knowledge of IPv4/IPv6, TCP networking protocols, and the OSI model. Expertise in security tools: SIEM (ArcSight, Sentinel, QRadar, Splunk), EDR (Microsoft Defender, FireEye), IDS/IPS, firewalls, proxies, web application firewalls, and anti-virus technologies. Strong knowledge of Linux and Windows operating systems. Familiarity with SOAR technologies (e.g. More ❯
and network analysis tools (Splunk, Wireshark, SOF-ELK). Exhibit skills using common Incident Response and Security Monitoring applications such as SIEM (Splunk), EDR (FireEye HX, CrowdStrike Falcon, McAfee mVision EDR), WAF, IPS. Demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs). Have at More ❯
Nottingham, Nottinghamshire, East Midlands, United Kingdom Hybrid / WFH Options
Experian Ltd
and cyber-attack tactics, techniques, and procedures (TTPs). Exhibit skills using common Incident Response and Security Monitoring?applications such as SIEM (Splunk), EDR (FireEye HX, CrowdStrike Falcon, McAfee mVision EDR.), WAF, IPS Additional Information Benefits package includes: Flexible work environment, working hybrid or in the office if you prefer. More ❯
to stakeholders Preferred Qualifications: Direct experience with current advanced persistent threats (APT) Undergraduate degree or equivalent experience Deep expertise with EnCase Experience with NetWitness, FireEye, Splunk, and/or RSA Security Analytics Knowledge of Volatility, Rekall and/or Mandiant Redline Knowledge of Chain of Custody process and procedures Network More ❯