Source description
About the role
Experience / Role : - Bachelor s degree in computer science, Information Security, or related field (or equivalent experience). - Extensive experience (5+ years) in security operations, with a focus on SOC operations and incident response. - In-depth knowledge of security technologies, tools, and methodologies, including SIEM, IDS/IPS, EDR, and threat intelligence platforms. - Strong understanding of cyber threats, attack vectors, and common security vulnerabilities. - Experience with security compliance frameworks (e.g., NIST, ISO 27001) - Excellent analytical, problem-solving, and communication skills. - Relevant certifications such as CISSP, CISM, GIAC, or equivalent are a plus. Required Skills : - Strong scripting skills, including shell scripts, Perl, Ruby, Python, Go, Groovy, Helm, powershell, etc; - Good experience in administering and performance tuning of application stacks, such as Tomcat, JBoss, Apache, Ruby, NGINX, and others. - Ability to work with Jenkins, Travis, Ansible, Kubernetes, etc Job Description : - We are seeking a highly skilled and experienced SOC Operations Subject Matter Expert (SME) to join our team. As an SME, you will play a crucial role in overseeing and enhancing the day-to-day operations of our Security Operations Center (SOC). You will be responsible for providing expert guidance, implementing best practices, and ensuring the efficiency and effectiveness of SOC operations. - Technical Leadership: Provide technical leadership and expertise in SOC operations, including incident detection, response, and mitigation. - Process Optimization: Evaluate existing SOC processes and procedures and recommend improvements to enhance efficiency and effectiveness. - Tool Evaluation and Implementation: Assess security tools and technologies for SOC use and oversee their implementation and integration into SOC workflows. - Incident Response: Lead and coordinate incident response activities, including containment, investigation, and recovery efforts. - Threat Intelligence Analysis: Stay abreast of the latest cyber threats and trends and provide analysis and recommendations to enhance threat detection and response capabilities. - Training and Mentoring: Develop and deliver training programs for SOC analysts to enhance their skills and knowledge in incident detection, analysis, and response. - Collaboration: Collaborate with cross-functional teams, including IT, engineering, and compliance, to ensure alignment of SOC activities with organizational objectives and requirements. - Documentation and Reporting: Maintain accurate documentation of SOC processes, procedures, and incidents, and generate reports for management and stakeholders as needed. - Continuous Improvement: Identify areas for continuous improvement within the SOC, and drive initiatives to enhance capabilities, processes, and technologies. - Compliance and Audit Support: Assist in compliance efforts and audit preparations by providing expertise on SOC operations and controls.
More at Central Depository Services