Especialista MSS | Manager [tag01]
Core
SOC alert investigation specialist responsible for analyzing security events, correlating logs, and documenting incidents.
Role type
Senior SOC Analyst / MSS Specialist
Builds
Security incident investigations and threat analysis reports
Domain
Cybersecurity / SOC Operations
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SOC alert investigation, SIEM (Splunk), log analysis, firewall/WAF/EDR/XDR analysis, MITRE ATT&CK, lateral movement analysis, privilege escalation analysis, C2 analysis, network protocols (TCP/IP, DNS, HTTP/HTTPS), OS knowledge (Windows, Linux), runbook/playbook creation
Preferred skills
SOAR and automation, financial/regulatory environment monitoring, false positive reduction
Technologies
Splunk, AWS, Azure, GCP, AD/Azure AD
Responsibilities
Create and refine SIEM queries, correlate security events, analyze malicious behaviors, document technical investigations, transition events to incidents, collaborate with CSIRT/Blue Team
Seniority
Senior, hands-on IC