Role
Who you are
- Experience in Cyber Security and Information Security with knowledge of security environments, industry standards, and compliance frameworks.
- Expertise in systems engineering/administration, Linux, Windows environments, and cybersecurity roles focusing on Blue Team activities.
- Proficiency in Microsoft Azure, AWS cloud platforms, Active Directory, ServiceNow, and tools such as Microsoft Sentinel, Microsoft Defender, Cisco Umbrella, Qualys, and Web Access Firewalls.
- Experience in incident response, SOC environments, and automation using Python and PowerShell.
- Problem-solving and analytical skills essential for the role.
What the job involves
- Enhancing security posture through implementing and managing security measures, threat hunting, incident response, and creating custom detection rules.
- Collaborating with teams to analyze and respond to security incidents, developing incident response playbooks and procedures, integrating security measures with IT infrastructure, and optimizing system performance with stringent security controls.
- Conducting threat hunting activities, escalating security investigations, and detecting/responding to advanced threats and suspicious activity.