Cyber Incident Handling Analyst
Indexed description
- Monitor intrusion detection and security information management systems for malicious or anomalous activity.
- Triage and evaluate security events to determine whether an incident occurred.
- Analyze logs, packet captures, and related enterprise data to support incident conclusions.
- Coordinate incident response and document incidents from initial detection through final resolution
Required Specialized Certification At least one of the following: Cisco CyberOps Professional; SANS certification (any); Microsoft Certified: Security Operations Analyst Associate; Blue Team Level 1; OSDA.
Required Specialized Experience Experience monitoring intrusion detection and security information management systems; triaging and evaluating detected events; analyzing logs and packet captures; coordinating incident response with technical and non-technical parties; understanding hacker TTPs and exploits; and documenting incidents from initial detection through final resolution
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search