Cyber Security Engineer
Manage and optimize the enterprise SIEM environment. Develop, tune, and maintain correlation rules, dashboards, and automated alerts to ensure the rapid identification of anomalous network and user behaviour.
Deploy, manage, and monitor Endpoint Detection and Response (EDR) solutions across the organization. Investigate endpoint alerts, isolate compromised hosts
Manage Web Application Firewalls (WAF) to protect public-facing applications from web-based attacks. Tune and monitor Intrusion Detection and Prevention Systems (IDS/IPS) to block malicious network traffic.
Write comprehensive reports including assessment-based findings, outcomes and propositions for further system security enhancement.
Design computer security strategy and engineer comprehensive cybersecurity architecture.
Develop and implement user awareness policies and procedures.
Apply the required HSE (Health & Safety) regulations.
Bachelor degree of Computer Science
(Certified (CISSP, CEH, CISM, Security+).
Proven work At least 2-year experience as a System Security Engineer or Information Security Enginee
Hands-on experience with SIEM Elastic Search
Ability to write queries (e.g., KQL, EQL) to search through massive log datasets.
Experience parsing logs, creating data visualizations, and building custom threat detection rules.
Operational experience with enterprise EDR platforms
Ability to analyse process trees, memory alerts, and registry changes to identify malware or unauthorized access.
Understanding of the OWASP, MITTER Attack
Experience running vulnerability scanners
Experience on integrate SIEM to other security tools like EDR / Forti