Managed Detection and Response (MDR) Speciallist
Bogotá (Bogotá D.C.)
Job description
Introduction
Information and Data are some of the most important organizational assets in today’s businesses. As a Security Consultant, you will be a key advisor for IBM’s clients, analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client's organization with the cognitive solutions that are making IBM the fastest growing enterprise security business in the world.
Your Role and Responsibilities
IBM Consulting Cybersecurity Services is seeking the Managed Detection and Response (MDR) Specialist role to be part of the Security Platform Management team, responsible for delivering and maintaining advanced security solutions. This position is for managing EDR solutions.
Perform administration/management of EDR solutions across corporate endpoints.
Install, configure and keep updated all components related to EDR solutions.
Tuning EDR solutions according to policies, requirements, best practices and feedback from security teams.
Provide escalation support to the operations team in support of daily operations.
Build, distribute, maintain agents and repositories required by EDR solutions.
Experience working with internal and third party teams to provide agent configuration for package deployment.
Maintain documentation for exceptions to standards monitoring.
Identify, define and implement metrics/indicators for continuous improvement and efficiency of EDR solutions.
Required Technical and Professional Expertise
Knowledge of Windows, Linux (workstation and server) and MacOS operating systems.
Experience in implementing or managing EDR platforms, policies, host based firewall and software/agent deployment in solutions such as CrowdStrike, Trellix ePO, TrendMicro, MS Defender Enterprise, Cybereason.
Experience in performance tuning, monitoring and collecting statistics/metrics.
Excellent problem-solving techniques and analytical skills.
Able to work in a dynamic environment and manage multiple tasks/requirements.
Desired Certifications: CompTIA Sec+, CrowdStrike Falcon Administrator, Trellix Endpoint Security (ENS).
Preferred Technical and Professional Expertise
NA