SOC Analyst - Your future position
Location: Singapore or Budapest
As an SOC Analyst, you are responsible for security monitoring, security incident handling and incident management, cyber threat intelligence, threat hunting on XDR stack etc.
Main responsibilities:
Security Monitoring:
- Investigate security events and alerts on XDR/SIEM and other key Security solutions as per the operating model
- Maintain and enhance security monitoring tools and technologies by working closely with the SIEM Detection Engineer
Security Incident Investigation and Management:
- Manage security incidents with goal to quickly contain them. Identify the scope, impact and engage relevant teams. Lead the root cause analysis for frequent and/or major security incidents.
- Develop and maintain IR documentation, including SOP, playbooks, and incident reports.
- Actively participate in drills to validate the effectiveness of incident response procedures.
- Collaborate with cross-functional teams to develop and implement incident response plans, including containment, eradication, and recovery strategies.
- Review and validate incident investigations and response actions done by managed service providers.
Critical Risks and Threat Management:
- For critical risks and threats, engage and drive the relevant teams for mitigation.
Threat Hunting and Threat Intel:
- Conduct proactive threat hunting to identify potential compromises that were undetected. Document these hunts.
- Review threat intel alerts and engage relevant teams as per processes
- Stay up-to-date with the latest security threats, vulnerabilities, attack tactics and techniques, security industry trends, and provide recommendations for improving the organization's security posture.
This position requires on-call responsibilities on a roster basis with the rest of the team.
Main Requirements:
- Possess a Bachelor's Degree in IT.
- Minimum 3 years experience in a SOC environment.
- Possess problem solving skills, driven for results and process-oriented.
- Prior experience in a Security Operations Center handling Incident response and Investigations is mandatory.
- Good experience with a next-gen SIEM or XDR stack, SOAR, EDR, etc.
- Good understanding of IT services like Identity & Access Management, Datacenter, SAP, Desktop services, Network, and Internet services.
- Role is open to be based in Singapore or Budapest
Our Benefits
- Attractive package with benefits
- Excellent opportunities for progressive learning and development
- A creative team environment that will inspire you
- Comprehensive healthcare plans