Perform log analysis using the SIEM platform to detect anomalies and suspicious activities.
Analyze alerts escalated from the monitoring team (Tier 1) to determine false positives and true positive alerts.
Conduct incident investigations using security systems such as SIEM, EDR, and XDR.
Handle and respond to basic security incidents triggered by common attack alerts.
Collaborate closely with SOC teams, Incident Response, Threat Intelligence, and IT departments to share findings and continuously improve the organization's overall security posture.
Position Requirements
Bachelor's degree in information security, Information Technology, Computer Science, or a related field.
Minimum of 4 years of experience working in a SOC or an equivalent role in the cybersecurity domain. At least 2 years of experience working in leading team for Leader role.
Hands-on experience monitoring and handling incidents using SIEM and EDR systems.
Understanding and practical experience investigating incidents across enterprise security controls.
Strong knowledge of security frameworks and methodologies, including: MITRE ATT&CK, NIST, 6-step Incident Response, Cyber Kill Chain
Basic knowledge of Networking, Active Directory, and Cloud environments.