SOC Analyst
Brak informacji o wynagrodzeniu
MidFull-time
#350726·Dodano 18 dni temu·21
Źródło: nofluffjobs.comTech Stack / Keywords
SecuritySOCPCAPThreat Hunting
Wymagania
- English level — B1 or higher
Nice to have:
- Experience in Threat Hunting (proactive detection without alerts)
- Basic skills in Malware Analysis and Reverse Engineering
- Experience creating SOAR playbooks
- Relevant certifications: CompTIA CySA+, EC-Council CEH, SANS (GCIA, GCIH), OSCP
Obowiązki
- Monitoring & analysis: Experience working in SOC (L2+), security incident analysis, triage, and threat classification
- Security tooling: Confident use of SIEM for threat investigation, as well as EDR/XDR solutions (CrowdStrike, SentinelOne, Microsoft Defender for Endpoint)
- Network forensics: Ability to analyze network traffic (PCAP) using Wireshark, Zeek, or Suricata
- Threat & attack techniques: Strong understanding of MITRE ATT&CK and Cyber Kill Chain, knowledge of attack vectors (Phishing, DDoS, SQLi, Brute Force, Lateral Movement)
- Incident Response (IR): Experience in conducting investigations, containment, and recovery activities
- Operating systems knowledge: Understanding of Windows artifacts (Registry, Prefetch, Event Logs) and Linux for host-based investigations
- Communication: Ability to clearly document incidents in ticketing systems (Jira, TheHive, ServiceNow)
Innowise
30 aktywnych ofert