Description
You will monitor, detect, analyze, and respond to security incidents affecting the SPC environment.
Responsibilities
- Monitor SIEM systems and other tools to detect security incidents and anomalies.
- Investigate and analyze security incidents, determine root causes, and manage remediation efforts.
- Develop automation scripts and workflows to improve SOC efficiency and create playbooks.
- Perform in-depth log analysis to identify indicators of compromise (IOCs).
- Develop and maintain incident response plans and procedures.
Required Skills
- 5+ years of experience in IT Security with strong analytical problem-solving skills.
- Proficiency in Python for automation and solving complex security issues.
- Solid understanding of information technology and security best practices.
- Proficiency in Linux, including security hardening for Linux, web apps, and databases like PostgreSQL and MariaDB.
- Basic understanding of network routers, switches, and firewalls.
- Ability to work in a 24/7 environment with on-call duties.
- Strong oral and written documentation and communication skills.
- Familiarity with open-source security tools and applications.