• Monitoring alerts and security events and protection against cyber-attacks.
• Analyzing security incidents, tracing attacks and triaging alerts.
• Analyze logs from various sources to identify patterns or anomalies.
• Implementing dashboards to clarify detection view.
• Escalate incidents to higher-tier analysts when it is necessary.
• Creating incident or trouble tickets, follow-up tickets.
• Create security reports and document results.
• Rotating shifts 24/7.
Requirements
University degree:
• Successfully completed university degree in computer science, IT security or comparable qualification.
Experience:
• +1 years of relevant professional experience in SOC Teir-1
Knowledge:
• Knowledge of cyber threats and vulnerabilities.
• Knowledge of networks & network security and understanding of network monitoring & protocols.
• Understanding concepts of firewall, UTM, VPN, WAF, IPS/IDS, EDR
• Knowledge of CEH, PWK, LPIC and Microsoft Windows (preferred)
Skills:
• Ideally, you already have experience or certifications in the field of SIEM (e.g., Splunk, ELK), vulnerability management (e.g., Tenable), and endpoint protection systems (e.g., Anti-malware, EDR).
• Experienced in fundamental attack concepts (terminology, tools, processes, etc.).
• The workplace requires a high level of resilience and stress stability, good communication and teamwork skills, Sense of responsibility and commitment.
• hands-on experience in Linux audit, Windows Event logs and Sysmon, and firewall logs.
ثبت مشکل و تخلف آگهی
ارسال رزومه برای شرکت ارتباطات مبین نت