linuxazureawsgcpsiemrisk managementwindowscybersecurityincident responsefirewalledrnetwork protocolsids ipsthreat intelligencesecurity policy development
Вакансия из Telegram канала - Название доступно после авторизации
Пожаловаться
70
Хорошая вакансия
развернуть
Роль четко определена с ясными обязанностями, но отсутствие прозрачности по зарплате является недостатком. Компания работает в стабильном секторе, что является плюсом.
Зарплата не указанаЧеткие обязанностиСтабильный сектор
Responsibilities: • Monitor and analyze security tools, systems, and network activity for threats or suspicious behavior.
• Investigate and triage alerts, perform threat hunting, and conduct malware and phishing analysis.
• Manage the full lifecycle of security incidents, from detection through resolution and documentation.
• Conduct vulnerability assessments, detection validation, and regular security reviews or audits.
• Maintain and optimize security monitoring platforms, infrastructure, and tooling.
• Collaborate with IT and third-party partners to implement security controls, apply fixes, and support incident response.
• Develop and maintain incident response playbooks, procedures, and security awareness initiatives.
• Ensure compliance with internal policies, industry standards, and regulatory requirements.
• Generate and maintain reports, dashboards, and metrics for ongoing security performance tracking.
• Provide occasional after-hours or on-call support as part of incident response efforts.
• Perform other related tasks as assigned.
Requirements: • Proficiency with SIEM tools and EDR platforms.
• Strong understanding of network protocols, security principles, and operating systems (Windows, Linux).
• Hands-on experience with firewall, IDS/IPS, and threat intelligence technologies.
• Familiarity with cloud security concepts (AWS, Azure, GCP).
• Knowledge of attack vectors, mitigation strategies, and incident investigation techniques.
• Bachelor’s degree in Cybersecurity or equivalent with 2+ years of relevant experience.
• 2–4 years in cybersecurity operations or a similar role, ideally within a SOC environment.
• Relevant certifications preferred: CompTIA Security+, THM SAL1, HTB CJCA, Blue Team Level 1/2, Antisyphon Training, etc.
• Proven experience in incident response, risk management, and security policy development.
• Strong knowledge of cybersecurity frameworks, standards, and technologies.
⚡
Показать контакты
#Офис #ИБ
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Текст вакансии взят без изменений
Источник - Telegram канал. Название доступно после авторизации