Cyber Security Operation Analyst
Indispensabile:Security
Provide support in delivering MDR and SOC-related solutions (e.g. EDR, SIEM, and SOAR)
Provide monitoring and analysis of security alerts generated in EDR and SIEM platform, including any potential recommendation for customers
Compile MDR and SOC monthly report for customers
Having strong network security knowledge (including familiar with TCP/IP concept)
Having experience in operating SIEM tools, including building log parser and use case
Having experience in operating NGAV or EDR solution
Having good fundamental knowledge in Linux
Having knowledge of attack lifecycles like Cyber Kill Chain or MITRE ATT&CK, including managing end-to-end Incident Response, from isolation to recovery.
Familiar with security vulnerability concept