| Job Location | Oman - Oman |
| Education | Any Graduation. |
| Salary | Not Mentioned |
| Industry | IT - Software Services |
| Functional Area | Not Mentioned |
We are looking for SOC Engineer Responsibilities? Monitor level 1 engineer performance by investigating incoming events using CDC-available tools.? Ensure level 1 event(s) are addressed in a timely manner using available reporting and metrics. ? Approve and, if necessary, further investigate level 1-escalated events.? Mentor level 1 engineers to improve detection capability within the CDC.? Manage SOC event and information intake to include gathering intelligence reports, monitoring ticket queues, investigating reported incidents, and interacting with other security and network groups as necessary.? Serve as detection authority for initial incident declaration.? Function as shift subject-matter experts (SMEs) on incident detection and analysis techniques, providing guidance to junior engineers and making recommendations to organizational managers.? Conduct security research and intelligence gathering on emerging threats and exploits.? Serve as a backup engineer for any potential coverage gaps to ensure business continuity.? Acts as subject matter expert on network, endpoint, threat intelligence, forensics and malware reverse engineering etc.? Periodic review and update false positive database/ knowledge base? Maintain, review & update SOP/ Process documents? Use-Case Design/ Programming and scripting experience in splunk? Understanding of splunk architecture in clustered environment? Deep knowledge on the Security operations related usecases? Extensive forensic experience & threat analytic capabilities? Design, implementation and management of Standard Operating Procedures (SOP) as well as service improvements? Deep technical skills of TCP/IP network, system administration as well as event log analysis? Have familiarity with at least 1 MAC OEM Vendor Systems (Emerson, Honeywell, SE-Invensys, Yokogawa) and other 3rd Party Systems (GE- System1, PI, SCADA/HMI, etc.).? Possess in-depth understanding of PCD environment such as experience in PCD industrial network protocol i.e. OPC, MODBUS, HART, etc.? Be an expert in deep-dive Incident Analysis in OT/ICS Environment or been a part/member of Information Security Incident Response Team and in charge of reporting of any security incident.? Have worked in Industrial environment either Onshore or Offshore Plant sites.? Capable of making use of Splunk enterprise security.
Keyskills :
SOC Engineer
© 2023 HireeJobsGulf All Rights Reserved