The SOC analyst will monitor and fight threats on behalf of our client's IT infrastructure, and to assess security systems and measures for weaknesses and possible improvements. The SOC analyst is responsible for ensuring the protection of digital assets from unauthorized access, both online (cloud) and on premise for our client's networks against cybersecurity threats such as hackers, Cyber-terrorists and malware that can steal or corrupt sensitive customer data.
Main Duties and Responsibilities
Technical and Operations
- Identify, secure, and weed out the threats as front-line defense personnel
- Monitor, manage, and configure security tools, review incidents to assess their urgency, and escalate incidents if necessary
- Operate as an incident responder (Tier 2), remediating serious attacks, assessing the scope of the attack and affected systems, and collecting data for further analysis
- Analyze a breach within our client's environment to reach the root cause and remediation steps to limit risk
- Generate security reports for our clients, that serve as an input to evaluate the efficacy of the security policies
- Advise on what our clients should implement as part of the necessary changes required to counter the attack or improvise security standards
- Act as first line of defense as part of our managed security services for our clients to document incidents and contribute to incident response and disaster recovery plans if required
Talent Development
- Lead and coach the team cultivating empowerment and ownership
- Develop capabilities and secure a solid succession plan
- Conduct regular performance reviews, identify training needs and oversee development plans
Desired Candidate Profile
Position Requirements
Education
Bachelor s degree in Information Technology, Computer Science or any other related field
Experience
At least 3 years in a Security Operations Center (SOC) related to MSS environment #LI-AA4
سيقوم محلل SOC بمراقبة ومكافحة التهديدات نيابة عن بنية تشغيل تكنولوجيا المعلومات الخاصة بعميلنا، وتقييم أنظمة الأمن وإجراءاتها من حيث الثغرات والتحسينات المحتملة. يتحمل محلل SOC مسؤولية حماية الأصول الرقمية من الوصول غير المصرَّح به، عبر الإنترنت (السحابة) وعلى地点 الميادين لشبكات عميلنا ضد تهديدات الأمن السيبراني مثل القراصنة والإرهابيين السيبرانيين والبرمجيات الخبيثة التي قد تسرق أو تفسد بيانات العملاء الحساسة.
المهام والمسؤوليات الأساسية
Technical and Operations
- تحديد وتأمين والتطهير من التهديدات كأفراد دفاع في الخط الأول
- مراقبة وإدارة وتكوين أدوات الأمن، مراجعة الحوادث لتقييم مدى urgencyها، وتقديم التصعيد عند الضرورة
- العمل كمستجيب للحوادث (Tier 2)، معالجة الهجمات الجسيمة، تقييم نطاق الهجوم والأنظمة المتأثرة، وجمع البيانات للتحليل الإضافي
- تحليل خرق داخل بيئة العميل للوصول إلى السبب الجذري وخطوات الإ remedial لمنع المخاطر
- إنشاء تقارير أمان لعملائنا، والتي تعمل كمدخل لتقييم فعالية سياسات الأمن
- تقديم المشورة حول ما يجب أن ينفذه عملائنا كجزء من التغييرات اللازمة لمواجهة الهجوم أو تحسين معايير الأمن
- العمل كخط الدفاع الأول كجزء من خدمات الأمن المدارة لعملائنا لتوثيق الحوادث والمساهمة في خطط الاستجابة للحوادث والتعافي من الكوارث إذا لزم الأمر
Talent Development
- قيادة وتوجيه الفريق لتعزيز التمكين والملكية
- تطوير القدرات وتأمين خطة خلافة متينة
- إجراء تقييمات أداء دورية، وتحديد احتياجات التدريب والإشراف على خطط التطوير
Desired Candidate Profile
Position Requirements
Education
درجة البكالوريوس في تقنية المعلومات أو علوم الحاسب الآلي أو أي مجال ذي صلة
Experience
خبرة لا تقل عن 3 سنوات في مركز عمليات أمنية (SOC) مرتبط ببيئة MSS #LI-AA4