This is a SOC position in a 24/7 incident response team.
How you’ll spend your day
Ongoing monitoring and investigation of alerts and potential incidents
Responsible for full incident response process including detection, identification, analysis, and containment activities.
Respond to security incidents according to the security IR plan processes, playbooks, and triage.
Determine between false positive and real attack.
Responsible for escalating complex incidents to Tier2.
Distinguish when there is a need for rule optimization and fine tuning.
Communication and follow-up of potential security risks detected and on open incidents.
Documentation of all incident investigation phases and conclusions.
Your experience and qualifications
Preliminary experience in the field of information security, including familiarity with cyber threat scenarios, security controls, and defense systems.
An understanding of IT infrastructure and experience in enterprise organizations.
Practical experience in monitoring and responding to information security incidents is an advantage.
Having a basic understanding of data communication and networking.
Having a basic knowledge of cloud computing
Experience with EDR and SIEM systems is an advantage.
Fluent English language - reading, writing, and speaking is obligated!
Self-discipline, teamwork, human relations, and service orientation.
Willing to work on shifts 24/7 including nights
The internal career site is available from your home network as well. If you have trouble accessing your EC account, please contact your local HR/IT partner.