ARRISE is seeking a Senior Security Analyst to lead incident response, security monitoring, and vulnerability management. The ideal candidate will have experience with SIEM, EDR, and SOAR tools, as well as knowledge of threat landscape and Linux environments.
Requirements
- Lead the investigation and response to complex security incidents
- Coordinate cross-team incident response efforts
- Perform root cause analysis to determine the origin of security incidents
- Monitor and analyse security alerts from SIEM, EDR, and other monitoring tools
- Fine-tune alerting systems to minimize false positives and improve detection accuracy
- Integrate new log sources and update monitoring tools as needed
- Perform in-depth log analysis, correlating data from various sources
- Use automation and scripting to streamline log analysis processes
- Provide mentorship to junior SOC analysts
- Develop and deliver training sessions, workshops, and tabletop exercises
- Facilitate, optimise, and produce reports on regular patching management process
- Analyse and report/present the vulnerabilities to multiple stakeholders
- Assist in providing support and resolution for scanning and vulnerability remediation reporting issues
- Maintain intelligence network to discover reported exploits and vulnerabilities