Job Description
Role & responsibilities
Experience
- 3-7years of Information Security experience in Incident Management, Incident Response, Security Operations.
- Experience managing security incidents within enterprise SOC environments.
- Experience working with cross-functional technical and business teams during incident response activities.
Technical Knowledge
1. Good understanding of Incident Management and Incident Response lifecycles.
2. Hands-on experience with:
- Microsoft Sentinel
- Cortex XSOAR
- EDR Platforms (Microsoft Defender, CrowdStrike, etc.)
- SIEM and Security Monitoring solutions
3. Understanding of MITRE ATT&CK Framework, Cyber Kill Chain, and NIST Incident Response Framework.
4. Familiarity with Microsoft 365, Azure, and cloud security concepts.
5. Understanding of threat intelligence and threat hunting fundamentals.
6. Ability to review security alerts, indicators of compromise (IOCs), and investigation findings to assist response coordination.
Key Competencies
1. Incident Lifecycle Management
2. Major Incident Coordination
3. Severity Classification & Escalation
4. Stakeholder Communication
5. Sentinel / XSOAR / EDR Operations
6. SLA & KPI Management
7. Reporting & RCA
8. Threat Intelligence Integration
9. Process & Playbook Improvement
Preferred candidate profile
Certifications:
- SC-200: Microsoft Security Operations Analyst
- ECIH (preferred)
- Security+
- AZ-500
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
