Engineer, Cybersecurity DFIR

job
  • ICE
Job Summary
Location
Provo ,UT 84605
Job Type
Contract
Visa
Any Valid Visa
Salary
PayRate
Qualification
BCA
Experience
2Years - 10Years
Posted
17 Mar 2025
Share
Job Description

Overview

Job Purpose

The ICE Cybersecurity Digital Forensics and Incident Response (DFIR) team is responsible for defending critical financial infrastructure from global cyber threats. We leverage an evolving arsenal of controls that require technical proficiency as well as tenacity, professionalism, and strong communication skills.

Responsibilities

  1. Security Analytics - Efficiently distill actionable information from large data sets for reporting, hunting, and anomaly detection.
  2. Incident Management – Detect, document, investigate, and resolve security incidents in an efficient manner.
  3. Endpoint Forensics - Construct meaningful incident timelines from forensic artifact analysis.
  4. Counter Measures - Ability to design and implement preventative and corrective controls to counteract emerging threats.
  5. Proactive Threat Hunting - Develop and execute focused plans to discover advanced threats that evade traditional security controls.
  6. Behavioral Analysis - Develop and implement criteria to identify anomalous user behavior indicating insider threat activity.
  7. Intrusion Detection - Develop and tune network anomaly control capability to produce reliable actionable data.
  8. Threat Hunting - Proactively search for unknown threats within the environment.

Knowledge and Experience

  1. 3+ years of relevant experience.
  2. Deep understanding of networking and its application.
  3. University degree in related discipline.
  4. Hands-on experience with Windows and Linux.

Core Competencies - ICE

  1. Teamwork : Works well with teammates locally and at remote offices; shares knowledge and is seen as someone to go to for help; contributes in weekly peer meetings.
  2. Problem solving and decision making : Demonstrates a sense of urgency; takes ownership of problems and follows temporary fixes with permanent solutions; finds creative solutions.
  3. Communication : Is clear and accurate in verbal and written communication; listens to peers and supported employees; follows directions and provides useful feedback.
  4. Professionalism : Makes a positive impression in person, via phone, and electronically; models a ‘can-do’ attitude; embraces additional responsibility; refrains from office gossip or conflict; works extra hours as needed to ensure work is complete; adheres to corporate policy and encourages others to do the same.

Specific Technologies: Splunk, OpenDNS, Exabeam, Tanium, SentinelOne, Checkpoint, Palo Alto, WAF, Vectra, X-Ways, Python, PowerShell, RegEx.

Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.

#J-18808-Ljbffr
Other Smiliar Jobs
 
  • Jacksonville, FL
  • 4 Days ago
  • Atlanta, GA
  • 4 Days ago
  • Atlanta, GA
  • 4 Days ago
  • Atlanta, GA
  • 4 Days ago
  • Atlanta, GA
  • 4 Days ago
  • Atlanta, GA
  • 4 Days ago
  • Chicago, IL
  • 3 Days ago
  • Atlanta, GA
  • 4 Hours ago
  • Atlanta, GA
  • 4 Hours ago
  • Atlanta, GA
  • 4 Hours ago