drjobs
Cyber Security Manager SOC
drjobs
Cyber Security Manag....
QATAR Airways
drjobs Cyber Security Manager SOC English

Cyber Security Manager SOC

صاحب العمل نشط

1 وظيفة شاغرة
drjobs

حالة تأهب وظيفة

سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكتروني
Valid email field required
أرسل الوظائف
drjobs drjobs drjobs
drjobs drjobs
drjobs

حالة تأهب وظيفة

سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكتروني

Valid email field required
أرسل الوظائف

الخبرة

drjobs

3 - 10 سنوات

موقع الوظيفة

drjobs

الوكرة - قطر

الراتب الشهري

drjobs

لم يكشف

drjobs

لم يتم الكشف عن الراتب

الجنسية

أي جنسية

الجنس

N/A

عدد الوظائف الشاغرة

1 وظيفة شاغرة

الوصف الوظيفي

رقم الوظيفة : 2719813

About Role You would be part of the Cyber Security – Security Operations Center (SOC) team with an operational lead role to detect, prevent, and respond to cyber-attacks. This is a hands-on technical cyber security role with expertise in Security Operations Center and incident response and in the areas of endpoint security, application security, network security or Cloud security. Role and Responsibilities • Must be able to lead a 24x7 team of SOC Analysts and Senior Analysts. Also you must be able to participate in rotation on call schedule. • Must be able to work collaboratively with Incident Response and Cyber Security Testing teams. Having the ability to work outside of normal working hours as required due to critical incidents or emergency calls, will be essential to success in this role • Developing Sentinel analytics rules, incidents, playbooks, notebooks, workbooks, threat hunting and developing KQL queries for data normalization and parsing capabilities within Log Analytics' data ingestion pipeline. • Proactively hunting threats in the environment, identifying new risk, and developing methods to proactively address threats • Implementation of the technical controls and configurations on the security solutions and appliances in lines with the Security Incident Response procedures laid down by the Manager Cyber Security. • Develop Cyber Security Incident Response Plan, Procedures, tactical incident response procedures and other related documentation. Also continuously update the cyber security incident response plan and procedures. • Assist the Senior Manager and Manager Cyber Security in the analysis of security breaches to identify the root cause and also to implement preventive measures. • Perform log event analysis by correlating data from various log sources for threat detection. • Provide support to Incident Response activities for collecting evidences and in monitoring of mitigation steps. Qualifications Knowledge, Skills & Experience • Bachelor Degree holder with minimum 8 years of relevant experience in Cyber Security Operations • 2+ years of experience working with Azure Sentinel and Azure Log Analytics • Highly proficient with Azure Sentinel and Azure Log Analytics; focusing primarily on SIEM (security information and event manager) and SOAR (security orchestration automated response) use case development and data collection utilizing the Azure Sentinel and Azure Log Analytics toolsets. • Strong understanding of Cloud Security and Networking Concepts and practices. Possess expert knowledge of a Security Operations Centre (SOC) - Operations • Possess knowledge on log management, logs generated by various applications or appliances of IT infrastructure for SIEM event correlation. • Expert knowledge or possessing any of the MS Certifications AZ-900 and SC-200 / AZ-500 is preferable. • Ability to define various SIEM use cases based on IT environment for better detection of anomalies • Expert knowledge on SIEM tools MS Azure Sentinel for quick adaptation to the QR SOC monitoring activities. • Expert knowledge on Defender for Endpoint and Servers for effective incident response actions.

نوع التوظيف

دوام كامل

المجال

لم يذكر

القسم / المجال المهني

الحراس / خدمات الأمن

المهارات المطلوبة

نبذة عن الشركة

الإبلاغ عن هذه الوظيفة
إخلاء المسؤولية: د.جوب هو مجرد منصة تربط بين الباحثين عن عمل وأصحاب العمل. ننصح المتقدمين بإجراء بحث مستقل خاص بهم في أوراق اعتماد صاحب العمل المحتمل. نحن نحرص على ألا يتم طلب أي مدفوعات مالية من قبل عملائنا، وبالتالي فإننا ننصح بعدم مشاركة أي معلومات شخصية أو متعلقة بالحسابات المصرفية مع أي طرف ثالث. إذا كنت تشك في وقوع أي احتيال أو سوء تصرف، فيرجى التواصل معنا من خلال تعبئة النموذج الموجود على الصفحة اتصل بنا