SOC Engineer
Job Description
ROLE PURPOSE
Monitor the analytics tools and perform alert management and incident response according to the standard operating procedures.
JOB RESPONSIBILITIES
- Responsible for incident response, vulnerability management, and security awareness training for the entire company.
- Proactively hunting threats within the environment.
- Maintain knowledge of adversary tactics, techniques, and procedures (TTP).
- Conduct forensic analysis on systems and engage third-party resources as required.
- Provide timely and relevant updates to appropriate stakeholders and decision makers.
- Develop, implement, and automate strategies, creating and tuning tools and rules for detecting and remediating malicious activity.
- Detect security incidents before they cause material damage to the business.
- Prioritize, analyze, and drive alerts to resolution. In the event an alert is identified as a security incident, you will kick off Incident Response.
- Detect, respond, investigate, and remediate security events, driving all aspects of an incident to closure through pre-deployed infrastructure, products, automation, playbooks, etc.
- Perform retrospective analysis using network, host, memory, and other artifacts from multiple operating systems and applications.
- Strategically define and implement additional detective capabilities or data sources to improve telemetry.
- Participate in enterprise-wide operations to hunt for adaptable and previously unknown threats.
Open To
Male/Female
Job Requirements
Education & Special Training
Essential
- Degree/Diploma in Computer Technology, Computer Science, Information Security, Cybersecurity, Computing, Software Engineering, IT or equivalent.
Desirable
Relevant Security Certifications.
Experience
Essential
- 3+ years of security experience.
- Experience in forensics, malware analysis, threat intelligence.
- Significant experience participating incident response, vulnerability management, and security awareness training in fast-paced environment.
Desirable
Experience in the Banking sector.
Knowledge & Skills
Essential
- Partial knowledge of, and hands-on experience performing incident response.
- Experience in forensics, malware analysis, threat intelligence.
- Understanding of internet security issues and the threat landscape.
- Knowledge of UNIX and TCP/IP network fundamentals.
- Experience using Python, Perl, PowerShell, or an equivalent language.
- Operating systems internals and hardening with an emphasis on endpoint security (Linux, Windows, mobile platforms).
- Solid understanding of vulnerability management.
- Ability to correlate data from multiple data sources to create a more accurate picture of cyberthreats and vulnerabilities.
- A passion for spreading security awareness to everyone you meet & have an interest in web security.
- Attention to detail, critical thinking & problem-solving capabilities
Comments
Post a Comment