Key Responsibilities :Monitor network traffic to detect malicious or anomalous activity using NDR solutions (e.g., Darktrace, Vectra, ExtraHop, Corelight).Configure, maintain, and fine-tune NDR tools to optimize detection capabilities and minimize false positives.Conduct deep-dive analysis of network events to identify indicators of compromise (IoCs) and tactics, techniques, and procedures (TTPs).Collaborate with SOC analysts, threat hunters, and other teams to contain and remediate threats.Perform forensic investigations of network packets and flows using tools such as Wireshark, Zeek, or Suricata.Develop detection rules, playbooks, and alerting mechanisms aligned with MITRE ATT&CK framework.Assist in threat intelligence enrichment and correlation with network-based alerts.Prepare root cause analyses, and recommendations for enhancing network security posture.Stay current on emerging threats, attack techniques, and NDR technologies.Bachelors degree in Computer Science, Cybersecurity, Information Technology, or related field (or equivalent experience).3-5 years of experience in cybersecurity, with at least 2 years focused on NDR or network security.Skills Required
Wireshark, Cybersecurity, Network Security