freehire launches on Product Hunt on 26 August.

Follow →

Security & Monitoring Response Analyst

Summary

Monitor security alerts, triage incidents, and respond to threats in real time using SIEM/EDR tools to protect bank systems and data.

Technology Department,Rwanda.Security & Monitoring Response Analyst

Location: Rwanda

Other key purposes include:

  • Perform real-time monitoring and analysis of security alerts and events.

  • Conduct incident triage, investigation, and escalation.

  • Support incident response activities to minimize business impact.

  • Contribute to improving detection rules, use cases, and SOC processes.

  • Ensure protection of confidentiality, integrity, and availability (CIA) of Bank information assets.

Support compliance with Rwanda data protection laws, NCSA, BNR, and other regulatory frameworks

KEY RESPONSIBILITIES:

  • Monitor and analyze security alerts from SIEM, EDR, NDR, SOAR, and other tools to identify suspicious activities and threats.

  • Perform initial triage and classification of alerts based on severity, impact, and potential risk to the Bank.

  • Investigate security incidents through log analysis, network traffic inspection, and endpoint activity review.

  • Execute incident response actions (containment, eradication, and recovery) in line with SOC procedures and SOC Lead guidance.

  • Escalate complex or high-risk incidents promptly to the SOC Lead and relevant stakeholders.

  • Support threat intelligence usage and contribute to threat hunting by identifying unusual patterns and indicators of compromise.

  • Assist in tuning SIEM rules, alert thresholds, and correlation logic to improve detection accuracy and reduce false positives.

  • Ensure SOC tools are functioning effectively, including supporting log source integration and reporting technical issues.

  • Adhere to SOC processes, playbooks, and regulatory requirements (ISO 27001, NCSA, BNR), while identifying improvement opportunities.

  • Document all incidents, investigations, and response actions, and provide timely updates and reporting on incident status.

DAILY RESPONSIBILITIES:

  • Monitor SOC dashboards and respond to security alerts in real time.

  • Perform triage and analysis of alerts to determine validity and severity.

  • Investigate suspicious activities using logs, SIEM queries, and forensic tools.

  • Escalate incidents as per defined escalation procedures.

  • Track and update incident tickets to ensure timely resolution and proper documentation.

  • Collaborate with SOC Lead and team members during incident handling.

  • Review threat intelligence feeds and apply relevant insights.

  • Ensure compliance with defined SLAs (e.g., response time, resolution time).

MINIMUM POSITION QUALIFICATION REQUIREMENTS

  1. Academic & Professional

Particulars

Detail

Specific Field or Qualification

Education

Bachelor’s

Degree

B.Sc. Information Technology / Computer

Science / Telecommunications /

Engineering or related field

Education

Professional Qualifications

Certified Ethical Hacker, GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA), CompTIA CySA+ (Cybersecurity Analyst)

CISSP: Certified Information Systems Security Professional • CISA: Certified Information Systems Auditor • CISM: Certified Information Systems Manager • CCISO: Certified Chief Information Security Officer, Certified SOC Manager (CSM) - EC-Council, or Similar

Education

Master’s Degree

MBA / MSC

  1. Experience

Total Minimum No of Years’ Experience Required

3

Detail

Minimum No of Years

Information Security Management

3

Governance, Risk Management and Compliance

3

Security Architecture and

Engineering

3

Security Program Management

and Operations

3

Communication and Network

Security

3

Identity and Access Management

3

Software Development, Security

Assessment and Testing

3

Information Security Incident Management

3

IT or Information Security

3

JOB PURPOSE The Security Monitoring and Response Analyst is responsible for the continuous monitoring, detection, analysis, and response to cybersecurity events and incidents within the Bank’s Security Operations Center (SOC). The role supports the Senior Manager SOC by ensuring effective execution of security monitoring and incident response activities, while working under the operational guidance of the SOC Lead to maintain the security posture of the Bank. The analyst plays a critical role in safeguarding the Bank’s systems, networks, applications, and data by identifying potential threats, investigating suspicious activities, and responding promptly to security incidents in line with internal policies, regulatory requirements, and industry best practices.

See also

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available