обновлено 11 часов назад
Lead Soc Engineer (Ndr and Vm)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead SOC Engineer (NDR & VM): Enhancing threat detection and response capabilities through NDR technologies and driving a robust vulnerability management program with an accent on analysing network telemetry and behavioral patterns to identify threats. Focus on proactive threat hunting and improving detection capabilities.
What you will do
- Architect and manage NDR solutions to monitor network traffic and detect malicious activity.
- Lead end-to-end vulnerability management lifecycle, from scanning to remediation.
- Assist in investigation and response to security incidents, leveraging NDR and vulnerability data.
- Contribute to SOC architecture strategy and implementation initiatives.
- Stay updated with emerging threats, vulnerabilities, and security technologies.
Requirements
- A minimum of 8 years of experience in SOC operations, with significant experience in NDR and Vulnerability Management.
- Proven expertise in NDR platforms (e.g., Corelight, Extra Hop, Vectra AI, Darktrace,) and vulnerability management tools (e.g., Qualys, Tenable, and Rapid7).
- Strong understanding of TCP/IP, DNS, HTTP/S, and other network protocols.
- Experience with SIEM (Splunk, Sentinel), SOAR, and endpoint protection platforms.
- Hands on experience with writing and tuning detection signatures including Suricata and Snort.
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
Nice to have
- Certified Information Systems Security Professional (CISSP), OSCP, or GIAC is desirable.
- Networking certifications such as CCNA or CCNP are advantageous.
- Vendor certifications for NDR product/s.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
6 дней назад
Senior Cybersecurity SOC Analyst (Cybersecurity)
2 дня назад
Cybersecurity Engineer
16 часов назад
SIEM Engineer/Analyst (Splunk)
2 дня назад
Snr Software Dev Engineer (Anti-DDoS)
6 дней назад
Cyber Security Incident Response Lead (Cybersecurity)
4 дня назад
Cybersecurity SOC Analyst Intern
3 253 - 4 404$