Excellium Services

CSIRT Level 2 Incident Handler & Digital Forensic Investigator

Excellium Services

CSIRT Level 2 Incident Handler & Digital Forensic Investigator

by Coline

  OFFER DESCRIPTION

You want to join Excellium because…

You are curious, motivated, and passionate !

Integrated within dynamic and passionate teams, you will have the opportunity to fully invest yourself, innovate and create from the latest technologies. You will quickly find your place at Excellium. In order to understand our business, the challenges of our customers and to accompany them we regularly organize meetings, workshops, and training. We will thus help you to develop your skills and position you on stimulating projects, adapted to your profile and enabling you to surpass yourself.

Your team :

As part of a multidisciplinary team, you will work in Excellium’s C SIRT department. The purpose of the service is to help organizations contain, neutralize and remove intrusions by facilitating detection, manipulation and mitigating actual intrusions. The team is also called upon for post-mortem investigations, where the challenge is to support or refute hypotheses formulated following a proven incident. Excellium Services’ CSIRT is young, ambitious and in development.

Your mission :

Your will work on clients various security incidents and help CSOC L2 in incident triage. Your daily task will be the maintenance of CSIRT applications and documentation.
Additionally you will create detection use cases for Excellium Csoc and test them stealthy from time to time in a «Pentest» like engagement.
We will ask you to share your knowledge during training or workshops.

  PROFILE

• Highly motivated, interested in the fields of cyber defense and research.
• First experience in similar job with a system engineer background.
• SCADA environments familiar.
• Requires analytical thinking skills or analytical and problem solving skills.
• “Dirty and always incomplete” Log analysis capability.
• Could read X86/64 assembly, C, C++, .NET
• Could write python.
• Usage of Volatility, Log2Timeline, Misp, IntelMQ, Wireshark, Tshark, Snort
• Network Fundamentals – TCP/IP Protocols (HTTP, DNS, FTP, SSL, etc.)
• Understandings of threat Intel limitation and capacity.
• Any related certification GCIH – (GIAC Certified Incident Handler) etc…
• Deep Understanding of windows, Osx & Linuxes operating systems
• Work calmly and well under pressure
• Maintain composure while dealing with difficult people.
• English B2 or >

You are a big enthusiast of IT security, you are curious and on the lookout for the latest news, security holes and technological advances , then apply !!

OFFER DETAILS

Contract : CDI – full time

Location : 5 rue Goell L-5326 Contern, Luxembourg 

Publication date : 12/06/18

« Vos données personnelles seront conservées pour une période qui ne saurait excéder 3 mois. Si vous donnez votre accord, vos données personnelles seront conservées jusqu’à 12 mois pour de potentielles offres d’emplois ultérieures. »

WHO WE ARE?

Joining Excellium means having the opportunity to invest fully, to innovate, to create from the latest technologies.

Excellium benefits from a good dynamic, with accessible managing partners and invested teams.
It means joining a family of nearly 100 passionate direct employees.

It is also the possibility to have several experiences in:
– Cybersecurity,
– Hybrid Cloud,
– Managed Security Services,
– Application Security.

We will help you develop your skills.
Then don’t wait any longer and apply!!

  EVENTS

Top