Expoint - all jobs in one place

Finding the best job has never been easier

Limitless High-tech career opportunities - Expoint

Fortinet SOC Use Case Specialist 
Canada, British Columbia, Burnaby 
846675801

21.11.2024

SOC (Security Operations Center) Use Case Specialist is responsible for studying security data and logs, designing and implementing queries, rules and reports to detect security threats and training SOC analysts to triage and respond. They work closely with a team of security analysts to identify, investigate, and respond to security threats within Fortinet SOC.

Experience Level - 5+ Years

Key responsibilities include:

  • Strong understanding of threat detection technologies such as Next-Gen Firewalls, endpoint protection and EDR solutions. Experience with Fortinet products such as FortiGate, FortiClient and FortiEDR is a bonus.
  • Good understanding of common security log sources across different Operating systems, common services and security devices. Experience with Fortinet product logs is a bonus.
  • Develop SOC monitoring use cases based on detection technologies, available data sources and applicable threats vectors across both IT and OT.
  • Implement and test SOC monitoring use cases using security tools and technologies such as SIEM and SOAR from development to PoC, Staging and production stages. Experience with Fortinet SecOps products such as FortiAnalyer, FortiSIEM and FortiSOAR is a bonus.
  • Experience with DB query languages such as SQL and scripting languages such as Python, Bash, Powershell to retrieve, analyze and visualize security data in different SOC reports.
  • Good understanding of cybersecurity frameworks such as MITRE and its tactics and techniques including ICS domain to organize SOC use case development work and gap analysis.
  • Collaborating with cross-functional teams, including SOC teams to ensure SOC monitoring use cases are implemented and maintained well. Furthermore provide guidance and expertise to operation teams on triage and response steps.
  • Keeping up-to-date with industry trends and developments in cybersecurity and continuously improving the security operations center to meet changing security needs.

The Canada base salary range for this full-time position is expected to be between $94,000 - $127,000 annually. Wage ranges are based on various factors including the labour market, job type, and job level. Exact salary offers will be determined by factors such as the candidate’s subject knowledge, skill level, qualifications, and experience.