

Search by job, company or skills

Job Description :
1. Monitor security alerts from SIEM, XDR, IDS/IPS, firewalls, and other security tools
2. Investigate, analyze, and triage security events and incidents, include CVE trend
3. Respond to incidents including malware infections, phishing attacks, unauthorized access, and data breaches
4. Escalate incidents according to severity and follow incident response procedures
5. Participate in post-incident reviews and root cause analysis
6. Identify emerging threats, indicators of compromise (IOCs), and attack patterns
7. Conduct vulnerability scanning and assist with remediation tracking
8. Support threat hunting activities to proactively detect suspicious behavior
9. Maintain and tune security tools to reduce false positives and improve detection
10. Assist with log management and forensic data collection
11. Ensure security controls align with organizational policies and standards
12. Document incidents, investigations, and response actions
13. Support audits and compliance requirements (e.g., ISO 27001, NIST, SOC 2, HIPAA, PCI DSS)
14. Develop and update security playbooks, procedures, and runbooks
Requirement :
1. Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or equivalent experience
2. 4+ years of experience in IT security, SOC, or security operations
3. Strong understanding of IT security concept (WAF, EDR, XDR, Secure Web Gateway)
4. Familiarity with common attack techniques (MITRE ATT&CK framework)
5. Hands-on experience endpoint security tools, such as EDR, XDR
6. Hands-on experience with SIEM (Security Event, FIM)
7. Strong understanding of networking concepts (TCP/IP, DNS, SSL/TLS, VPNs)
Job ID: 141027145