Title: Info Security Analyst
Location: San Francisco, CA
Type: FTE
Responsibilities include:
System Vulnerability & Configuration Management:
- Adhere to existing timelines to execute the identification and tracking of vulnerabilities/configuration deviations
- Create/Customize vulnerability/system configuration scan profiles
- Review and validate scan results for accuracy, errors, and full population
- Modify vulnerability/system configuration scan profiles (such as recast)
- Upload validated scan results into correlation engine for reporting
- Collaborate on remediation efforts or filing of technology exceptions with system owners
- System administration, maintaining and managing system uptime and operation
Splunk:
- Knowledge/experience with ingesting additional data sources
- Work with security team members with monitoring of Enterprise Security and filter to assist in identification of significant events
- Develop queries that will enhance incident response, alerts, and dashboards
- Assist and monitor for proper operation and performance of Splunk connectors and logs
- Splunk system administration, maintaining and managing system uptime and operation
Phantom:
- Phantom Experience with a deep understanding of:
- Configuring apps and assets
- Mission control and case management
- Playbook creation and the visual playbook editor
- Interacting with the team/users during playbook execution
- Integrating workflows with other systems via APIs
- Python Programing Experience
- Develop security focused automation/orchestration
- Good understanding of security tools, as well as how to integrate and troubleshoot when used in playbooks