- Monitor security systems and networks for threats and vulnerabilities
- Investigate and respond to security incidents and breaches
- Conduct vulnerability assessments and recommend remediation
- Maintain and configure SIEM tools for threat detection
- Support security audits and compliance requirements
- Develop and update security policies and incident response procedures
Required Skills:
- Understanding of network and application security principles
- Experience with SIEM tools (Splunk, QRadar) for monitoring
- Knowledge of vulnerability assessment and penetration testing basics
- Familiarity with security frameworks (ISO 27001, NIST)
- Robust analytical and incident response skills
- Understanding of firewalls, IDS/IPS, and endpoint security
Good to Have:
- CEH/CompTIA Security+ certification
- Experience with cloud security (AWS/Azure)
- Knowledge of scripting for automation