您的位置:首頁 >汽車 >

特斯拉汽金大全已更新2023(實時/更新中)|環(huán)球簡訊

2023-05-27 15:29:25    來源:搜狐汽車

特斯拉汽金大全已更新2023(實時/更新中):00861-37566-43074 二:00861-59440-85159 THE ROLE

We are looking for a highly motivated engineer specializing in security process automation and incident response to defend Tesla’s information, infrastructure, and products.

It"s fun to work in a company where employees believe in what they"re doing! The Detection and Incident Response Team is responsible for detecting and responding to threats against our corporate, manufacturing and production environments.


(資料圖片)

This is a technical role, which is involved in all aspects of the incident response life cycle and what technical steps are needed to automate the process of responding to a security incident. As an Incident Response Engineer, you will be an Incident Handler as part of the Detection and Incident Response team. You will protect Tesla by investigating, containing, remediating, and documenting security incidents. You will also help detection engineers to improve logging coverage, security tools tuning, suggest ideas and contribute to the new signals development process and automation to detect and respond to threats automatically and at scale.

Your responsibilities will also include improving/documenting incident response procedures and playbooks, reporting, and developing and maintaining new automated processes to lower the meantime to remediation.

RESPONSIBILITIES

? Participate in incident management calls and coordinate response, triage, recovery, and reporting of incidents.

? Monthly and quarterly incident analysis and stats reporting.

? Ongoing maintenance and improvements/tuning of automated incident response processes.

? Work closely with the Detection and Threat Intel engineers to detect, respond to alerts and provide timely response for the security incidents .

? Participate in incident response activities (including tabletop exercises) to verify existing playbooks and procedures and identify opportunities for improvement .

? Assessing and analyzing prior incidents for operational improvements, whether automated or manual.

? Continuous monitoring, tuning, hardening and improvement of the existing security rules and policies .

? Keeping existing runbooks up to date and creating new runbooks to improve processes/coverage .

? Analyze security data and report on threats and incidents across various platforms and environments.

? Monitor and analyze emerging threats, vulnerabilities, and exploits.

? Provide security monitoring and incident response services supporting the mission to protect Tesla.

? Security process improvement .

REQUIREMENTS

? Excellent understanding and experience in multiple security domains such as intrusion detection, incident response, malware analysis, application security, and forensics.

? Experience detecting abuse and large-scale attacks in a diverse environment. .

? Experience in cloud environments (AWS preferred) and Linux containers and orchestration systems (Kubernetes preferred) .

? Knowledge of web-services such as API and REST .

? Experience with GIT or other version control systems .

? Basic understanding of the Security automation (SOAR) principles. As a bonus – ability to implement automated solutions outside of the scope of SOAR.

? Experience working with multiple stakeholders such as engineering/operations teams, internal business units, external incident response teams, and law enforcement throughout the incident lifecycle.

? Solid experience and the ability to analyze network traffic, endpoint indicators, IOCs. Ability to combine/search/correlate various log sources to identify potential threats, assess the potential damage, and recommend countermeasures.

? Familiarity with the following detection-related disciplines with deep experience in one or more:

o Large scale analysis of log data using tools such as Splunk or ELK.

o File system, memory, or live response on Windows, MacOS and/or Linux.

o Analysis of network traffic from intrusion detection systems and flow monitoring systems.

o Host level detection with tools such as auditd, os-query, SysMon

? Real world experience using at least one major SIEM system .

? Experience with Splunk is a bonus .

? Security Certifications (i.e. Security+, CISSP, CEH, SANS, etc.) is also a plus .

關(guān)鍵詞:

相關(guān)閱讀

主站蜘蛛池模板: mhsy8888| 日韩欧美亚洲综合| 欧美综合第一页| 日日操夜夜操免费视频| 天堂资源在线中文| 国产日韩一区二区三区在线观看| 另类人妖交友网站| 亚洲区在线播放| 一级毛片aa高清免费观看| www亚洲成人| 精品乱码一区二区三区四区 | 视频在线免费观看资源| 用我的手指搅乱我吧第五集| 色噜噜视频影院| 美国十次啦大导航| 极品丝袜系列列表| 太大了阿受不了好爽小说| 国产日韩精品一区二区三区在线 | 国产chinese91在线| 热久久这里是精品6免费观看| 日韩人妻无码精品专区| 国产色综合天天综合网| 四虎影视在线影院在线观看| 亚洲一区中文字幕久久| mm1313亚洲精品国产| 蜜臀精品国产高清在线观看| 欧美一级在线视频| 天堂网在线观看在线观看精品 | 野花直播免费观看日本更新最新| 欧美精品久久久久久久影视| 天天综合日日噜噜噜| 含羞草影院视频播放| 久久精品国产欧美日韩| 1204国产成人精品视频| 欧美日韩成人午夜免费| 天堂/在线中文在线资源官网| 国产一级一片免费播放i| 久久久夜间小视频| 西西人体午夜视频| 日本三区精品三级在线电影| 国产三级电影在线观看|