Monitor & Detect: Continuously monitor systems netServicess and logs for threats using SIEM tools.
Incident Response: Investigate contain and resolve security incidents; document findings.
Threat Intelligence: Analyze threat data and update detection rules for emerging risks
Vulnerability Management: Identify prioritize and coordinate
patching of security weaknesses.
Tool Management: Maintain and optimize SOC tools (SIEM EDR
IDS/IPS SOAR).
Reporting & Compliance: Provide security reports and ensure
adherence to policies and standards.
Collaboration & Awareness: Services with other teams and
promote cybersecurity best practices
Requirements
L1: 35 years handling alerts and investigations on-call exposure
Bachelors in computer science Information Security IT and equivalent
handson experience. Relevant certifications may substitute for a degree
for L1 roles.
Solid grasp of netServicesing (IP DNS HTTP TLS) Windows/Linux cloud
and security basics
Hands-on with SIEM and EDR (e.g. QRADAR/Sentinel;
TrendMicro/Defender)
Able to write simple queries (KQL/SPL) and follow incident runbooks
Clear written and verbal communication
Key Skills ArcGIS,Intelligence Community Experience,GIS,Python,Computer Networking,Data Collection,Intelligence Experience,R,Relational Databases,Analysis Skills,Data Management,Application Development Employment Type : Full Time Experience: years Vacancy: 1