
Search by job, company or skills
Key Responsibilities:
• Lead complex security incident investigations and provide expert-level forensics and technical analysis.
• Perform end to end incident management, including containment, eradication, recovery, and root-cause analysis.
• Act as a senior escalation point for L1/L2 analysts and guide them through complex investigations.
• Conduct proactive, intelligence-driven threat hunting to identify advanced and stealthy threats.
• Analyse multi-source security logs, correlate events, and detect sophisticated attack patterns.
• Investigate zero day vulnerabilities, newly reported CVEs, and emerging cyber threats.
• Develop, refine, and maintain detection use cases, correlation rules, event logic, and alert thresholds.
• Provide SIEM & SOAR tuning and optimization to reduce false positives and improve detection fidelity.
• Enhance automation workflows within SOAR platforms to improve incident response efficiency.
• Maintain and continuously improve SOC playbooks, SOPs, and response templates.
• Drive improvements across SOC processes, SLAs, shift workflows, and operational maturity.
• Lead continuous improvement initiatives, focusing on detection gaps, tuning feedback loops, and new log onboarding.
Requirements:
Job ID: 145941085