Description

Job Description

 

  • Perform 24x7 monitoring of our Cyber Security Operation Center, proactively identifying and responding to security incidents.
  • Investigate and analyze security alerts and incidents to determine their severity and impact.
  • Work with the team to develop and refine correlation rules to improve the accuracy of threat detection.
  • Utilize technologies and concepts such as SIEM (Security Information and Event Management), EDR (Endpoint Detection and Response), AD (Active Directory), Cloud Networking, RegEx, and more to enhance our security posture.
  • Collaborate with Technical Operational Teams to provide real-time support and guidance during security incidents.
  • Maintain a reasonable understanding of IT Security, Networks, and the ever-evolving Cyber Threat Landscape.
  • Act as a subject matter expert in the field of cybersecurity, helping to identify vulnerabilities and recommend security enhancements.
  • Possession of at least one of the industry-recognized cybersecurity certifications, such as CISM, CEH, CompTIA Security+, CISSP, or SANS GIAC.
  • Familiarity with SIEM tools and processes.
  • Proficiency in using EDR solutions for endpoint security.
  • Sound knowledge of Active Directory and Cloud Networking.
  • Experience working with RegEx and creating correlation rules.
  • Familiarity with Windows and Linux operating systems and associated protocols and tools.
  • Fluent in English with excellent communication and reporting skills.
  • Strong analytical and problem-solving skills.
  • Ability to work effectively both independently and in a team.

Education

Any Graduate