Key Deliverables :
- Lead and coordinate security incident response, ensuring effective triage, investigation, and communication.
- Develop and maintain incident response playbooks and runbooks for evolving threat scenarios.
- Automate workflows for detection, incident analysis, and response to improve efficiency.
- Improve security detection capabilities by creating rules, performing threat hunting, and identifying attack vectors.
Role Responsibilities :
Conduct root cause analysis and recommend improvements to prevent future security incidents.Collaborate with cross-functional teams to enhance detection and response capabilities.Provide expert input on designing and implementing security controls and automation tools.Utilize advanced knowledge of cloud security, SIEM, SOAR, and other tools to monitor and manage incidents.Skills Required
SOAR, Siem, security incident response , Python