Description

You will act as a senior technical lead for incident response and advanced security monitoring.

Responsibilities

  • Monitor the security environment for potential threats using QROC and Splunk.
  • Analyze and triage security alerts to make informed response decisions.
  • Contain, mitigate, and remediate security incidents through direct technical action.
  • Collaborate with internal and external stakeholders to resolve complex security threats.
  • Mentor and train lower-level SOC technicians on incident response best practices and QROC tool usage.
  • Document security incidents and responses according to established procedures.

Required Skills

  • 5+ years of experience in cybersecurity operations.
  • Hands-on expertise with IBM QRadar and QROC (QRadar on Cloud).
  • Proficiency with Splunk and Rapid7.
  • Experience with IBM Resilient and playbook creation.
  • Strong understanding of security use case management.
  • Deep knowledge of core cybersecurity concepts.
  • Proven ability in security incident triage and remediation.
  • Strong analytical, written, and verbal communication skills.
  • Degree in any field (Any Graduate).

Education

Any Graduate