CSIRT Analyst – Incident Response for

По эл. почте

Крайний срок: 28 Июнь 2024

Условия контракта: Постоянный

Категория: Другие ИТ

Тип вакансии: Полная ставка

Местонахождение: Ереван

Описание работы

Are you looking for a job that will contribute to empower Armenians to systematically improve their lives and wellbeing, provide opportunities for private enterprises to enhance competitiveness, ensure greater efficiency and good governance in public institutions, and enable the development and widespread use of personalized IT solutions built around the needs of everyday citizens? Then we have an exceptional opportunity for you!

Computer Emergency Response Team (CERT) or Computer Security Incident Response Team (CSIRT) is a group of information security experts responsible for the protection against, detection of and response to an organization’s cybersecurity incidents.

As IR Analyst you will work with other CSIRT experts, each one predominantly focused on the specific security domain for which they are most competent, but all closely cooperating as a team, coordinated by the CSIRT Team Manager.

We encourage you to apply even if you do not satisfy all the skills and knowledge requirements.


Обязанности

  • Going through the whole incident response process starting with preparation and ending with lessons learned and writing a report.
  • Obtaining evidences in collaboration with users and sysadmins.
  • Maintain, operate, and enhance IR infrastructure.
  • Develop security plans, policies, procedures and incident response training materials.
  • Detail guidelines for users on what security issues should be reported and outline a process for making a report.
  • Create incident response playbooks for common incident types.
  • Reevaluate the effectiveness of procedures every time an incident occurs.

Требования

  • Bachelor’s degree in Information Technology, Computer Science, Management Information Systems or closely related field is required.
  • Knowledge of Windows, Linux, and macOS operating systems.
  • Knowledge of Digital Forensic Industry standards, chain of custody procedures, forensic methodologies, best practices and evidence handling.
  • Experience of working with incident handling/management tools.
  • Understanding of MITRE ATT&CK framework.
  • Web security including understanding of the underlying protocols.
  • Understanding how debuggers, disassemblers and decompilers work.
  • Scripting / automation experience using Python, Go, PowerShell, Bash etc.
  • Using malware detonation sandboxes.
  • Basics of cyber-threat intelligence sharing platforms.
  • Ability to write technical reports
  • Basics of Threat Intelligence lifecycle.
  • Strong analytical and problem solving skills, including the ability to deal with a large amount of information in a limited time
  • Ability to establish and maintain effective working relations with coworkers in an international and multi-disciplinary work environment
  • A high degree of commitment and flexibility
  • Good communication skills in English and in Armenian, both orally and in writing
  • A focus on constant learning and improvement of technical and personal skills
  • Experience with a vast array of IT technologies and the ability to quickly master new ones.

Требуемый уровень кандидата: Средний уровень

Дополнительная информация

About the Employer:

The Information Systems Agency of Armenia (“ISAA of Agency”) is responsible for ensuring the technological foundations and development of the digital society in RA. This new institutional setup has been launched to ensure Armenia’s digitization conforms to a unified national architecture, with the Agency providing the technical resources, organizational capabilities, legal/regulatory framework, and platform for collaboration needed for different state departments, as well as the private sector, to effectively implement this vision.

To execute the society-level transformation, the Government and the Central Bank of Armenia have agreed that, under the leadership of the Government, the Central Bank will serve as the implementing agency and co-finance the endeavor for the next 2-3 years (with the overall reform taking up to 5 years), working in close collaboration with the Ministry of High-Tech Industry.

The Government leadership role will be provided by the new Information Systems Management Board, which has been established by the Prime Minister Decree chaired by the Deputy Prime Minister, who also serves as the Chief Information Officer (“CIO”) of Armenia. The CIO is responsible for developing the digitalization policy, launching development initiatives (locally and with international cooperation), managing the digital services portfolio and strategy, managing the public service delivery policy and reforms, ensuring a common approach among all stakeholders, and coordinating the processes of international funding and cooperation.

The Central Bank provides the secretary function to the Board and, as an interim solution, the ISSA has been established under the auspices of the Central Bank. The Agency will also house the Civilian Cybersecurity Operating Center and Cybersecurity Emergency Response Team, and will over time develop into a full-fledged regulatory and supervisory body of the digital infrastructure. 

VISION

Open and quality data is a critical asset, translating into national wealth! Developing an advanced and secure environment, enablers, and infrastructure is a necessary precondition for transforming Armenia into the e-Society and e-Economy. The key mission of the digital society and economy would be to empower the population to continuously improve their lives and wellbeing, provide opportunities for the private sector to enhance competitiveness, and ensure greater efficiency and good governance of public institutions through the development and widespread use of ICT solutions built around citizen experience and lifecycle. These imply Seamless, Proactive, Convenient and Personalized services.

 

Пожалуйста, непременно укажите, что вы узнали о данной вакансии на staff.am.

Профессиональные навыки

Windows Server

Личные навыки

Гибкость

Внимательный

Отклик по эл. почте

Поделитесь этой вакансией в соцсетях.

Контакты

Веб-сайт http://818.consulting/

Телефон: +37433818818

Адрес: 1 Amiryan st, office 320, Ереван, Армения

Найти 818 Consulting в социальных сетях