Position: Security Analyst - XDR Specialist Company Overview: ITS Information Technology Solutions is a leading provider of managed IT services and solutions for businesses of all sizes. With over 20 years of experience, we have a proven track record of delivering cutting-edge technology solutions that help our clients achieve their business goals.
About the Role: We are seeking a skilled Security Analyst to join our XDR Team. The ideal candidate will have hands-on experience in implementing Endpoint Detection and Response (EDR), Network Detection and Response (NDR), and Extended Detection and Response (XDR) products. This role focuses on delivering implementation services, including the setup and customization of cybersecurity tools, with a strong emphasis on ELK (Elasticsearch, Logstash, Kibana) stack deployment and utilizing its EDR capabilities. Key Responsibilities:
Implement and configure EDR, NDR, and XDR solutions tailored to client environments.
Deploy and manage ELK stack components, ensuring seamless integration with security tools and data sources.
Utilize ELKs EDR functions to monitor, detect, and respond to cybersecurity threats.
Collaborate with clients to understand their security needs and customize XDR solutions accordingly.
Troubleshoot and resolve issues during implementation and post-deployment phases.
Assist in developing documentation, playbooks, and best practices for security monitoring and incident response.
Work closely with other security teams to optimize threat detection and response strategies.
Qualifications:
Proven experience in implementing EDR, NDR, and XDR solutions.
Strong knowledge of ELK stack installation, configuration, and management.
Familiarity with ELKs security use cases, including data ingestion, parsing, and visualization for security operations.
Hands-on experience with cybersecurity tools, threat detection, and incident response.
Excellent problem-solving skills and the ability to work independently or as part of a team.
Strong communication skills to interact effectively with clients and team members.
Preferred Skills:
1 - 2 Years Experience in cybersecurity operations or consulting environments.
Familiarity with SIEM, EDR, NDR and other security technologies.
Strong understanding of network, endpoint, and cloud security.