Tasks
As a Purple Team Consultant for Security, you will work at the interface between Red and Blue Team methodologies to optimize cybersecurity processes and sustainably improve our customers' security posture. You will drive the transition to a service-oriented security approach, examine existing processes, and develop innovative solutions for efficient CERT and Purple Team activities. Your focus will be on improving detection and response automation, as well as providing strategic consulting for the further development of security measures.
You enjoy working in a team. The following tasks await you:
Planning, conducting, and optimizing Purple Team assessments to identify vulnerabilities and further developing relevant processes and CERT methodologies.
Close collaboration with Red and Blue Teams to improve detection capabilities and the effectiveness of security measures.
Support in detection engineering through the development, implementation, and optimization of detection logic (use cases).
Analysis and implementation of automation potential in the Blue Team, including implementation in SOAR systems.
Preparation, deployment, and training in DFIR tools for rapid and effective response to security incidents.
Documentation of processes and results for quality assurance and further development of the security strategy.
In-depth technical expertise in Windows security, Active Directory, protocol analysis, network technologies, and experience with tools such as QRadar, Splunk, and Elastic.
For more detail, salary and company information, use the apply link