Skill diminta
Analytical ThinkingCommunication
Deskripsi
Responsibilities
- Monitor, investigate, and analyze security events using SIEM and other security monitoring tools.
- Perform incident triage, root cause analysis, and coordinate incident response activities.
- Escalate complex security incidents to SOC Level 3 or Team Lead when required.
- Conduct threat intelligence analysis and support threat hunting activities.
- Prepare incident reports and provide recommendations for remediation.
- Collaborate with internal teams and customers during security incident handling.
- Ensure compliance with SOC operational procedures and service level agreements (SLAs).
Requirements
- Minimum 3 years of experience in Security Operations Center (SOC), Incident Response, or Cyber Security Operations.
- Holds one or more of the following certifications (or equivalent):
ECSA / CPENT
- ECIH (EC-Council Incident Handler)
- CTIA (Certified Threat Intelligence Analyst)
- CSA (Certified SOC Analyst)
3. Strong understanding of
- Security Monitoring & SIEM Platforms
- Log Analysis and Event Correlation
- Incident Detection, Investigation, and Response
- Threat Intelligence and Threat Hunting
- Network Security fundamentals (TCP/IP, Firewall, IDS/IPS, VPN)
- Familiar with security frameworks such as MITRE ATT&CK, Cyber Kill Chain, or NIST Incident Response.
- Able to work in shift, on-site, and project-based assignments.
- Good analytical thinking, communication skills, and willingness to continuously learn new technologies.