Security Operations Engineer
Core
Monitor, detect, analyze, and respond to cybersecurity threats and incidents to safeguard digital assets.
Role type
SOC Analyst
Builds
Incident response playbooks and forensic analysis reports
Domain
Cybersecurity / Security Operations
Deliverable
client delivery
Required skills
SIEM, EDR, IDS/IPS, Firewalls, threat intelligence, forensic analysis, malware detection, incident response, networking protocols, cloud security, system administration
Preferred skills
Python, PowerShell, Bash, MITRE ATT&CK frameworks
Technologies
SIEM, EDR, IDS/IPS, Firewalls, DLP solutions
Responsibilities
Monitor security events and alerts in real-time, analyze security incidents and determine root causes, respond to incidents and perform forensic analysis, assist in containment and recovery efforts, tune detection rules to reduce false positives, correlate threat intelligence feeds with internal events
Seniority
Mid-level, hands-on IC