SOC Analyst Level 2

  • Full-time

Company Description

IT Security C&T is an innovative, fast-growing security consulting and training company. Our management team combined with our consultants and engineers work together to deliver comprehensive security solutions to our customers around the MENA region.
IT Security C&T is continuously expanding its team of qualified professionals for a wide range of opportunities. Interested candidates are required to apply via our Career webpage on our website (www.itsecurityct.com)

Job Description

The Security Analyst will participate and be part of information security monitoring and incident handling team in order to monitor and manage all information security incidents and risks and solve them as per the business security requirements. The Security Analyst will work and follow-up with the IT Teams and other Business Units to develop action plans to mitigate identified vulnerabilities and promote security initiatives.

Key Activities Include:

  • Work as part of 24x7 security operation team
  • Monitor the Security Information and Event Management System (RSA-SIEM) and follow up all related security incidents and events.
  • Follow the day-to-day operations related to own job to ensure continuity of work
  • Respond to security incidents and report on incident handling and resolution.
  • Participate in forensic analysis, data recovery, and penetration testing.
  • Perform daily security analysis and scanning and assessment for information security risks, threats and vulnerabilities.
  • Proactive research to identify and understand new threats, vulnerabilities, and exploits.
  • Configuration and administration of security systems and tools.
  • Define and evaluate security technologies required to ensure safe technology operation and detection of cyber-attack.
  • Provide the security recommendations on actions which assist in improving security posture within CLIENT Environment.
  • implementation and maintenance of RSA Adaptive Authentication Solution.
  • Support customer engagements end-to-end to include implementation, configuration, operations, maintenance and management of RSA  Netwitness-NW Security Information & Event Management (SIEM) solutions
  • Follow all relevant departmental policies, processes, standard operating procedures and instructions so that work is carried out in a controlled and consistent manner
  • Participating in reviewing and documenting computer security and emergency 

Qualifications

  • Bachelor’s degree in IT, Engineering, or related field of study preferred;
  • 4+ years of experience in IT/Security operations or SOC role.
  • Network+, CIHE CCNA R&S, SSCP, Security +, Linux security, windows security or forensics training is plus.
  • Expertise in RSA products as it relates to the following:

-  Operation of a Security Incident & Event Management (SIEM) solution based on RSA NW.

-  Driving complex deployments of RSA NW in an operational environment.

  • Advanced
    troubleshooting and SME (Subject Matter Expertise) with RSA (AA – Adaptive
    Authentication AM – Authentication Manager) toolset. Hands on experience in tuning and installing.
    Hands-on experience in Security Information Event Management System in (RSA SIEM)
  • Professional Security certification preferred (RSA Certified Administrator, RSA Netwitness, SSCP, GSEC, , GCIH, CEH, CPTE, or equivalent).
  • Knowledge and experience in network switches, routers and firewalls