الوصف الوظيفي
Purpose of the Role The SOC Analyst – IT Security provides system administration to the ITD in the areas of information systems security. This includes planning and design activities, installation and maintenance, coordination, and monitoring activities to ensure system security, availability, and an efficient operating environment. Liaise with peers in the IT Security Team and other sections within the IT Division to resolve security incidents, vulnerabilities, and in troubleshooting related network problems. Evaluate new and amended security packages, as assigned. Review monitoring, use cases, relevant policies, processes and provide feedback to maintain the activities related to security incidents and vulnerability management. Main Duties and Responsibilities
Install, maintain, and administer IT security monitoring/assessment systems, and ensure proper operation of the systems according to standards, procedures and ensure availability and recovery on assigned systems.
Co-ordinate changes (upgrades, enhancements, and configuration) to production and test environments related to IT Security assessment/monitoring systems as required. Follow change management processes to carry out the changes.
Work with IT teams and Group Security Operations Center (GSOC) team to troubleshoot and resolve security- related issues and assist in configuring the logs to be forwarded from their respective systems to the centralized logging system.
Monitor the performance of security devices through network monitoring solution and take corrective actions for any threshold breaches.
Monitor security alerts and act as the first line of support for all the security incidents and coordinate with GSOC team and internal ITD team to detect, recover, and prevent or resolve security incidents. Follows up with vendors on incidents reported to ensure timely resolution.
Run periodic vulnerability assessments of the IT Infrastructure and send the reports to the respective custodian of the system to resolve identified vulnerabilities.
Review the periodic vulnerability assessments sent by the GSOC team and send the reports to the respective custodian of the system to resolve the identified vulnerabilities.
Periodic reporting of security incidents, vulnerability assessments, and penetration testing to the management. Follow the relevant process for providing access, making changes to IT security monitoring and assessment systems.
Suggest improvements in processes to enhance the first and second level support of IT Security monitoring and vulnerability assessment environment.
Investigate IT security breaches and incidents with the help of GSOC team and internal ITD teams to improve practices and processes for reducing the likelihood and impact of security-related incidents.
Assist the project manager in project-related activities, especially in creating/reviewing the use cases, for any new/existing systems and co-ordinate with GSOC team to add/update the use cases.
Perform project tasks related to centralized logging, alerting, and vulnerability assessments.
Assist in reviewing deliverables from projects, implementation, and health check activities and supports any potential changes required to IT Security monitoring plans.
Keep abreast of technological development in the IT security field and identifies opportunities to improve efficiency and reduce costs. Includes embracing new technology and finding practical applications for it and implementing improvements as there are identified.
Carry out other related or similar duties as assigned by the line manager.
المهارات
Education Essential
B. Sc. in Computer Science, Engineering, Business Administration, or equivalent ITIL foundation
Certified SOC Analyst (CSA)
Certifications in Firewalls, and other IT security systems.
Experience Essential
+5 years’ experience as a SOC analyst in a medium to large security operations center (SOC).
+10 years’ experience in managing medium to large IT Security Environents
+10 years’ practical on the job experience in computer operations including operating systems/ network/ security
Technical Expertise / Skills / Knowledge
Working knowledge in Routers, Firewalls, Web filtering, email filtering, VPN, DNS Proxy, SSL Decryption, Remote Access, Two Factor Authentication, Vulnerability Assessment, and Security Information and Event management.
Working knowledge of the fundamentals of systems analysis and the different components of systems. Ability to construct, interpret, and execute test plans to verify correct operation of completed systems.
Able to provide basic guidance in the interpretation of relevant national or international standards with respect to the quality system.
Good knowledge of IT security risk analysis methods, tools and techniques and utilize to identify potential exposures to application systems critical to the continuity of the organization.
High-level knowledge of programming languages such as Python, Perl, Power Shell, etc.
Sound analytical and intellectual capabilities.
High level of accuracy and attention to detail.
تفاصيل الوظيفة
منطقة الوظيفة أبوظبي, الإمارات العربية المتحدة
قطاع الشركة خدمات الأمن الخاص
طبيعة عمل الشركة صاحب عمل (القطاع الخاص)
الدور الوظيفي تكنولوجيا المعلومات
نوع التوظيف دوام كامل
الراتب الشهري غير محدد
عدد الوظائف الشاغرة غير محدد
المرشح المفضل
المستوى المهني متوسط الخبرة
عدد سنوات الخبرة الحد الأدنى: 10
منطقة الإقامة الإمارات العربية المتحدة
الشهادة بكالوريوس/ دبلوم عالي
*** تقدم على الرابط التالي : Apply on the following link ***
https://www.bayt.com/ar/uae/jobs/soc-analyst-it-security-4104584/