Job description
- Design and implement security solutions using industry-leading technologies.
- Collaborate with clients to understand their security needs and develop tailored solutions.
- Integrate and optimize SIEM systems (Splunk, Microsoft Sentinel, Sentinel One, Securonix) for effective threat detection and response.
- Deploy and manage EDR solutions (CrowdStrike, Microsoft Defender, Mandiant Managed Defense) to enhance endpoint security.
- Lead incident response efforts using Mandiant methodologies to mitigate security incidents.
- Implement and manage SOAR platforms (SwimLane, Siemplify, XSOAR, Cortex) to automate and streamline security operations.
- Utilize Threat Intelligence platforms (VirusTotal, Mandiant) to enhance threat detection capabilities.
- Oversee CSPM solutions to ensure cloud security posture compliance.
- Conduct threat hunting activities query languages identify advanced threats.
- Stay updated with the latest cybersecurity trends, tools, and techniques.
Required Skills and Qualifications
- Bachelor s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Proven experience in designing and implementing security architectures in mid to large enterprise settings.
- In-depth knowledge of SIEM, EDR, Incident Response, SOAR, Threat Intelligence, CSPM, and Threat Hunting technologies.
- Hands-on experience with Splunk, Microsoft Sentinel, Sentinel One, Securonix, CrowdStrike, Microsoft Defender, Mandiant Managed Defense, SwimLane, Siemplify, XSOAR, Cortex, VirusTotal, Wiz.io, Laceworks, Big Query, SnowFlake, Elastic, and Azure Sentinel KQL.
- Strong understanding of cybersecurity principles, frameworks, and best practices.
- Excellent problem-solving and analytical skills.
- Strong communication and interpersonal skills, with the ability to interact effectively with clients and team members.
- Relevant certifications such as CISSP, CISM, CEH, or similar are a plus.
Preferred Skills
- Experience working in an MSSP or similar environment.
- Knowledge of regulatory requirements and compliance standards (e.g., GDPR, HIPAA, PCI-DSS).
- Familiarity with cloud security architectures and frameworks