A searchable index of Hacker News “Who is hiring?” job postings.
← All postings · August 2019 thread
CipherTechs
Original posting
CipherTechs | Blue Team Director | New York City, NY | ONSITE OR REMOTE | Full time | https://www.ciphertechs.com/job/blue-team-director/
CipherTechs is seeking experienced technical leader to drive development of established cyber security defense monitoring and management platform. The candidate in this technical leadership position will be given autonomy to evaluate and further develop security operations centers (SOC) coverage, security event monitoring platform, operating procedures, data collection, post-processing, alerting and automation. This is a management role but with emphasis on technical leadership. Personal and communications soft skills are required to foster and provide technical leadership to the internal teams. for the theoretical foundation of the legal knowledge library.
Ethos of Position
Lead the technical strategy and development for MSSP monitoring and management platform.
Analyse and evaluate current MSSP monitoring deployment model.
Analyse and evaluate effectiveness of current data analysis and processing platforms.
Identify, compare, select and implement technology solutions to meet current and future needs of MSSP services.
Provide technical defensive leadership and training to the MSSP monitoring and management teams.
Keep abreast of new trends and best practices in technology landscape and propose potential solutions to enhance efficiency of security services.
Take the initiative in thought leadership, innovation and creativity.
Work closely with other company departments – Offensive Security, Audit/Compliance and Sales on platform development.
Interface with new and current clients to understand and develop appropriate service offerings.
Qualifications
Broad knowledge of monitoring and data collection and analysis platforms SIEM, ELK, Graylog, Kibana, Elasticsearch.
Understanding of MITRE ATT&CK framework.
Experience in IOC and threat hunting across complex enterprise environments.
Experience with endpoint detection and response (EDR) technologies.
Knowledge of Powershell and Python.
Experience with intrusion detection and prevention technologies.
Experience with messaging queues, high availability, capacity planning, and scalability.
Experience with Windows Event Forwarding and Sysmon.
5+ years previous working experience as a senior technical professional services sector.
5+ years previous working experience in the cybersecurity or information security industry.
In-depth knowledge of systems architecture, cloud, networking design and development.
Please email your resume to jobs@ciphertechs.com