به دنبال فردی با تخصص بالا در نظارت، تحلیل و مدیریت هشدارهای امنیتی، و تجربه گسترده با سیستمهای SIEM مانند QRadar ،Splunk و Sentinel هستیم. فرد مورد نظر باید توانایی پیادهسازی، ارتقا و بهینهسازی زیرساختهای SIEM و یکپارچهسازی سیستمهای امنیتی مختلف را داشته باشد. تسلط بر مدیریت حوادث امنیتی و مهارت در اسکریپتنویسی با زبانهای PowerShell یا Python الزامی است. داشتن مدارک دانشگاهی مرتبط و گواهینامههای امنیتی مزیت محسوب میشود.
شرح شغل:
شرایط احراز:
We are looking for someone with high expertise in monitoring, analyzing and managing security alerts, and extensive experience with SIEM systems such as QRadar, Splunk and Sentinel. The person in question must have the ability to implement, upgrade and optimize SIEM infrastructure and integrate different security systems. Proficiency in security incident management and scripting skills in PowerShell or Python are required. Having relevant academic degrees and security certifications is an advantage.
Skills:
Monitor and analyze security alerts
Evaluate, prioritize, upgrade and manage alerts and mitigate threats
Implement strategies for Collection, normalization and analysis of logs from various technologies
Monitoring and administration of SIEM infrastructure, maintaining system health and efficiency including log sources, alerts and reports
Mastery in leading critical security incidents using response frameworks Standard for threat management and mitigation
Ability to integrate and optimize the system
Ability to develop SIEM content such as dashboards, reports, rules and filters and improve security measures
Expectations:
Having a bachelor's degree or Master's in Information Technology, Security, Cloud Computing, Computer Science or related field
Extensive experience with mainstream SIEM systems such as QRadar, Sentinel, Splunk or open source alternatives
Strong understanding of security incident management from any Two technology and process perspectives
Familiarity with open source XDR and EDRs and experience integrating the output of these products with SOC
Proven expertise in network protocols and security frameworks required to effectively manage threats
Skill in scripting for Automating and integrating security systems, with experience in languages such as PowerShell or Python
Proven ability to lead security projects from start to finish, ensuring robust improvements in security posture
Having relevant professional certifications in the field Cyber Security, or related qualifications
Problem solving skills and the ability to work independently and collaboratively
این آگهی از وبسایت ایران تلنت پیدا شده، با زدن دکمهی تماس با کارفرما، به وبسایت ایران تلنت برین و از اونجا برای این شغل اقدام کنین.