Associate Threat Hunter

Singapore, Singapore

Job Description

WithSecure is world renowned for its End Point Protection solutions - providing preventative and proactive protection to tens of millions of computer and smart devices globally. Over the past few years, the company has successfully entered new markets and has increased its portfolio of solutions to include Cyber Consulting and Managed Detection and Response Solutions.Our Managed Detection and Response (MDR) service provides a world leading managed service that detects and responds to cyber-attacks on behalf of our clients using a strong combination of people, process and technology. Much of the technology is designed and built in house by the WithSecure engineering team specifically to support the managed service or as leveraged products that WithSecure also provides to the wider market.MDR compromises several sub teams: the threat hunting team who uncover adversaries on our client's networks, incident responders who contain attacks, the research team who uncover new and emerging offensive and defensive techniques, and the Technical Operations team who maintain and develop the attack detection infrastructure to ensure it remains at the bleeding edge.Key ResponsibilitiesWithSecure Countercept are looking for an Associate Threat Hunter to join our growing Detection & Response Team (DRT). The DRT actively monitor the networks of our customers, develop the cutting-edge solutions on which the service is built and use their unique Threat Hunting mindset to continuously improve WithSecure Countercept's attack detection capability.We are looking for a candidate with bundles of enthusiasm, a hunger to improve their security knowledge and the desire to combat adversaries targeting our customers' networks.As an Associate Threat Hunter we would like you to: Proactively investigate host, network and log based security events Manage events and triage from detection to resolution Conduct Malware Analysis Advanced Host, Network, and Memory Forensics Liaise with clients and report potential findings from both a technical and business perspective Assist in development of the Countercept serviceWho we think will be a great fit: If any of these points pique your interest you will seamlessly integrate into the team and succeed: Terms like " threat hunting ", " malware analysis ", " process injection ", " covert C2 ", " EDR " and " APT " excite you You love nothing more than reading about attacker techniques and are keen to thwart and respond to the ever evolving threats they present to our clients. You are both using and developing cutting edge tools to aid detection and response and are keen to keep up with the latest industry developments. You will have real-world experience responding to attacks of all levels, from script kiddies to nation states, and relish sharing this experience and knowledge with the rest of the team and the industry at large. You keep up with the latest industry developments, are an avid reader of things like /r/netsec to get your security knowledge fix.The Countercept platform is a dynamic and rapidly evolving product, which is heavily research led. The ideal candidate would be able to contribute to enhancing the capability of the service, whether through direct development, research activities or media opportunities.The ideal candidate should also have solid experience in both offensive and defensive security areas, either penetration testing, incident response or ideally a mixture of both.As a successful Associate Threat Hunter you will demonstrate: Strong knowledge of core IP networking and common protocols Strong understanding of Windows and Linux internals Hands on experience of network, memory and host forensics Hands on experience of automated and manual malware analysis (static and dynamic) Hands on experience investigating & responding to comprises by advanced attackers Mixed skillset covering both offensive and defensive security Proven coding experience with C++, C#, Ruby and similar Proven scripting experience with Python/Powershell/Bash/WMI and similar Experience with modern offensive techniques and APT TTP's. Experience with common network traffic analysis platforms and/or SIEM solutionsOur four promises to you... Freedom - you will have the opportunity to define new ways of working how we engage with our customers, and how product value gets represented You will work together with experienced and enthusiastic colleagues, and within WithSecure you'll find some of the best minds in the cyber security industry Your work will be clearly visible and recognised - all over the world and across our business units You can rely on the support from the entire WithSecure leadership including our top executives
Not Specified

Beware of fraud agents! do not pay money to get a job

MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD1033213
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Singapore, Singapore
  • Education
    Not mentioned