Security Operations Center, Lead

0 years

0 Lacs

Posted:3 weeks ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Your New Role:

  • Provide day-to-day technical expertise, operational leadership, mentoring and escalation for Cyber Security Analysts
  • Where required, respond to cyber-security threats, vulnerabilities, events and incidents
  • Act as technical lead during major security incidents
  • Own and drive improvement in the team’s capability:
  • Operational maturity, including processes/methodologies, playbooks, automation, efficiency, quality, reporting
  • Detection strategies, including attack models, hunting, use cases, tuning, R&D
  • Mitigation strategies, including proactive planning, new controls, optimising existing controls
  • Participate and contributing to the planning and executing of purple teaming activities
  • Deliver cyber security incident and operational reporting and metrics
  • Ensure the team meets operational metrics
  • Maintain an up-to-date knowledge of cyber threats
  • Drive continuous learning and knowledge sharing within the team
  • Provide a basic consulting service for internal stakeholders and projects
  • Work in a ‘24x7 + rostered on-call’ environment
  • Other related activities as required by Management



What will you bring


Excellent understanding and experience with:

  • Incident response methodologies and techniques
  • Detection and mitigation strategies for a broad range of cyber threats, including malware, DDOS, hacking, phishing, lateral movement and data exfiltration
  • Common cloud platforms/technologies, such as Azure, AWS and Google cloud
  • Common enterprise technologies, such as Windows, Linux, Active Directory, DNS, DHCP, web proxies, SMTP, TCP/IP
  • Malware analysis and reverse engineering, including dynamic and static analysis
  • Operational usage of common analysis and response tooling, including Splunk, Crowdstrike, Microsoft Defender, FireEye, Akamai, etc
  • Performing penetration testing, including network, infrastructure and application exploitation and exploit development
  • The Lockheed Martin Cyber Kill Chain™ or similar methodologies


Essential non-technical skills:

  • Demonstrated ability to stay calm and lead under pressure
  • Experience working in a CSOC / CIRT performing level 2 and/or level 3 support
  • Experience in a complex enterprise environment
  • Demonstrated willingness to engage in self-learning or security research outside of standard business hours
  • Strong analytical, problem solving and lateral thinking skills
  • Good verbal and written communication skills
  • Good time management and prioritisation skills
  • Good consulting and stakeholder management
  • Good coaching, leadership and soft skills
  • Demonstrated ability to influence without direct authority


Qualification Requirements

Tertiary qualifications preferably in technology and cyber-security subjects.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You