Detect, classify, and report incidents to either escalate to the triage team or close the event to ensure the root cause of the incident
Identify security risks and communicate escalations throughout the incidents per the Security Operations Center (SOC) processes
Communicate directly with data asset owners and business response plan owners during high severity incidents to maintain the integrity of the Investigation
Perform analysis of log files to investigate the events to identify the root cause of the incident
Recommend tuning Security Information & Event Management (SIEM) filters and correlation rules to continuously improve monitoring and detection
Create monitoring dashboards to ensure real time awareness of security
Generate reports required for audit and compliance requirements and required SOC governance reports
Participate in evaluating and recommending security solutions to ensure catering for logging and monitoring requirements in any system to fulfil SOC core objectives
Monitor all log sources heart beat and report/investigate issues to ensure maintaining healthy logs to avoid any failure of data collection and impacting the core SOC monitoring function
Follow all relevant department policies, processes, standard operating procedures and instructions so that work is carried out in a controlled and consistent manner
Follow the day-to-day operations related to own jobs in the department to ensure continuity of work
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.