Cybersecurity Analyst (Microsoft Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cybersecurity Analyst (Microsoft Security): Monitoring security alerts and performing incident response using Microsoft Sentinel and Defender suite with an accent on threat detection and automation. Focus on developing analytic rules, managing device compliance via Intune, and investigating suspicious activities in a 24/7 SOC environment.
Location: Hybrid in Tunis, Tunisia
Company
Global leader in cloud-based spend management solutions that uses AI to simplify accounts payable processes.
What you will do
- Monitor security alerts and logs from Microsoft Sentinel and the Defender suite (endpoint, cloud apps, Office 365).
- Perform triage, analysis, and escalation of security incidents and investigate suspicious activities.
- Develop and tune analytic rules in Microsoft Sentinel and maintain automation playbooks.
- Support monitoring and configuration of Microsoft Defender suite and use Microsoft Intune for device compliance.
- Collaborate with SOC, IT, and security teams to improve detection and response processes.
- Contribute to security dashboards and reporting while staying updated on emerging threats.
Requirements
- Degree in Cybersecurity, IT, or a related field.
- 1+ year of experience in SOC, cybersecurity, or IT security.
- Basic understanding of SIEM, incident response, and networking.
- Ability to work in a 24/7 SOC environment.
- Must be based in Tunis (Hybrid).
Nice to have
- Familiarity with Microsoft Sentinel, Defender suite, and Intune.
- Knowledge of MITRE ATT&CK, NIST, or CIS frameworks.
Culture & Benefits
- Hands-on experience with the modern Microsoft security stack.
- Career growth opportunities and exposure to real-world threats.
- Collaborative and meritocratic work culture with supportive leadership.
- Medical, dental, and vision coverage.
- Paid time off and retirement benefits.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →