Security Analyst(Various Levels)
Apply on
Overview
We are seeking Security Analysts to operate in our virtual Security Operations Centre in a level 1 analyst role. Sekuro's SOC is a 24/7/365 operation and shift work is required which includes days, nights, weekends, and public holidays. The ideal candidate will be honest, motivated and driven and eager to learn new skills and contribute to the team’s developments and maintenance of new processes and playbooks. The SOC Analyst role is responsible for monitoring information sources such as the SIEM and other data sources for security anomalies and performing triage and incident investigation including maintaining Cyber security products. This role is critical to ensure issues are detected and responded to in a timely fashion and is an exciting position for those at a junior level within cyber security.
Responsibilities
• Ensure alerts are reviewed in a timely manner; • Performing initial assessment and triage as required then either with escalation to the appropriate team in a timely fashion or complete the investigation using available resources; • Understanding and reviewing regular intelligence briefs to understand any changes to the threat landscape; • Review and updating detection rules • Updating and development of process documentation or playbooks • Working with other teams when appropriate to improve knowledge of the customers environments and possible threats;
• Identifying any deficiencies in the monitoring systems and suggesting improvements;
• Performing incident response tasks • Contribute to continues service improvements uplift for the SOC • Pro-actively identify areas of risk • Perform threat hunting as required based on threat intelligence information through hypothesis development • Review, updating and maintaining required dashboard, reports and alerting
Skills and Experience • Overall strong ability to identify risks and threats • Excellent analytical skills and attention to detail • You will have the ability to find solutions to complex issues
• Understanding of best practices in network security, security operations, systems security, policy, and incident response • Scripting skills (e.g., Python, C, C++, Java, Ruby, or PowerShell) • Excellent communication skills both written and oral • Tertiary education in information or cyber security and or software development