Role & responsibilities
Primary Skill:
Threat Intelligence, Threat Hunting, Threat Detection Engineers with experience in writing SPL (Splunk Processing Language), Mitre Framework.
Secondary Skill:
DataBricks, MDE
Threat Intelligence, Threat Hunting, Splunk Enterprise Security, Cyber Security SME, Splunk Power User, Mitre Framework
JD:
In-depth knowledge of external attacks and detection techniques to be able to run analysis of the requirements provided by threat intelligence / SOC teams, generate list of rules that could be implemented (based on self analysis of a threat and avaiable log sources), work with SOC team to operationalize and Purple Team to test..
Familiarity with MITRE ATT&CK framework and Tactics, Techniques, and Procedures (TTPs).
Experience with security tools such as Splunk, MDE , Databricks to be able to write custom detections to detect various threats (preferably MDE)
So to give you better picture, I will give some examples.
Keyskills: Threat Detection Malware Analysis Threat Hunting