Key Skills: SIEM, SOAR, Azure Sentinel, FortiSOAR, Python, PowerShell, Cyber Security, Automation, Security Frameworks, Compliance, Incident Response, Playbook Creation, Log Onboarding, Cyber Kill Chain.
Roles & Responsibilities:
- Manage and oversee SIEM and SOAR solutions, including log onboarding and creation of automated playbooks.
- Provide hands-on technical expertise across Cyber Security and technology domains.
- Collaborate with internal teams to integrate and optimize security monitoring tools and automate workflows.
- Maintain and ensure the performance of SIEM and SOAR platforms, enhancing detection and response capabilities.
- Design and implement automation solutions using scripting languages (e.g., Python, PowerShell).
- Support and ensure compliance with security frameworks and industry regulations.
- Analyze and remediate security incidents, leveraging expertise in the Cyber Kill Chain and common attack methods.
- Work closely with cross-functional teams to define security requirements, processes, and practices.
- Communicate complex security concepts to non-technical stakeholders.
- Monitor and report on security events and incidents to ensure continuous improvement of security posture.
Experience Required:
- 8-11 years of experience in IT Security, with at least 6 years managing SIEM and SOAR solutions.
- Strong hands-on experience with SIEM (e.g., Azure Sentinel) and SOAR platforms (e.g., FortiSOAR).
- Experience in log onboarding for SIEM solutions and creating automated playbooks on SOAR platforms.
- Solid understanding of security frameworks, compliance regulations, and industry standards.
- Technical experience in Cyber Security and technology domains, including threat analysis and remediation.
- Proven ability to work under pressure and manage time effectively.
- Familiarity with e-commerce, logistics, supply chain, and port operations applications is a plus.
Education: Any Graduation