SOC Analyst
Summary
Monitor security systems, investigate incidents, and manage cybersecurity tools for a SOC team to protect client infrastructure.
- Operational Management and Technical support of company Security Systems and their underpinning
processes and services.
- Centralized management, control and reporting of issues, queries, incidents and requests
associated with the Security Systems, to ensure that all Incidents are managed and that regular,
quantitative and qualitative communication takes place with the appropriate stakeholders.
- Security Systems requests and Incidents resolution within SLA.
- Corrective maintenance - Defined as activities associated with root-cause analysis and bug-fix
isolation and resolution.
- Application Monitoring (Maintenance) - Regular and proactive monitoring of the Security
Systems in order to assure the integrity of the data and performance of the systems.
- Regular
Application Health Checks will be performed with corrective actions taken where required.
- Adequate monitoring must be in place for all critical indicators on the applications (web, app,
database, Operating systems and infrastructure).
- Process monitoring in terms of success, failure,
reasons for failure.
- Space utilization monitoring and management ensuring archiving as necessary to maintain space
availability and ensure optimal performance.
- Release management - Manage the transition of new development or modifications that are to be
transitioned into support, including the operational handover and management of these
developments.
- Bug fixes- Defined as the emergency repair of any system operation/component that is required to comply with the approved and latest system specification. This includes system errors, unexpected results within the system that render it unusable for the purpose for which it was designed.
- Provide customer support and service support for Group SOC
- Provide service with scalable support for bidirectional customer interaction
- Recommends how to optimize security monitoring tools
- Antivirus/Antimalware protection
- Data Loss Prevention
- Advance/User Behavioural Analytics
- Security Incident Management
- Vulnerability Assessment/ Management
- Endpoint Detection & Response
- Database Firewall/DAM
- Web Proxy
- First Degree in Computer Science or related area of study.
- At least 4 years post NYSC hands-on experience in CybersecurityAbility to use vulnerability scanning tools and other Blue team tools is required.
- Ability to use vulnerability scanning tools and other Blue team tools is required.
- CEH
- CASP
- OEM certifications for platforms in scope (added advantage)
- CISSP
- CISM
- HMO
- working in a dynamic environment