3 to 4 years of experience in Information Security
2 to 3 years of Security Event Management/Security Information Management
(SEM/SIM) experience Basic knowledge of log management concepts (i.e.
normalization, correlation, reporting, etc)
Strong fundamental knowledge of Windows and UNIX platforms (including basic
knowledge of virtual environments)
Strong technical documentation skills
Strong fundamental knowledge of networks, ports, protocols, and infrastructure
setup (i.e., syslog, scp, etc) Understanding of regulatory compliance requirements
(PCI, GLBA, SOX, SAS70) Strong database security knowledge specifically database activity
monitoring tools (i.e. Guardium, Imperva, etc) Must be able to adapt and learn quickly for
platform integration with SEM/SIM environment Must be able to take on multiple tasks and complete within defined
timelines
Must be able to work in a quick paced environment
Must have a technical degree (Computer Science or Management Information
Systems).
Basic understanding of Log4J, C, and Perl libraries
Basic logging knowledge of Mainframe and HP NonStop platforms to SEM/SIM
environment
Basic logging knowledge of Intrusion Detection and Firewall to SEM/SIM
environment