About the Job:
Responsibilities:
- Execute highly technical changes, change windows, and client requests
- Ensure the completion of tasks and update tickets accordingly
- Utilize tools and analytical skills to investigate root cause of issues across the technologies
- Document the investigation and provide solution recommendations
- Fulfil Technical Service Leader (TSL) or client requested tasks
- Schedule and run regular technical changes (ie. signature updates, security patches, major software releases)
- Improve upon existing policies and configurations of client technologies
- Provide overall guidance, instruction and leadership to SOC analysts
- Provide mentorship and guidance to other SOC analysts regarding technologies
- Engage in knowledge sharing with other analysts
- Providing major component infrastructure support
- Conduct Health Checks for non-SIEM technologies
- Dealing with infrastructure or enterprise failures or reconfigurations
- Opening and following up on tickets with 3rd party vendors
- Maintain current knowledge on industry issues/trends and competitive products
- Maintain and expand working knowledge of current managed technologies
- Improve technical understanding of all managed technologies.
- Communicate effectively orally and in writing, and establish a cooperative working relationship with persons contacted in the course of performing assigned duties
Requirements:
- Holds certifications of security technologies or network technologies
- Minimum 3 years’ experience in IT security field
- Extensive experience on Firewall platforms
- Have experience in security/operational network architecture design
- Must have proficient knowledge and experience with SIEM technologies
- Strong troubleshooting, reasoning and problem-solving skills
- Networking – VLAN, WAN, LAN, Routers, Switches, Access Points, Firewalls, IPS, VPN etc.
- Excellent communications skills
- Exceptional Time Management and organizational skills
- Ability to conduct forensic analytical studies and investigations effectively and efficiently
- Knowledge of and experience in security threat and attack countermeasure
- Holds Security+ / Certifications in Palo Alto, Cisco, FortiGate, CheckPoint and McAfee products