Cyber Security Analyst
Core
Continuously monitor and triage security events from SIEM tools, investigate incidents, and implement containment actions for diverse client environments.
Role type
Cyber Security Analyst (SOC)
Builds
Detection and response playbooks, alerting rules, and AI/ML solutions for security operations
Domain
Cybersecurity, Managed Security Service Provider (MSSP), Telecommunications
Deliverable
production ML models | dashboards & analysis | client delivery
Required skills
Analytical and problem-solving skills, Knowledge of threat actor behaviour and attack lifecycle, Networking and infrastructure principles, Operating systems knowledge
Preferred skills
Automation design and implementation, Generative AI and large language models, Scripting (Python, Bash, PowerShell)
Technologies
SIEM, AI/ML, Python, Bash, PowerShell
Responsibilities
Respond to and triage alerts to reduce MTTR, Monitor customer environments proactively, Tune and build alerting rules, Create documentation and playbooks, Engage with customers and manage escalations, Automate repetitive alert handling, Implement AI/ML solutions to lower MTTD and MTTR, Continuously refine detection and automation models
Seniority
Individual Contributor