Expoint - all jobs in one place

המקום בו המומחים והחברות הטובות ביותר נפגשים

Limitless High-tech career opportunities - Expoint

Palo Alto Senior SOC Analyst InfoSec 
Israel, Tel Aviv District, Tel Aviv-Yafo 
311489830

30.04.2024
Description

Being the cybersecurity partner of choice, protecting our digital way of life.

Your Career

You will join a team of analysts and engineers who protect the enterprise that aims to protect the world from cyberattacks. In this role, you will quickly become an expert in Palo Alto Networks security products; primarily XDR, XSOAR, Next-Generation Firewalls and Prisma Cloud. You will also provide feedback to the engineering teams to continually improve our world-leading security products.

Many SOCs are drowning in false-positive alerts, but Palo Alto Networks SOC changed the game and re-invented how Security Operations should function. Our vigilant focus on automation, prevention and high-fidelity alerts enable our analysts to be more proactive. You will not spend your day sifting through alerts. Instead, your day will be split evenly between (1) analyzing and responding to high fidelity alerts (2) proactive threat hunting and (3) contributing to a variety of different projects aligned to your personal interests.

Your Impact

  • Own and lead individual incident response activities by analyzing security alerts and coordinating responses - Perform in-depth event review and analysis where appropriate - Analyze events, research the potential cause, and recommend a course of action
  • Hunt for indications of compromise across multiple technology platforms
  • Continuously improve our alerting use cases and the threat hunting program
  • Collaborate with SOC Automation team to automate tedious, boring activities
  • Contribute to proof-of-concept assessments of new security products
  • Document generate reports detailing security incidents for security leaders and the business
  • Show off your excellent communication skills in post mortem reviews of incident response activities, to facilitate continuous improvement
  • Research security trends with the goal of improving our own processes and tools

Your Experience

  • Minimum 4 years working in a Security Operations role
  • Familiarity with the principles of network and endpoint security, current threat and attack trends, and a working knowledge of security principles such as Defense in depth, Network Security, Incident Management, Malware Prevention
  • Demonstrated experience performing security Incident Response activities in complex organizations, with expertise in at least 2 of the following five core areas
    • Endpoint Detection and Response (EDR\XDR) or Endpoint Forensics
    • Network Log Analysis
    • Public Cloud Defense (AWS, GCP, etc)
    • Web application investigations
    • On-going research on known and new attack vectors, including identification, iteration/evolution, and related mitigations across the enterprise IT landscape
  • Threat hunting experience
  • Hands-on working knowledge of a SIEM
  • Excellent analytical and problem-solving skills
  • Strong communication skills, both spoken and written
  • Strong familiarity with technologies commonly seen in Enterprises. (i.e. AD, Cloud, VMs, etc)

All your information will be kept confidential according to EEO guidelines.