Bachelor's degree in Computer Science, Information Security, or a related field. Relevant certifications (such as CISSP, SANS, etc.) are a plus.
- 5+ years of experience working in a Security Operations Center (SOC) or Security Engineering department.
- Proven hands-on experience with eMail Security : Such as Proofpoint, Mimecast, Cisco
- Proven hands-on experience with Secure Web Gateway and DLP : Such as NetSkope, Zscaler, Palo Alto Networks, Symantec
- Familiarity with EDR is a significant advantage. Such as : CrowdStrike, SentinelOne, MS Defender, PANW Cortex XDR
- Strong understanding of cyber security principles, tools, methodologies, and best practices.
- Prior experience with SOC solution deployment and configuration.
- Experience in developing and fine-tuning detection rules and threat hunting playbooks.
- Excellent problem-solving skills and the ability to work under pressure.
- Strong communication skills to effectively convey complex security issues to both technical and non-technical audiences.
- Willingness to participate in on-call rotations and respond to security incidents after hours, as needed. Preferred Skills :
- Experience with scripting or programming languages (e.g., Python, PowerShell) for automation and integration.
- Knowledge of SIEM (Security Information and Event Management) solutions and log analysis.
- Understanding of network protocols, encryption, and common attack vectors.
- Ability to work collaboratively in a team environment and manage multiple projects.
- Passion for learning and a proactive approach to threat identification and mitigation.