Source description
About the role
Key Responsibilities - Monitor and analyze security alerts using SIEM tools (Splunk, QRadar, Sentinel, etc.) - Perform incident triage, investigation, and escalation - Analyze logs from various sources (firewalls, endpoints, servers) - Support incident response and remediation activities - Work with threat intelligence (IOC/TTP) for proactive detection - Maintain incident documentation and ticketing - Ensure compliance with ISMS policies, controls, and audit requirements Required Skills - Hands-on experience with SIEM & EDR/XDR tools - Solid understanding of networking (TCP/IP, DNS, HTTP) - Knowledge of security concepts: SOC operations, threat detection, incident response - Familiarity with ISMS frameworks (ISO 27001) - Experience with Windows/Linux environments - Basic scripting (Python/PowerShell) .
More at Coforge