Full-Time Cybersecurity SOC/NOC Specialist
Shiji Group is hiring a remote Full-Time Cybersecurity SOC/NOC Specialist. The career level for this job opening is Experienced and is accepting Katowice, Poland based applicants remotely. Read complete job description before applying.
Shiji Group
Job Title
Posted
Career Level
Career Level
Locations Accepted
Share
Job Details
Manage tasks focused in 30% on SOC and 70% on NOC.
Develop monitoring scenarios, analyze events and metrics to identify security incidents, anomalous activities and potential threats to systems, networks and applications.
Design, build, improve, operate, troubleshoot and perform maintenance of systems and solutions supporting security function.
Identify and respond to anomalous activities, security incidents and alerts; categorize and escalate issues; prioritize incidents in accordance with business requirements.
Perform investigations of security incidents.
Analyze environment, identify trends in cloud, infrastructure and application security.
Develop mitigation strategies and support in remediation activities.
Investigate and troubleshoot application and infrastructure performance issues, develop metrics and alerts for multiple environments.
Contribute to building security knowledge base and sharing it across the organization.
Fundamental knowledge in Cybersecurity / IT security space.
Strong will to develop skills in cybersecurity and to learn new technologies.
Team player with strong communication skills and ability to work in agile environment.
Self-motivation, positive attitude, creativity and attention to details.
Good spoken and written English.
Ability to work under high pressure situations.
Ability to work in 24/7 shifts.
Nice to have:
- Experience in security monitoring, Security Operations Center (SOC) operations, cybersecurity incident response or threat hunting.
- Knowledge of solutions supporting security monitoring (e.g. SIEM, IPS/IDS, DLP), firewalls, vulnerability scanners.
- Cybersecurity and forensics related certifications (e.g. CompTIA Security+ or similar).
- Knowledge of security standards, concepts and best practises as well as threats and attack vectors (e.g. MITRE ATT&CK and OWASP).
- Understanding of Linux and Windows operating systems, network infrastructure concepts and cloud solutions (in particular AWS).
- Knowledge of cloud security solutions (e.g. AWS CloudWatch, CloudTrail, GuardDuty, WAF).
- Working knowledge of scripting and programming languages.