Job Description
Key Responsibilities
Security Monitoring and Analysis:
- Monitor security logs and SIEM systems for suspicious activity and potential security incidents.
- Analyze security events to identify root causes and determine impact.
- Investigate and triage security incidents according to established procedures.
- Correlate data from various sources to gain a holistic view of security threats.
Threat Intelligence And Research
- Stay up-to-date on the latest cyber threats, vulnerabilities, and attack vectors.
- Conduct threat hunting to proactively identify potential security risks.
- Provide insightful reports and recommendations to improve security posture.
Security Incident Response
- Participate in the incident response process according to established protocols.
- Assist with containing and mitigating security incidents to minimize damage.
- Document and report on security incidents and lessons learned.
Security Policy And Compliance
- Support the development and implementation of security policies and procedures.
- Conduct audits and assessments to ensure compliance with security standards and regulations.
- Train and educate users on security best practices.
Reporting
- Effectively communicate security risks and mitigation strategies to technical and non-technical audiences.
- Generate clear and concise report and documentation.
Qualifications
- Bachelor's degree in Computer Science, Information Security, or related field.
- 3-5 years of experience in information security, with a focus on network security.
- Experience with security tools and technologies (e.g., SIEM, SOAR, EDR)
- Strong communication and analytical skills.
- Ability to work independently and as part of a team.
Preferred Qualifications
- Professional certification (e.g., Security+, GCNA, SSCP)
- Familiarity with security principles and best practices (e.g., NIST Cybersecurity Framework).