Are you a cybersecurity professional passionate about defending organisations from evolving threats? Our client, a leading technology services provider, is looking for a skilled Cyber Security Engineer to join their Security Operations Centre (SOC) team. This role offers the opportunity to work in a dynamic environment focused on 24x7x365 security monitoring, analysis, and incident response.
Key Responsibilities:
Security Operations & Threat Monitoring: Support the day-to-day operation of SIEM, SOAR, and EDR deployments, ensuring effective monitoring and response to cybersecurity incidents.
Data Source Management: On board and maintain diverse log sources, including OS, appliances, and applications, while troubleshooting data ingestion issues.
Technical Development & Incident Response: Create queries, dashboards, and visualisations to support customer requirements, track security incidents, and collaborate with teams for resolution.
Security Architecture & Process Improvement: Manage vendor relationships, design security controls, and continuously assess and enhance security monitoring solutions.
Requirements:
Experience: 3-4 years in cybersecurity or IT, with at least 2-3 years in SIEM deployment.
Technical Skills: Strong knowledge of SIEM, UEBA, Python, PowerShell, and cloud technologies. Working knowledge of machine learning in cybersecurity and endpoint security solutions.
Networking & Security Expertise: Understanding of TCP/IP traffic analysis, log aggregation techniques, and host-based intrusion detection.
Soft Skills: Strong customer service mindset, professionalism, and ability to handle sensitive security matters with discretion.
