Purpose
Administer and maintain system security stack (firewalls, IDS / IPS, SIEM / SOAR) while also performing continuous monitoring and log analysis.
Key Responsibilities
- Administer and manage firewalls, IDS / IPS, endpoint protection, and related security solutions.
- Operate SIEM / SOAR platforms for event correlation, log analysis, and automated response.
- Conduct vulnerability assessments, penetration testing support, and incident response.
- Develop and maintain incident response playbooks and workflows.
- Provide security input during incident handling and escalation with vendors or partners.
- Monitor threat intelligence sources and integrate findings into detection / response processes.
- Support compliance reporting with security logs, audit evidence, and technical documentation.
Requirements
3–5 years’ experience in cybersecurity operations.Familiarity with SIEM / SOAR platforms and event monitoring.Hands-on firewall / IDS / IPS administration.Understanding of threat intelligence and IR workflows.#J-18808-Ljbffr