Network Security Response Engineer

| Remote
Sorry, this job was removed at 3:05 a.m. (PST) on Wednesday, January 12, 2022
Find out who’s hiring remotely
See all Remote jobs
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

We are ExtraHop. We're on a mission to provide security teams with the intelligence they need to confront and stop advanced threats like supply chain attacks, zero day exploits, and ransomware attacks. Cyber attackers still have the advantage. We’re taking it back with creativity, intellectual curiosity, and a sense of humor. Are you ready to help us reclaim the upper hand?

Extrahop is looking for a Network Security Response Engineer.

Responsibilities

  • Assist team leads to establish, maintain and execute all components of an incident response plan, from incident intake through root cause analysis, technical remediation analysis, and reporting
  • Perform analysis of network log files from a variety of sources (e.g., network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security.
  • Assist in execution of cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation
  • Perform initial, forensically sound collection of network data and telemetry to inspect to discern possible mitigation/remediation on enterprise systems.
  • Perform real-time network cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs)
  • Assist in accurately documenting an incident from beginning to end as well as evidence handling. 
  • Partner with customer Engineering teams to harden the environment, respond to incidents, and lead investigations;
  • Make recommendations to defend customer networks against unauthorized access, modification, and/or destruction;
  • Respond immediately to security incidents and provide post-incident analysis;
  • Maintain knowledge of current security trends and be able to clearly communicate them to the team and customers;
  • Identify abnormalities and report violations using security tools such as ExtraHop;

Requirements

  • Experience in IT Security Digital Forensics or IT Security Operations
  • Experience in Incident Response in a global corporate enterprise
  • Experience in fast-paced investigations.
  • Ability to present highly technical information to non-technical audiences.
  • 2+ years of experience in Information Security;
  • Bonus: Experience with cloud technologies such as AWS, GCP, and/or Azure;
  • 1+ years of experience in incident response and/or threat hunting;
  • Familiarity with tools such as SIEM, IDS/IPS, EDR, NDR, firewalls, and more;
  • Experience implementing a technology framework, such as ISO 27001, NIST CSF, or NIST SP 800 53R5.
  • Familiarity with ExtraHop is a plus
  • Technical know-how of security network devices (switches, antivirus, firewalls, cryptography, SIEM) and any other security networking hardware or software tools
  • Knowledge of Firewalls and routing; switching experience is an added advantage
  • Reviewing system changes for security implications and recommending improvements
  • Knowledge of networking concepts such as WAN connectivity, transport types and protocols, and experience with wireless technology and Wireless deployment.
  • Experience working with stakeholders at an Operational Level
  • Good team player, Self-confident, motivated, and independent
  • Excellent communication skills
  • Bachelor’s degree or equivalent in business, information systems or Computer engineering/science
  • Ability to remain calm while multitasking and working under pressure in a fast-paced environment
  • Attention to details and good problem-solving skills.

Abilities and Skills:

  • Design incident response for networks
  • Apply techniques for network-based intrusions using intrusion detection technologies
  • Identifying, capturing, containing, and reporting malware via network transmission
  • Securing network communications
  • Recognizing and categorizing types of vulnerabilities and associated network attacks.
  • Protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters).
  • Performing network damage assessment.
  • Assist in the production of a root cause analysis.
  • Properly handle evidence related to an incident.  #LI-BKW

ABOUT EXTRAHOP 

Cyberattackers have the advantage. ExtraHop is on a mission to help you take it back with security that can’t be undermined, outsmarted, or compromised. Our dynamic cyber defense platform, Reveal(x) 360, helps organizations detect and respond to advanced threats––before they compromise business operations. We apply cloud-scale AI to petabytes of traffic per day, performing line-rate decryption and behavioral analysis across all infrastructure, workloads, and data-in-flight. With complete visibility from ExtraHop, enterprises can detect malicious behavior, hunt advanced threats, and forensically investigate any incident with confidence.

ExtraHop is recognized by leading organizations for both its innovation in the market and its commitment to building a world-class team. In 2020, we’ve already been named a “Best Place to Work” by Inc., Computerworld, BuiltIn Seattle and Seattle Business Magazine, and we’ve been named to Wealthfront’s Career-Launching Companies list for the last four years. Forbes named ExtraHop to its 2020 AI 50 List, as well as the list of “20 Best Cybersecurity Startups to Watch.” In 2019 and 2020, JMP Securities put ExtraHop on its Elite 80 List as one of the most strategically positioned private companies in the cybersecurity industry. SC Media has named ExtraHop an Industry Innovator for enterprise network detection and response for the past two years.

We offer compelling benefits* to our employees, including:

  • Health, dental, and vision benefits
  • Generous Paid Time Off and Holidays + Paid Volunteer Time 
  • FSA and Dependent Care Accounts + EAP where applicable
  • Educational Reimbursement 
  • 401k or Pension where applicable
  • Pet Insurance (US only)

*Benefits outside of the US vary by region.

We are intentional about our culture, diversity, and inclusion, and we welcome everyone to come ready to participate in contributing to this truly unique environment. At ExtraHop, we believe that the best products, services, and companies are built by strong teams that include a diversity of backgrounds, perspectives, ideas, and experiences. We are committed to supporting and enabling growth and opportunity for every employee at every level. This is the foundation of our success. 

We are equally committed to equal employment opportunity, and it is foundational to how we recruit and hire our talented team. Employment is determined based upon capabilities and qualifications without discrimination on the basis of race, creed, color, religion, sex, gender identification and expression, marital status, military status or status as an honorably discharge/veteran, pregnancy (including potential pregnancy, pregnancy-related conditions, and childbearing), sexual orientation, age (40 and over), national origin, ancestry, citizenship or immigration status, physical, mental, or sensory disability , HIV/AIDS or hepatitis C status, genetic information, status as an actual or perceived victim of domestic violence, sexual assault, or stalking, or any other protected class as established by law.

Our people are our most important competitive advantage, leading the charge against nation-states, cyber criminals, and insider threats. Ready to join us?   

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Location

ExtraHop is located in the heart of downtown Seattle, with easy access to transportation, restaurants, retail, entertainment and stunning views.

Similar Jobs

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about ExtraHopFind similar jobs