Participate in the security monitoring of mission-critical network nodes and systems, and security devices to detect any anomalies Investigate abnormal events, qualify potential security breaches, raise security incident alerts and perform technical & management escalation Continuously monitor security alerts queue and perform L2 triage to identify any false positives and initiate improvement as necessary Ensure that daily operations and tasks are properly completed or followed up Conduct all-source analysis, digital forensics, and adversary targeting to identify, monitor, assess, threats posed by cyber threat actors Extract Indicators of Compromise, and using the resulting data to create detection model and knowledge base to detect similar activities Act as a Technical Expert for all new projects and ensure knowledge sharing is done across the board Support cyber investigations an incident response team & Liaise with Global Security Teams during Crisis Incidents
Deep understanding of the discipline of threat intelligence and its application in a large complex organizational setting Investigate abnormal events, qualify potential security breaches, raise security incident alerts and perform technical & management escalation Prior experience with one or more of the following tools: Splunk, Elastic STack (ELK), intrusion detection/prevention system, network anti-virus technologies Superior diagnostic and network troubleshooting skills Ability to identify, understand, analyze and resolve problems quickly Proactive attitude to use his/her initiative to react quickly, to work effectively in emergency situations under minimum supervision Strong presentation skills, as you will probably be expected to brief others on your findings and recommendations Diploma/Degree in Computer Science/Computer Engineering/Information Engineering/Cybersecurity or equivalent 4+ years of knowledge experience with security solutions and tools such as Firewall, Router, Proxy, EDR, PAM, IDS/IPS, SIEM Relevant Certifications: CCFP, GCIA, OSCP, CEH, CISSP, or Security+, among others
Orange Intl Ntwk Infr & Svcs
Job Classification
Industry: IT Services & ConsultingFunctional Area / Department: IT & Information SecurityRole Category: IT SecurityRole: System Security EngineerEmployement Type: Full time