Senior Security Engineer
Current• Security Monitoring: o Utilize security tools to investigate and correlate events.o Monitor network traffic and security alerts for potential events/incidents. o Monitor identity and access management, including monitoring for abuse ofpermissions by authorized system users. o Monitor and responding to 'phishing' emails and 'pharming' activity, monitor for attacks,intrusions and unusual, unauthorized or illegal activity.• Incident Responseo Identify and analyze… Show more • Security Monitoring: o Utilize security tools to investigate and correlate events.o Monitor network traffic and security alerts for potential events/incidents. o Monitor identity and access management, including monitoring for abuse ofpermissions by authorized system users. o Monitor and responding to 'phishing' emails and 'pharming' activity, monitor for attacks,intrusions and unusual, unauthorized or illegal activity.• Incident Responseo Identify and analyze potential weaknesses and implement measures.o Investigate security alerts and provide incident response. o Conduct internal triage, declare events/incidents. create incidents cases, gather evidence, track and update incidents status and identify additional action items. Handle P1 and P2 incidents under the direction of leads and specialists. Follow through to closure P3 and P4 incidents without violating the SLAs.• Other SOC Operations:o Develop reports and/or briefings for events/incident. Conducting research on emerging security threats.o Maintaining shift logs for SOC activities conducted during scheduled hours. o Create tickets for necessary tasks that need to be executed by external teams. Ensure tasks are communicated via email to the respective teams, as well as documenting and tracking activities within tickets according to ticketing procedures.o Monitor, maintain and respond to group email and distribution lists. Show less