Careers

Join the world’s leading provider of digital intelligence solutions and help us create a safer world.

SOC Analyst

Israel · Full-time

About The Position

We are looking for a SOC Analyst to join our first line of defense. As part of our team you will investigate, response and document any security event, also maintain SIEM system parser and rules and other security system, finding the root cause of each event and help us protected and up to date  

Responsibilities & Scope of Role

• Monitor security access and report suspicious activity to a higher level or team members.

• Conduct security assessments regularly to identify vulnerabilities and performing risk analysis.

• Analyze the breach to reach the root cause.

• Generate reports for IT administrators, business managers, and security leaders. These reports serve as an input to evaluate the efficacy of the security policies.

• Advise and implement necessary changes required to counter the attack or improvise security standards.

• Keep the security systems up to date and contributing to security strategies.

• Document incidents to contribute to incident response and disaster recovery plans.

• Perform internal and external security audits.

• In the case of third-party vendors, verify their security strength and collaborate with them.



Requirements

  •  3 years+ of experience in similar SIEM/SOC roles. (Mssp, SOC on prem, IR team)
  • Proven experience with Qradar (Rules, Parsing, Correlation, Investigation)- MUST.
  • Familiarity with methodologies, such as: Cyber Kill Chain and MITRE ATT&CK. – MUST
  • Experienced with multi-cloud platforms (Azure,AWS) – Advantage
  • Experienced with Varonis – Advantage
  • Experienced with EDR System (Crowdstrike – Advantage)
  • Strong knowledge of the TCP/IP topology, network protocols, active directory, File permissions.
  • Experienced with network and security systems (network device, security device, endpoint devices, EDR, FW).
  • Previous experience with IR, Malware Analysis.
  • Experience with writing incident response reports.
  • Experience with Splunk, ELK,.
  • Knowledge in cyber security investigations, create playbooks and standard operating procedures for alerts and insights

 Nice to have:

  • OS Fundamentals: Windows , Linux, Mac
  • Scripting: Powershell, Python
  • Code Language: Regex, JSON, XML

Personal Characteristics

  • Team player
  • Self-learning
  • well-organized with a strong desire to push yourself and your colleagues always further ahead professionally

Apply for this position