Monitoring client IT security infrastructure, identifying and reporting Real Time attacks and vulnerabilities using IBM Radar SIEM and other integrated security solutions
Identify, categorize, prioritize, and investigate correlated events. Identification of incidents and subsequent analysis and investigation to determine their severity and the response required
Perform investigation and triage of events and incidents and escalate according to SOPs. Ensure that incidents are correctly reported and documented in accordance with policy and procedures
Monitor/and work ticket queue for events and incidents
Document investigation results and provides relevant details for final analysis. Develop reports, dashboards, real-time rules, filters, active channels, etc
Provide event/incident procedure, long-term analysis, and investigation into network activity and provide investigation reports.
Develop and institute standard procedures for the “front-end” operation of the SIEM system as directed by Security Engineers. Among others
Qualifications
BSc in Computer Science or B.Eng in Engineering
Experience in a multi-disciplined IT environment with strong expertise in Data Analysis and vulnerability management.
3-5 years post-graduate experience, with a minimum of 3 years experience in required function in a reputable organization preferably an Oil & Gas company.