SOC Engineer

 


Job Description

ROLE PURPOSE

Monitor the analytics tools and perform alert management and incident response according to the standard operating procedures.

JOB RESPONSIBILITIES

 

  • Responsible for incident response, vulnerability management, and security awareness training for the entire company.
  • Proactively hunting threats within the environment.
  • Maintain knowledge of adversary tactics, techniques, and procedures (TTP).
  • Conduct forensic analysis on systems and engage third-party resources as required.
  • Provide timely and relevant updates to appropriate stakeholders and decision makers.
  • Develop, implement, and automate strategies, creating and tuning tools and rules for detecting and remediating malicious activity.
  • Detect security incidents before they cause material damage to the business.
  • Prioritize, analyze, and drive alerts to resolution. In the event an alert is identified as a security incident, you will kick off Incident Response.
  • Detect, respond, investigate, and remediate security events, driving all aspects of an incident to closure through pre-deployed infrastructure, products, automation, playbooks, etc.
  • Perform retrospective analysis using network, host, memory, and other artifacts from multiple operating systems and applications.
  • Strategically define and implement additional detective capabilities or data sources to improve telemetry.
  • Participate in enterprise-wide operations to hunt for adaptable and previously unknown threats.

Open To

Male/Female

Job Requirements

Education & Special Training

Essential

  • Degree/Diploma in Computer Technology, Computer Science, Information Security, Cybersecurity, Computing, Software Engineering, IT or equivalent.

Desirable

Relevant Security Certifications.

Experience

Essential

  • 3+ years of security experience.
  • Experience in forensics, malware analysis, threat intelligence.
  • Significant experience participating incident response, vulnerability management, and security awareness training in fast-paced environment.

Desirable

Experience in the Banking sector.

Knowledge & Skills

Essential

  • Partial knowledge of, and hands-on experience performing incident response.
  • Experience in forensics, malware analysis, threat intelligence.
  • Understanding of internet security issues and the threat landscape.
  • Knowledge of UNIX and TCP/IP network fundamentals.
  • Experience using Python, Perl, PowerShell, or an equivalent language.
  • Operating systems internals and hardening with an emphasis on endpoint security (Linux, Windows, mobile platforms).
  • Solid understanding of vulnerability management.
  • Ability to correlate data from multiple data sources to create a more accurate picture of cyberthreats and vulnerabilities.
  • A passion for spreading security awareness to everyone you meet & have an interest in web security.
  • Attention to detail, critical thinking & problem-solving capabilities


Comments