Are you passionate about leading global Cybersecurity innovation and change? Do you thrive in environments that encourage critical thinking, creativity, and challenging the status quo?
Detection and Response team is looking for an analyst for a hybrid role with involvement in Threat Hunting and Detection Engineering. In this role, you will assist in identifying and analyzing security threats through proactive threat hunting and monitoring of network activity. You will support detection engineering efforts by helping to develop and implement detection rules, that will help identify and defend the company infrastructure against cyber threat actors.
This position allows insight into various aspects of cyber security and exposes the engineer to a multitude of state-of-the-art security tools. As such, this position is a great base for further professional growth in many directions.
Duties and Responsibilities
· Assist in identifying and analyzing potential security threats by monitoring network traffic and system logs for unusual activity.
· Conduct proactive threat hunting to discover security threats that may have bypassed existing defenses.
· Collaborate with senior analysts to help develop and implement detection rules and alerts within security tools and platforms.
· Assist in evaluating vulnerabilities in systems and applications to recommend improvement measures.
· Maintain clear and detailed documentation of findings, methodologies, and response actions for learning and knowledge-sharing purposes.
· Stay current with the latest cybersecurity trends and emerging threats, adapting skills and knowledge accordingly.
· Work closely with the cybersecurity teams to share insights and enhance overall threat detection and response capabilities.
· Provide technical assistance and support related to cybersecurity incidents and threats, ensuring a proactive approach to safeguarding assets.
Key Requirements
· Bachelor’s degree in Cybersecurity, Computer Science, or equivalent experience.
· 1+ years of experience in Information Security or Information Technology fields.
· 1+ years of experience in Threat Intelligence.
· Experience with SIEM and EDR solutions.
· English language proficiency
· Good technical knowledge of Windows operating systems and networking.
· Analytical skills in threat, vulnerability, and intrusion detection analysis.
· Keen understanding of threat vectors as well as exfiltration techniques.
· Awareness of cyber security landscape.
· Willingness to learn.
· Customer-oriented mindset.
We value
· Experience with Splunk Enterprise Security.
· Knowledge in cloud security (Azure, AWS, MS Office 365).
· Knowledge of Linux operating system.
· Experience with dynamic and static malware analysis
· One or more widely recognized certifications from renowned institutions such as GIAC/SANS, ISC/CISSP or Microsoft.
· Working knowledge of Endpoint Detection and Response tools (e.g., Crowdstrike Falcon, Carbon Black, FireEye HX or Windows Defender ATP).
· Knowledge of scripting in Python or Powershell.
· Understanding of ITIL process, such as Incidents, Change & Problem management.
· Experience in working in a global, process-driven organization.
Job details are sourced from the employer's original posting.
Open job postingAbout the company
Honeywell Automation and Control Solutions (ACS) team members are part of a global, 65,000-employee network of smart and entrepreneurial, hard-working and inquisitive professionals who solve problems every single day. Put simply, our employees create safer, more energy efficient, more secure and more productive environments for our customers around the world. ACS turnout gear protects firefighters from extreme temperatures; our thermostats keep homeowners comfortable; our security systems ensure the safety and security of facilities from backyard sheds to Las Vegas casinos; our rugged mobile computers track packages and goods as they are shipped across the globe; our sensors measure temperature and pressure in hemodialysis machines and other medical devices. ACS energy management services have helped big-box retailers achieve double-digit reductions in their peak energy demand, and our process control systems are used in the world's top 50 oil refineries. As much as we are a product and solutions company, we are a technology company. In fact, our technology is in 150 million homes and 10 million buildings. Based in Minneapolis, Minnesota, with operations in more than 100 countries , ACS is organized into seven strategic business units -- five focused on products and two on services and solutions. ACS is an approximately $15 billion division of Honeywell, a Fortune 100 industrial technology company based in Morristown, New Jersey. We'd love to have you consider coming to work with us. We are Honeywell!