صاحب العمل نشط
حالة تأهب وظيفة
سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكترونيحالة تأهب وظيفة
سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكترونيJob Title: SOCEngineer
Department: Cybersecurity Section
The SOC Engineer plays a critical role in ensuring theorganizations cybersecurity posture is robust and resilient. The position isresponsible for monitoring analyzing and responding to security events andincidents maintaining security tools and technologies and supportingcontinuous improvements to SOC operations.
Own and operate most important securitysolutions designed to protect the company from cyber threats and attacks.
Lead in deploying new solutions and technologiesto improve the security posture of the company.
Continuous finetuning of our security solutionsto reduce the occurrence of false positive and false negative alerts
Act as L3 escalation point in analyzing andresponding to security incidents from various security technologies andplatforms.
Perform platform health checks to ensure thatour security solutions are operating effectively and efficiently.
Drive continuous improvement to reduce threatdwell time in our environment through automation process simplification amongothers.
Work closely with the Penetration Test TeamCyber Hunt Team Threat Intel and other internal organizations to achieve theshared vision of improving the companys cyber security posture.
Use tools to respond to incidents and activelyimprove the cyber security posture of the company.
Develop the technical skills of the junior SOCanalysts in the team to empower them to be more effective and efficient intheir roles.
Education and Certifications
Bachelors degree in ComputerScience Cybersecurity Information Technology or a related field.
Certifications such as CompTIASecurity CEH CISSP or GIAC are highly preferred.
4 years of experience in SOCoperations cybersecurity or a related field.
Handson experience with SIEMtools IDS/IPS firewalls and other security technologies.
Proven track record in incidentdetection analysis and response.
Strong understanding ofnetworking protocols and concepts (e.g. TCP/IP DNS HTTP).
Full knowledge of the followingtools:
NAC Solutions.
SIEM Solutions.
EDR Solutions
NDR Solutions
IAM (Identity and Access Management).
PAM (Privileged Access Management).
User behaviorAnalysis
Familiarity with forensic toolsand methodologies.
Excellent problemsolving andanalytical skills.
Strong written and verbalcommunication abilities.
Ability to work effectively inhighpressure situations.
Teamoriented mindset with aproactive approach to learning and collaboration.
Mean time to detect (MTTD) andrespond (MTTR) to incidents.
Uptime and performance of SOCtools and technologies.
Accuracy and completeness ofincident documentation.
Contribution to processimprovement and automation.
Oncall availability forcritical incidents.
OnSite work model based onorganizational policies.