You will act as a senior technical lead for incident response and advanced security monitoring.
Responsibilities
- Monitor the security environment for potential threats using QROC and Splunk.
- Analyze and triage security alerts to make informed response decisions.
- Contain, mitigate, and remediate security incidents through direct technical action.
- Collaborate with internal and external stakeholders to resolve complex security threats.
- Mentor and train lower-level SOC technicians on incident response best practices and QROC tool usage.
- Document security incidents and responses according to established procedures.
Required Skills
- 5+ years of experience in cybersecurity operations.
- Hands-on expertise with IBM QRadar and QROC (QRadar on Cloud).
- Proficiency with Splunk and Rapid7.
- Experience with IBM Resilient and playbook creation.
- Strong understanding of security use case management.
- Deep knowledge of core cybersecurity concepts.
- Proven ability in security incident triage and remediation.
- Strong analytical, written, and verbal communication skills.
- Degree in any field (Any Graduate).