills.
Experience with security regulations in
compliance legislation and other directives
including PCI and Sarbanes-Oxley and international
Security Standards OWASP and ISO 27002.
CISSP, SANS GCIH, EnCase Certified
Examiner is highly desirable but not required.
Bachelor Science Degree, preferably in
Computer Science or 5 years comparable experience.
For more detail please see the url.
KEY REQUIREMENTS:
None Bachelors degree