Description: This position is within the ISS Threat Vulnerability Mgmt team in Information Security Services (ISS). The ISS Threat Vulnerability Mgmt team consists of the following functions:Intrusion Detection / PreventionAnomaly DetectionLog Monitoring / CorrelationFraud DetectionAnti-PhishingForensics InvestigationsMonitoring emerging threatsIncident ResponseAnti-MalwareHost based FirewallFile IntegrityMonitoring emerging vulnerabilities and malwarePatch managementThe focus of this role is Log Monitoring and Correlation and Fraud Detection. Responsibilities include:Help manage the log monitoring process for Operating System (Windows UNIX) and Database audit logs.Create alerts to identify anomalous behavior observed in Operating System and Database audit logs using the SIEM capabilities of a log collection system.Respond to alerts generated as part of an incident response teamCreate Correlation rules to increase the accuracy security alerts.Using the SIEM capabilities of a log collection system create correlation rules on the logs from various security devices collected within the system. Respond to alerts generated as part of an incident response teamHelp create and respond to rules that detect fraudulent activity.Use web development knowledge to create accurate fraud detection signatures and rules for web applications.Analyze data to identify fraudulent activity that is undetectable and create signatures and rules in response.Tune and adjust signatures and rules as needed.
Welcome to iHireSecurity
To register for this job and view more jobs like this, please take a minute to complete your free registration with iHireSecurity.