Key Responsibilities:
Monitor security alerts from SIEM (Security Information and Event Management) tools and other monitoring systems.
Analyze and investigate security incidents, identifying the source and scope of threats.
Respond to and escalate security incidents according to predefined procedures.
Maintain and update incident records, reports, and documentation.
Conduct vulnerability assessments and provide recommendations for remediation.
Stay updated on emerging threats, malware, and cybersecurity trends.
Collaborate with IT and cybersecurity teams to improve security controls and response strategies.
Qualifications:
Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
Knowledge of network protocols, firewalls, intrusion detection/prevention systems, and endpoint security.
Experience with SIEM tools (e.g., Splunk, QRadar, ArcSight) and security monitoring practices.
Strong analytical, problem-solving, and communication skills.
Ability to work in a fast-paced environment and respond effectively to security incidents.
Preferred Skills:
Certifications such as CompTIA Security+, CEH (Certified Ethical Hacker), or GSEC (GIAC Security Essentials).
Familiarity with malware analysis, threat intelligence, and incident response processes.
Experience with scripting or automation for security monitoring (Python, PowerShell).