What success looks like in this role:
Job Description:
Responsibilities will include but not limited to:.
Experience with methodologies and tools, for threat analysis of complex systems, such as threat modelingSME Knowledge on at least one of SIEM tools like Sentinel,LogRhythm, Securonix, Splunk etcUnderstanding of major security frameworks (such as OWASP, CWE, SANS, NIST, etc.) and associated prevention techniques.Initial point of contact for client requirement and operational escalation.Proactively identify technical and architectural risks, work effectively to mitigate themResearching, Planning, Implementing new tools features to make security tools more effective and add valuePreparation and presentation of Security Intelligence ReportProvide Technical directions to Associates and Analyst within the teamAssist in the investigations of high level, complex violations of information security policiesReporting Security performance against the established security metricsEnsures staffing and knowledge are at a level appropriate to maximize service delivery capabilities while minimizing costs associated with that delivery, as well as meeting SLA and KPI targets for established services.Provides deep subject matter expertise in the architecture, policy, and operational processes associated with analysis and threat isolation/determination and client escalation. Leads or participates in remediation and/or optimization efforts in supported clients. Provides guidance and support to 3rd level technical support. This includes architecture review, rules and policy review/tuning. Establishes and communicates the extent of the threat, the business impacts and advises the most suitable course of action to contain and remedy the event.SME level knowledge of the Current Threat Landscape, help enhance current techniques and identify new methods of detecting threats on our customers' networksLeads and collaborates with other BU on client connect callsPlatform and Vendor management.Ability to learn and retain new skills in a changing technical environment.Experience with securing applications deployed on cloud platforms (Google, Microsoft, AWS)Knowledge and experience with scripting languages like Python, PowerShellSecurity Operations program development of technical processes\procedures to ensure strong situational awareness, coupled with an ability to respond effectively to security threatsExperience working with various event logging systems and be proficient with security event log analysis.You will be successful in this role if you have:
Qualifications and Experience:
Minimum 10 years of experience in security domain with exposure to Security ProductsExcellent verbal and written communication skills.Willingness to learn new technology platformsPreferred Qualifications: SIEM Experience, Vulnerability Management, Recognized network and security certifications, Security+, CEH, ECIH,GCIH,GCIE etc.Additional Qualifications:
Experience with WiresharkPython development experienceAbility to translate abstract data concepts to tangible visualizationsNetwork OperationsNetwork MappingUnisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, blood type, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.
This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers. If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at GlobalRecruiting@unisys.com or alternatively Toll Free: 888-560-1782 (Prompt 4). US job seekers can find more information about Unisys’ EEO commitment here.