Perform 24x7 monitoring of our Cyber Security Operation Center, proactively identifying and responding to security incidents.
Investigate and analyze security alerts and incidents to determine their severity and impact.
Work with the team to develop and refine correlation rules to improve the accuracy of threat detection.
Utilize technologies and concepts such as SIEM (Security Information and Event Management), EDR (Endpoint Detection and Response), AD (Active Directory), Cloud Networking, RegEx, and more to enhance our security posture.
Collaborate with Technical Operational Teams to provide real-time support and guidance during security incidents.
Maintain a reasonable understanding of IT Security, Networks, and the ever-evolving Cyber Threat Landscape.
Act as a subject matter expert in the field of cybersecurity, helping to identify vulnerabilities and recommend security enhancements.
Possession of at least one of the industry-recognized cybersecurity certifications, such as CISM, CEH, CompTIA Security+, CISSP, or SANS GIAC.
Familiarity with SIEM tools and processes.
Proficiency in using EDR solutions for endpoint security.
Sound knowledge of Active Directory and Cloud Networking.
Experience working with RegEx and creating correlation rules.
Familiarity with Windows and Linux operating systems and associated protocols and tools.
Fluent in English with excellent communication and reporting skills.
Strong analytical and problem-solving skills.
Ability to work effectively both independently and in a team.