Live opening · Posted 12 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Responsibilities:
Core SOC Operations: Deep understanding of Security Operations Center (SOC) workflows, incident response lifecycles, and cyber kill chain methodologies.
SIEM Expertise: Hands-on experience with major SIEM solutions such as Splunk, QRadar, Azure Sentinel, or ArcSight.
Threat Intelligence and Frameworks: Strong knowledge of the MITRE ATT& CK framework, threat intelligence feeds, and correlation of Indicators of Compromise (IOCs) and Tactics, Techniques, and Procedures (TTPs).
Security Tools and Engineering: Experience monitoring, tuning, and analyzing firewalls, IDS/IPS, EDR (Endpoint Detection and Response), NDR, and IAM integrations.
Automation and Scripting: Proficiency in scripting languages like Python or PowerShell to drive automation and data enrichment.
Log Analysis and Forensics: Ability to perform root cause analysis, analyze logs across servers and network appliances, and support foundational forensic investigations.
ITSM and Ticketing: Familiarity with ServiceNow or similar ITSM tools for tracking, documentation, and escalating complex L3 issues to closure.
Requirements:
Professional Background: Mid-senior-level cybersecurity professionals with a strong background in IT services, threat detection, and incident management.
Core Competencies: Strong analytical mindset, excellent documentation and communication skills, and the ability to drive incident response under pressure.
Key Qualifications: Hands-on technical background in log analysis, threat hunting, and multi-vendor security tool integrations.
Experience
3-6 yrs
More openings worth a look
Recently tracked roles with full details and direct application links.