反入侵安全工程师(J94288)
Core
Build intrusion detection and prevention strategies for production and office networks, including host, endpoint, and traffic security systems.
Role type
Mid-level intrusion security engineer
Builds
Intrusion detection and prevention systems for production and office networks
Domain
Cybersecurity
Required skills
MITRE ATT&CK framework knowledge, Python or Golang programming, security tool development, detection rule writing
Preferred skills
Incident response analysis, threat hunting, security operations
Technologies
Python, Golang, MITRE ATT&CK
Responsibilities
Develop intrusion attack detection and protection strategies for production and office networks; Analyze intrusion alerts and optimize noise reduction; Collaborate with incident response teams for analysis and source tracing; Continuously improve detection, protection, tracing, and disposal capabilities through industry analysis and red/blue team exercises; Ensure coverage, effectiveness, and stability of intrusion detection and prevention systems.