We are looking for a highly skilled and motivated SOC Analyst and SIEM Specialist with expertise in Splunk to join our dynamic cybersecurity team. The ideal candidate will be responsible for threat hunting, blue teaming, security incident response, and enabling technically monitoring attacks and anomalies across our environment. Additionally, this role will focus on protecting ISO 27001 and PI-DSS controls, so deep understanding of security risk, audit and compliance frameworks would be very helpful. This is a critical role in ensuring the organization’s security posture aligns with industry standards and regulatory requirements.
Responsibilities:
· SIEM Management & Threat Hunting: o Administer and optimize Splunk as the primary SIEM tool for threat detection and response. o Develop and fine-tune detection rules, alerts, and dashboards to identify malicious activity and anomalies. o Conduct proactive threat hunting to identify advanced threats and vulnerabilities within the environment. · Blue Teaming & Incident Response: o Act as a key member of the blue team, defending against cyberattacks and responding to security incidents in real-time. o Perform in-depth analysis of security events, including malware, phishing, and unauthorized access attempts. o Collaborate with the incident response team to contain, eradicate, and recover from security incidents. · Technical Monitoring & Attack Analysis: o Monitor network traffic, endpoints, and cloud environments for signs of compromise or suspicious activity. o Analyze attack patterns, tactics, techniques, and procedures (TTPs) to improve detection capabilities. o Provide actionable insights to improve the organization’s defensive posture.
o Maintain documentation for compliance reporting and audit readiness · Continuous Improvement & Collaboration: o Stay updated on the latest cybersecurity threats, vulnerabilities, and industry best practices. o Collaborate with cross-functional teams to improve security processes, tools, and technologies. o Provide training and mentorship to junior team members on SIEM tools and threat-hunting techniques.
Requirements:
|
ثبت مشکل و تخلف آگهی
ارسال رزومه برای دیجی پی