For our client in the banking sector, we are looking for a specialist for the position of SOC Specialist, who will be responsible for monitoring, evaluating, and resolving security events across both on-prem and cloud environments.
evaluation of security events and alerts from a SIEM tool, analysis of offenses, prioritizing incidents and proposing specific mitigation measures
performing detailed analysis of logs from endpoints, servers, network devices, and cloud services, identifying anomalies and indicators of compromise (IOC)
proactive threat hunting in the bank's environment to uncover advanced threats that bypass standard detection mechanisms
administration and tuning of EDR tools, policy management, response to detections, and coordination of the isolation of compromised devices
management of security features in the Microsoft 365 environment, including security configurations and monitoring mechanisms
administration and development of DLP policies, setting rules for protecting sensitive data, and evaluating their violations
collaboration on the creation and updating of the IRP (Incident Response Plan), involvement in resolving real security incidents
preparation of materials for reporting security events, trends, and risks to management and other internal stakeholders
collaboration with IT teams, architecture, and external vendors in implementing security measures
Requirements
advanced experience with:
administration and daily work with a SIEM tool, analysis and mitigation of security incidents, at least 2 years of experience
experience with:
operation or administration of EDR solutions
resolving security incidents in the role of L2/L3 analyst or a similar role
analysis of logs and network communication
advanced knowledge of:
principles of cybersecurity, attack detection, working with IOC, MITRE ATT&CK framework
knowledge of:
Microsoft 365 cloud environment, security features and DLP principles
basic principles of network security and IT infrastructure operation
advantageous:
experience with threat hunting
experience from a regulated environment (banking, finance)
security certifications such as CEH, CompTIA Security+, or similar
Are you interested in this offer?
Recommendan IT specialistDo you know anyone who could usethis project? Recommend him
and get a reward!
Hirean IT specialistDo you need a similarIT freelancer for your project?
Hire a specialist