Job Description :
- The role involves managing escalated operational cases in the Cyber Fusion Center and collaborating with clients and partners to provide world-class managed services.
- Deliver high-quality incident handling and investigation, and be the second level of escalation for Tier-1 Security Analysts.
Key Responsibilities :
Manage escalated cases to the Tier-2 queueAnalyze and respond to security events from SIEM, EDR, FWs, IDS, IPS, AV, and other security data sources.Perform on-call duties for Threat Monitoring and Security Device Management escalation outside of business hours.Service Improvement :
Tune rules for client SIEM in operation.Support the rules factory program in improving the global set of detection.Validate Go-to-Active and Go-to-Prod gates for new clients.General Responsibilities :
Take responsibility for customer satisfaction and overall success of managed services.Be available and ready to accept incoming client calls.Mentor fellow Security Engineers and Security Analysts.Requirements :
Minimum 2 years' experience in information security managing and monitoring security devices or equivalent.Excellent client service skills.Excellent analytical thinking and problem-solving skills.Ongoing professional development in cybersecurity.Preferred Qualifications :
Experience reviewing and analyzing log data.Experience reviewing and analyzing network packet captures.Good knowledge of SIEM technologies.Good knowledge in cloud and OT / ICS technologies.We offer a dynamic work environment that fosters collaboration and innovation. If you are passionate about cybersecurity and providing excellent client satisfaction, we encourage you to apply.