字节跳动情报专家(内部风险威胁)-安全与风控
社招全职3年以上A236942地点:北京状态:招聘
任职要求
1、至少3年及以上的情报相关工作经验,有网络安全和情报工作经验优先、有调查经验优先; 2、掌握基本数据处理技术能力,对SQL、Python等分析语言有了解,掌握基本Hadoop、Spark、Flink等数据工具; 3、具有良好的沟通、团队协作、主动思考和学习能力,可进行独立跨团队协作解决问题。
工作职责
1、负责外部情报的收集、扩源、清洗和运营,以识别潜在的内部威胁; 2、对疑似的内部威胁情报线索进行深入调查和跟进,确定其来源、性质和影响; 3、协同相关团队制定响应措施,包括采取防范措施、加固受影响系统和数据; 4、跟踪内部威胁的最新情报趋势和技术,进行相关研究,供针对性的防范建议和措施。
包括英文材料
SQL+
https://liaoxuefeng.com/books/sql/introduction/index.html
什么是SQL?简单地说,SQL就是访问和处理关系数据库的计算机标准语言。
https://sqlbolt.com/
Learn SQL with simple, interactive exercises.
https://www.youtube.com/watch?v=p3qvj9hO_Bo
In this video we will cover everything you need to know about SQL in only 60 minutes.
Python+
https://liaoxuefeng.com/books/python/introduction/index.html
中文,免费,零起点,完整示例,基于最新的Python 3版本。
https://www.learnpython.org/
a free interactive Python tutorial for people who want to learn Python, fast.
https://www.youtube.com/watch?v=K5KVEU3aaeQ
Master Python from scratch 🚀 No fluff—just clear, practical coding skills to kickstart your journey!
https://www.youtube.com/watch?v=rfscVS0vtbw
This course will give you a full introduction into all of the core concepts in python.
Hadoop+
https://www.runoob.com/w3cnote/hadoop-tutorial.html
Hadoop 为庞大的计算机集群提供可靠的、可伸缩的应用层计算和存储支持,它允许使用简单的编程模型跨计算机群集分布式处理大型数据集,并且支持在单台计算机到几千台计算机之间进行扩展。
[英文] Hadoop Tutorial
https://www.tutorialspoint.com/hadoop/index.htm
Hadoop is an open-source framework that allows to store and process big data in a distributed environment across clusters of computers using simple programming models.
Spark+
[英文] Learning Spark Book
https://pages.databricks.com/rs/094-YMS-629/images/LearningSpark2.0.pdf
This new edition has been updated to reflect Apache Spark’s evolution through Spark 2.x and Spark 3.0, including its expanded ecosystem of built-in and external data sources, machine learning, and streaming technologies with which Spark is tightly integrated.
Flink+
https://nightlies.apache.org/flink/flink-docs-release-2.0/docs/learn-flink/overview/
This training presents an introduction to Apache Flink that includes just enough to get you started writing scalable streaming ETL, analytics, and event-driven applications, while leaving out a lot of (ultimately important) details.
https://www.youtube.com/watch?v=WajYe9iA2Uk&list=PLa7VYi0yPIH2GTo3vRtX8w9tgNTTyYSux
Today’s businesses are increasingly software-defined, and their business processes are being automated. Whether it’s orders and shipments, or downloads and clicks, business events can always be streamed. Flink can be used to manipulate, process, and react to these streaming events as they occur.
相关职位
社招3年以上程序&技术类
1、负责办公网安全的日常运营,分析研判终端木马感染等事件并开展应急响应; 2、建立办公网入侵检测能力,针对定向攻击、商业间谍等威胁制定检测策略并开发实现; 3、建设企业内部威胁情报能力,通过分析主流攻击手法,积累内外部威胁情报并提升感知能力。
社招5年以上A83802
1、负责建设字节跳动内部威胁策略中心,主导规则和模型建设,提前感知风险; 2、通过数据、场景及各渠道信息定位并分析风险,针对性制定检测方案; 3、与安全运营团队落地风险发现、风险定义、召回、识别、处置等流程; 4、深入业务分析风险点,协同业务持续迭代策略,提升风险发现准确率。
更新于 2024-05-16
社招3年以上N7486
1、熟悉API形式的获客模式,了解信贷业务流程,可以独立承担渠道的拓展接入和后期的项目合作深度推进,主导商务价格以及把握合作节奏等关键要素; 2、整合内部资源,如风险、产品和研发团队,协调外部团队整体把控和管理项目落地; 3、进行数据观测与分析,能够及时发现问题并通过数据分析提出优化方案,推进各环节优化,确保项目健康向好运行; 4、注重市场调研分析,紧跟同行,能定期进行市场预测及情报分享,为公司决策提供依据,能提出渠道拓展、优化的合理建议。
更新于 2022-12-20