What will your essential responsibilities include
- Act as an escalation point for Level 1 analysts and contribute to the Level 1 capability.
- Deep dive analysis of escalated alerts to understand impact and prioritize tickets.
- Provide additional context on the threats.
- Forensics Investigations.
- Monitor and support Incident remediation.
- Root cause analysis.
- Produce high quality reports and accurate reports for a wide range of stakeholders.
- Provide technical guidance to Level 1 analysts on complex security issues.
- Mentor and support L1 analysts with alert analysis.
- Troubleshoot SIEM issues.
- Continuous reporting and improvements.
- Maintain and improve SOPs and Processes.
- Contribute to the enhancement of threat detection and response capabilities.
- Participate in incident response exercises and RED / BLUE / Purple team activities. You will report to the SOC head.
- Were looking for someone who has these abilities and skills :
Required Skills and Abilities :
Relevant years of proven experience working in a Security Operation Centre with a focus on incident detection, analysis, and response.Outstanding understanding of cyber security principles, threat intelligence and attack vectors.Working knowledge of Azure Sentinel, Microsoft Defender, ADX or other similar security tooling.Excellent Cloud Security and Cloud incident handling skills, knowledge, and experienceExperience handling digital forensic evidence and writing reports to support investigations.Good understanding of attacker tactics, techniques, and procedures (TTP).Desired Skills and Abilities :
Excellent English verbal and written communication skills with the ability to articulate complex ideas in simple language.Willing to make important decisions self-directedly and multi-task under pressure.Ability to collaborate with high performing agile teams and throughout the organization to accomplish goals.Certifications such as CISSP, GIAC, CEH or other.Have an inquisitive nature and enjoy security technology research and the desired to up skills and advance security your skill sets.Skills Required
Cloud Security, Cyber Security, Incident Handling, Root Cause Analysis