Senior Consultant 1 (hybrid-remote)Trenton, NJ, United StatesAbout the JobThis is a hybrid-remote roleExperience in the field of Information Systems Security required.1. Significant Experience with Google Chronical, McAfee SIEM to (a) configure and implement rules, data sets, APIs, third party cloud API integration to facilitate ingestion of log sources like o365, Azure AD, AWS (b) migrate and implement McAfee SIEM log data sets to Google Chronical (c) configure IOC, and alerts (d) conduct searches raw logs, investigate alerts, assets, domains, users, IPs, files, Google Cloud Threat Intelligence (GCTI). (e) configure and monitor events using rules, and run rules against historical data (f) working experience with YARA-L language2.
Experience with Firewall and Firewall rules, IP addressing, subnets, ports and VPN. (a). configure and implement firewall rules (b). audit firewall rules and network segmentation. (c). verify and submit firewall rule requests3.
Experience with Web filtering tool specifically with Zscaler (ZIA), and Cisco Umbrella (a). implement new web filtering solution Zscaler ZIA (b) test, verify and implement policies, create groups, grand access to groups.4.
Experience with NextGen Antivirus Crowdstrike to investigate, and remediate incidents, alerts, IOCs, and IOAs.5.
Experience with AD, GPOs, Security groups, Windows Servers, Desktop OS.6.
Experience in the field of Information Systems Security required. Analyst must have working knowledge of relevant FISMA/NIST information security regulations and guidelines.7. Working knowledge of IT Security Best Practices regarding (a) networks and networking including protocol analysis, anomaly detection, and troubleshootingRequired Skill-Set-prior hands on experience configuring, migrating and implement rules, data sets, APIs, and third party cloud API's for the Google Chronicle SIEM2 years of experience-prior hands on experience configuring, migrating and implementing SIEM rules using McAfee SIEM3 years of experience-prior experience documenting, creating and provisioning network firewall rule sets3 years of experience-prior hands on knowledge and experience conducting security analysis using Crowdstrike in a professional environment3 years of experience-prior hands on knowledge and experience conducting group policy using Active Directory, Server and Desktop OS in a professional environment3 years of experience-prior hands on knowledge and experience of TCP/IP segmentation, ports and DNS protocols3 years of experienceAbility to demonstrate effective written and verbal communication skills.3 years of experience