Responsibilities:
• Manage security systems: DLP, XDR, Network VPN gateway.
• Implement and maintain security control policies to enhance security.
• Keep security system infrastructure updated and patched.
• Integrate security systems with new IT solutions and assets.
• Debug issues related to the security systems software — cooperate closely with vendor support.
• Continuously monitor network activity, systems load.
• Monitor and review vendor notifications about SaaS security system maintenance, critical vulnerabilities, new releases, and features.
• Identify and analyze potential threats and vulnerabilities in the security systems.
Incident Response
• Respond to security incidents and provide 2-3 levels of support for the SOC team, coordinating incident response efforts.
• Escalate incidents to other teams as necessary.
• Prepare tech documentation after implementation of new security controls, system configurations.
• Create basic instructions for security software for end users.
• Suggest improvements to security system configuration and incident mitigation.
• Participate in post-incident reviews and propose enhancements.
Requirements:
• 5 years of experience in IT infrastructure administration or information security roles.
• Advanced administration of macOS, Windows, and Linux operating systems, including secure configuration, system hardening, access control management, and troubleshooting at the OS level.
• Understanding of networking fundamentals, including IP networking, routing, switching, and network protocol behaviourrelevant to security analysis.
• Basic knowledge of regulatory requirements and standards such as ISO27001, ISO27701, PCI DSS, GDPR, and others.
• Administration and configuration of EDR/XDR platforms, including policy management, detection rule tuning, incident investigation, and endpoint threat response.
• Configuration and administration of enterprise VPN solutions, including secure remote access management, authentication policies, and network access control.
• Administration and tuning of DLP systems, including policy development, data classification integration, and monitoring of data exfiltration risks.
⚡Показать контакты
#Офис #ИБ
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Текст вакансии взят без изменений
Источник - Telegram канал. Название доступно после авторизации