Key Responsibilities: Analyze data from various sources (endpoints, networks, logs) to identify potential threats and vulnerabilities. Perform in-depth investigations of alerts and incidents, determining their root cause, scope, and impact. Support MDR analysts in handling alerts, and SIEM administration activities such as creating custom use-cases, log-source integration, and Logs Parsing. Implement actions to contain and eliminate threats, restore systems to a secure state, and minimize damage. Continuously monitor the threat landscape for emerging threats, vulnerabilities, and evolving attack tactics. Communicate with clients, internal teams, and vendors regarding security incidents and recommendations. Develop and improve SOC processes and designing training programs. Provide guidance on effective cyber defenses and actionable, cost-effective solutions. Focus on utilizing SOAR platforms to automate and improve security processes, incident response, and threat detection. Develop and implement plans to mitigate identified risks, including security controls and countermeasures. Your Profile: Essential knowledge/experience: Experience with Alerts/Threats Investigation. Driving Major Incident Response.
Contact Detail:
Smartedge Solutions Recruiting Team