Posted on: 06/08/2025
Job Description :
Required Skills :
- Strong understanding of current security trends, TCP/IP protocols, and common internet applications.
- Basic knowledge of Windows Server and Unix/Linux OS.
- Hands-on experience with SIEM platform implementations and components.
- Skilled in log integration, event analysis, and troubleshooting within SIEM environments.
- Familiarity with infrastructure and application security in cloud platforms (Azure, AWS, Google Cloud, Oracle).
- Experience in integrating cloud logs/events/flows into SIEM tools.
- Excellent written and verbal communication with strong attention to detail.
- Proficient in MS Office tools.
Responsibilities :
- Handle L2 security tasks including incident response and escalation management.
- Implement and manage SIEM solutions, including log integration (standard/non-standard).
- Proficient in SumoLogic; create queries, dashboards, and reports.
- Monitor and analyze security logs from diverse technologies (e.g., IDS/IPS, firewalls, proxies, antivirus, servers, cloud tools).
- Identify, assess, and respond to security incidents and threats.
- Perform threat modeling and develop use cases for security monitoring.
- Triage alerts, manage incident reporting, and ensure timely resolution.
- Collaborate with cross-functional teams to enhance infrastructure/cloud security.
- Utilize security tools to determine threat impact, scope, and recovery measures.
- Able to work under pressure and in high-stress scenarios.
Did you find something suspicious?
Posted By
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1525711
Interview Questions for you
View All