Second Line Security Event Analyst Threat Hunting

il y a 3 semaines


Mons, Belgique MCR, LLC. Temps plein

**Get an edge on advancing your career**

If you’re ready to meet complex challenges, we’re ready to meet you.

MCR is a fast-growing global company headquartered in McLean, VA that supports defense and civilian agencies, NATO, and European ministries that face some of the most complex mission challenges in the world. If you are the best at what you do, we are looking for you. At MCR, you will contribute to programs and projects that matter—to your career, to your fellow citizens, and to your nation. You will use the latest technologies, techniques, and tools. You will be trusted to work independently and make decisions. You’ll be rewarded with top-tier compensation and benefits.

Do you have previous second line security event analyst threat hunting support experience? Are you looking to play a meaningful role in a creative environment? If so, we are searching for someone like you to join our team of experts supporting NATO

**DESCRIPTION OF DUTIES**

Your daily role responsibilities with our company will be as follows:

- Conduct detailed investigation and research of security events within NATO Cyber Security Centre (NCSC) team
- Analyze firewall, IDS, anti-virus and other sensor produced system security events and present findings
- Provide detailed technical reports about incidents and capability improvements
- Share security event/incident information with stakeholders via presentations and technical reports
- Appropriately leverage the comprehensive extended toolset (e.g. Log Collection, Intrusion Detection, Packet Capture, VA, Network Devices etc) to identify malicious activity. Be able to recommend improvements to enable enhancing investigations
- Provide Subject Matter Expertise supporting the end-to-end Cyber Security Incident Handling process
- Propose possible optimisations and enhancement which help to both maintain and improve NATO's Cyber Security posture
- Implement threat hunting and create technical reports related to threat hunting activities when requested.
- Analyze intelligence information gathered from both internal and external threat intelligence resources.
- Create technical use case documantation for threat hunting.
- Identify gaps in IT infrastructure by mimicking an attacker s behaviors and responses when requested.
- Provide expert investigative support of large scale and complex security incidents.

**REQUIRED QUALIFICATIONS**

If you have passion for the work described above, here are the basic qualifications we are looking for:

- Degree or equivalent work experience in related field other relevant discipline or equivalent combination of qualifications
- Expert level in at least three of the following areas and a high level of experience in several of the other areas;
- Security Incidents Event Management products (SIEM) - e.g. Splunk,
- Network Based Intrusion Detection Systems (NIDS) - e.g. SourceFire, Palo Alto Network Threat Prevention
- Host Based Intrusion Detection Systems (HIDS)
- Full Packet Capture systems - e.g. Niksun, RSA/NetWitness,
- A variety of Security Event generating sources (e.g. Firewalls, IDS, Routers, Security Appliances)
- Computer forensics tools (stand alone, online and network)
- Computer incident response centre (CIRT), computer emergency response team (CERT)
- Computer security tools (Vulnerability Assessment, Anti-virus, Protocol Analysis, Anti-Virus, Protocol Analysis, Anti-Spyware, etc)
- Proficiency in Intrusion/Incident Detection and Handling,
- Solid knowledge and experience in Splunk Enterprise Security suite. Exceptionally this requirement can be compensated with proven level of expertise in network analysis and threat hunting.
- In possession of an active National and/or NATO Secret security clearance

**DESIRED SKILLS**
- Industry leading certification in the area of Cybersecurity such as GCIA, GNFA, GCIH.
- A good understanding of Security, Orchestrations, Automation and Response (SOAR) concepts and their benefits to the protection of CIS infrastructures.
- A solid understanding of Information Security Practices; relating to the Confidentiality, Integrity and Availability of information (CIA triad.)
- Solid knowledge and experience in threat hunting in corporate/government level environment
- Strong knowledge of malware families and network attack vectors
- Knowledge and experience in analysis of various threat actor groups, attack patterns and tactics, techniques, and procedures (TTPs), deep analysis of threats across the enterprise by combining security rules, content, policy and relevant datasets
- Ability to analyze attack vectors against a particular system to determine attack surface
- Ability to produce contextual attack models applied to a scenario

**EQUAL OPPORTUNITY EMPLOYER**

MCR, LLC is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability,



  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Second Line Security Event Analyst** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Expert level in 3+ of the following areas and a high level of experience in several of the other areas: -...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Second Line Security Event Analyst** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Expert level in 3+ of the following areas and a high level of experience in several of the other areas: -...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Second Line Security Event Analyst (SLSEA) - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Expert level in at least three of the following areas and a high level of experience in several of the other...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C002521 / Mons **Introduction**: As a Cyber Security Threat Hunting Analyst, the consultant will work alongside a team of Security Analysts to proactively detect cyber security attacks against NATO networks. They will research and react to the latest threats, using industry...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Threat Hunting Analyst - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Expert level in at least three of the following areas and a high level of experience in several of the other areas -...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. As we enter our 50th year in business, we are known for continuous innovation for government customers, both long-established and newly acquired, as our capabilities expand around the globe. Our work is state-of-the-art and made...


  • Mons, Belgique MCR, LLC. Temps plein

    **Get an edge on advancing your career.** If you’re ready to meet complex challenges, we’re ready to meet you. MCR is a fast-growing global company headquartered in McLean, VA that supports defense and civilian agencies, NATO, and European ministries that face some of the most complex mission challenges in the world. If you are the best at what you do,...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C002337 / Mons **Skills, knowledge, experience required**: - OR experience that is/are of interest to NCIA; that is, at least 7 years extensive and progressive expertise in the duties related to the function of the post; - Expert level in at least three of the following...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C002337 / Mons **Skills, knowledge, experience required**: - OR experience that is/are of interest to NCIA; that is, at least 7 years extensive and progressive expertise in the duties related to the function of the post; - Expert level in at least three of the following...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Threat Hunting Analyst** - **Working Location**:Mons, Belgium** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Significant demonstrable experience in Cyber Security related environment - Experience in producing accurate and meaningful reports, both technical and...


  • Mons, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: Systems Planning and Analysis, Inc. (SPA) is a well-established and progressive defense contracting company in the Northern Virginia area just a few miles south of the Pentagon. We are a professional services firm established in 1972 that has a long-standing reputation for unrivaled technical and analytical support to some of the top decision...

  • Security Event Analyst

    il y a 1 semaine


    Mons, Belgique Uni Systems Temps plein

    At Uni Systems, we are working towards turning digital visions into reality. We are continuously growing and we are looking for a professionalSecurity Event Analyst to join our UniQue Mons team. In this role, you will have the opportunity to work closely with our customers in the public sector and you will be responsible for developing new business by...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **First Line Security Event Analyst (FLSEA)** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / **SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Comprehensive knowledge of the principles of computer and communications security including...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: 2024-0324 / Mons **Skills, knowledge, experience required**: - Experience in: - Threat hunting and threat hunting methodologies; - Writing Splunk queries using SPL; - Analyzing Sysmon events. - Good knowledge of networking protocols; - Knowledge of Python and/or PowerShell is...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C000244 / Mons **Introduction**: As a First Line Security Event Analyst (FLSEA), the incumbent will perform initial analysis of logs and network traffic, determine alert severity and escalate when required. The analyst will collate information and present findings in a...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C001782 / Mons **Skills, knowledge, experience required**: - The lack of a degree may be compensated by at least 3 years of relevant experience in field of cyber security analysis; - Comprehensive knowledge of the principles of computer and communications security including...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C001782 / Mons **Skills, knowledge, experience required**: - The lack of a degree may be compensated by at least 3 years of relevant experience in field of cyber security analysis; - Comprehensive knowledge of the principles of computer and communications security including...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C001782 / Mons **Skills, knowledge, experience required**: - The lack of a degree may be compensated by at least 3 years of relevant experience in field of cyber security analysis; - Comprehensive knowledge of the principles of computer and communications security including...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **First Line Security Event Analyst (FLSEA) 3 - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Comprehensive knowledge of the principles of computer and communications security including knowledge of...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **First Line Security Event Analyst (FLSEA) 1 **Working Location**:Mons, Belgium - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Comprehensive knowledge of the principles of computer and communications security including knowledge of TCP/IP...