Skill diminta
Linux
Deskripsi
- Provide support in delivering MDR and SOC-related solutions (e.g. EDR, SIEM, and SOAR)
- Provide monitoring and analysis of security alerts generated in EDR and SIEM platform, including any potential recommendation for customers
- Compile MDR and SOC monthly report for customers
- Having strong network security knowledge (including familiar with TCP/IP concept)
- Having experience in operating SIEM tools, including building log parser and use case
- Having experience in operating NGAV or EDR solution
- Having good fundamental knowledge in Linux
Having knowledge of attack lifecycles like Cyber Kill Chain or MITRE ATT&CK, including managing end-to-end Incident Response, from isolation to recovery.
Familiar with security vulnerability concept