Detalles de la oferta

.About the role:The Senior SOC Analyst is an integral part of our Security Operations Centre (SOC) team ensuring the organization's and its customer's IT infrastructure is protected against threats and vulnerabilities. You'll be assisting with overseeing the security operations center, managing security incidents, monitoring and analyzing security events, and leading a team of SOC analysts. We'll look to you to perform the critical job of monitoring and responding to security events from various SOC entry channels (SIEM, EDR, Tickets, Email, Phone) based on the severity and ensure playbooks are executed and appropriate investigative processes are followed.You will also assist with managing and tuning various technology products such as SIEM, EDR, WAF and IDS/IPS policies. Leveraging your expertise, you will also provide continual service improvement by creating and updating security processes and incident response playbooks.Responsibilities:Monitor and analyze security alerts and participate in security incident management and response.Participate in evaluating, recommending, implementing, responding, and troubleshooting security solutions.Perform tuning and optimization of security systems (SIEM, EDR, SOAR, WAF, IDS/IPS).Follow ITIL practices regarding incident, problem, and change management.Create and maintain build documents, security procedures, and processes including incident management and incident response playbooks.Stay up-to-date with emerging security threats including applicable security requirements.Review and analyze identified threats, risks, and findings generated from vulnerability analysis tools and work with stakeholders to mitigate vulnerabilities.Act as first responder or escalation point, depending on incident severity, following incident response playbooks.Periodically expected to work off-hours to support deployments, system upgrades, and respond to security events.Conduct threat hunting activities to proactively identify potential threats.Integrate threat intelligence feeds into security monitoring tools to enhance threat detection.Stay updated on the latest threat landscape, tactics, techniques, and procedures (TTPs) of adversaries.Requirements:Bachelor's Degree / Diploma in a relevant area of study with a preference for Information Security, Computer Science or Computer Engineering or equivalent experience.Requires 6 to 8 years of relevant previous experience working in a Security Operations Centre and conducting security investigations.Strong knowledge of security incident management, malware management, and vulnerability management processes.Solid understanding of IT, including multiple operating systems and system administration skills (Windows, Linux).Basic understanding of public (AWS, GCP, Azure) and private (VMWare) cloud.Strong understanding of networking principles including TCP/IP, WANs, LANs, and commonly used Internet protocols such as SMTP, HTTP, FTP, POP, LDAP


Salario Nominal: A convenir

Fuente: Jobtome_Ppc

Requisitos

Operador De Tractori Agricola

Operador de tractor agricola Empresa del ramo fotovoltaico solicita operador de tractor con Experiencia mínima de 1 a 2 años en: Experiencia comprobada como ...


Planta Fotovoltaica - Zacatecas

Publicado 10 days ago

Mantenimiento De Red

Manejo avanzado de herramientas - Experiência trabajando en alturas - Conocimiento básico de electricidad - Conocimiento avanzado de MIMOSA - Conocimiento av...


Netmas Telecomunicaciones - Zacatecas

Publicado 10 days ago

Incident Manager

The DBA Support Incident Manager is responsible for overseeing and managing incidents specifically related to database infrastructure, ensuring rapid resolut...


Photon - Zacatecas

Publicado 10 days ago

Technical Ssecurity-Identity And Access Management-Oktaolns.Arch. Specialist Advisor

Req ID: 300976 NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, ...


Ntt Data - Zacatecas

Publicado 10 days ago

Built at: 2024-11-21T10:15:33.981Z