Overview :
The SOC Engineer L2 must have prior experience configuring, managing, operating, and administrating various SIEM & EDR managed platforms. You will play a pivotal role in advising our clients on the implementation, optimization, and maintenance of SIEM tool Qradar. You will leverage your expertise to design and implement tailored solutions that meet our clients&apos unique cybersecurity requirements. In addition, the candidate must have a strong understanding of information security and networking, and extensive experience interacting with end users.
Requirements :
- Must have 5-7+ years' experience developing metrics and trends utilizing SIEM tool Qradar within Security Operations (SOC) Suite that demonstrate the log platform&aposs health and operational state including :
- data ingest,
- custom parser building,
- dashboard building,
- Use case analysis and development.
- Development of Smart Response Scripts PowerShell
- Security control and SIEM alert mapping to Smart Response plug-ins
- System health analysis
- Report development
- Experience with SIEM tools such as QRadar,
- Experience with EDR tools such as CrowdStrike, Carbon black, MS Defender (Any two)
- Must have prior experience defining, documenting, and implementing appropriate delivery, parsing, reporting, and retention of security-relevant log information.
- Must have one of the following CERTIFCIATONS : (any one mandatory) :
- Certified Ethical Hacker (CEH)
- CompTIA Security+ / CCNA / CCNP / IBM Certified Analyst
- Security Qradar SIEM 7.5
- prior experience developing new SIEM content including correlation rules, dashboards, reports, and alerts that appropriately characterize the importance of events of interest found in multiple environments.
- Should have solid knowledge of Network technologies including protocols, design concepts, and access control
- Should have solid knowledge of Security technologies including encryption, data protection, access privileges
- Knowledge of Microsoft Windows and Linux systems
Show more
Show less
Skills Required
carbon black , Powershell, Network Technologies, report development , crowdstrike , Microsoft Windows, Siem, Qradar, Security Technologies