Descripción
Experience with some/all: Cisco AMP, Sumo Logic, CounterTack, SIEM solutions, Kibana/Zeppelin, ThreatQ, FireEye Malware analysis, Snort, Suricata, SPLUNK
Conocimientos
Good understanding of Windows and Unix basics. Working knowledge of operating systems • network technologies (firewall, proxy, DNS, Netflow). Incident Handling (Detection, Analysis, Triage)