Job Posting Number: 20262BR
Job Posting Title: Information Security - Malware Analyst
Job Posting Category: Business Professional , Information Technology
Work Site: MN - Rochester
Department: Information Technology
The Information Security and Controls Unit seeks a skilled, self-disciplined, and motivated Technical Specialist I to serve as a malware analyst employing digital forensic techniques. The analyst will be a member of the Mayo Clinic Security Operations Center (SOC) that provides a security monitoring and incident response service to safeguard Mayo Clinic’s critical information assets. The SOC team will rely on this person to develop the insight regarding the root cause and recommendations for mitigation actions to any computer security incidents of such nature.
The malware analyst will perform behavioral analysis and code analysis of suspected malware. The analyst will also conduct general security incident response tasks, as well as coordination and collaboration with other Mayo Clinic computer forensic teams. Will train other SOC security analysts in malware analysis using digital forensic techniques.
While core work hours are Monday through Friday from 8 to 5 pm, work during other shifts may be required to respond to critical security incidents. This position includes periodic off-hours on-call duties. We will not sponsor or transfer visas for this position. (004524-47388) R8422InterSeC
A Bachelor's degree and 5 years of professional IT or information security experience; or an Associate's degree and 7 years of professional IT or information security experience; or 12 years of professional IT or information security experience. Five years of experience in incident response or malware forensics, and reverse engineeringProficient with forensic techniques and toolsets such as EnCase or FTK Suite. Strong working knowledge of data collection hardware and software (for example, Encase, FTK Imager, Robocopy, Evidence Mover, Raptor, Helix, Knoppix, and Slax). Ability to perform logical and physical forensic image acquisitions. Familiarity with Windows, Macintosh, UNIX, and Linux Operating Systems. Must possess one or more of these certifications: GIAC Certified Incident Handler (GCIH), GIAC Certified Intrusion Analyst (GCIA), GIAC Reverse Engineering Malware (GREM), or Certified Ethical Hacker (CEH). Awareness of chain of custody procedures, forensic lab best practices, and evidence handling.
Experience with programming languages such as Python and EnScript is preferred. Certifications, such as CISSP, CRISC, or CISM are helpful. Experience working in a SOC. Experience in disciplines such as incident management, problem management, access management, and project management. Strong technical understanding of the UNIX/Linux operating systems.
License or Certification:
Must possess one or more of these certifications: GIAC Certified Incident Handler (GCIH), GIAC Certified Intrusion Analyst (GCIA), GIAC Reverse Engineering Malware (GREM), or Certified Ethical Hacker (CEH).
Benefit Eligible: Yes
Exemption Status: Exempt
Hours/Pay Period: Full Time
Schedule Details: While core work hours are Monday through Friday from 8 am to 5 pm, work during other shifts may be required to respond to critical security incidents. This position includes periodic off-hours on-call duties.
Weekend Schedule: Periodic weekend shifts may be required to respond to critical security incidents.
Compensation Detail: Education, experience, and tenure may be considered along with internal equity when job offers are extended. The minimum salary every two weeks is approximately $3,136 based on a full-time position.
Staffing Specialist: Jessica Larson
Mayo Clinic offers a wealth of job opportunities, but most essentially, it offers the chance to make a difference by helping others. Employees are mentored in Mayo's culture and our model of care, which values mutual respect, integrity, personal responsibility, innovation and communications.
Mayo Clinic is an affirmative action / equal opportunity educator and employer.
Multidisciplinary teamwork with coordinated care is Mayo Clinic's secret sauce. The not-for-profit Mayo Clinic provides health care, most...