Security Operations Engineer
Views: 0
Posted: 2025-08-12
Expires: 2025-08-26
Expired๐๐จ๐ฅ๐: Security Operations Engineer
๐๐จ๐๐๐ญ๐ข๐จ๐ง: Islamabad, Pakistan
๐๐ซ๐ ๐๐ง๐ข๐ณ๐๐ญ๐ข๐จ๐ง: AIO
๐๐จ๐ ๐๐ข๐ฆ๐ข๐ง๐ ๐ฌ: 10 am โ 6 pm
โ ๐๐๐ฒ ๐๐๐ฌ๐ฉ๐จ๐ง๐ฌ๐ข๐๐ข๐ฅ๐ข๐ญ๐ข๐๐ฌ:
โ Monitor, validate, and analyze security events and alerts across AWS Cloud, SaaS applications, and on-premises infrastructure.
โ Investigate CloudTrail, CloudWatch, VPC Flow Logs, and other relevant logs and telemetry to detect and respond to potential threats.
โ Design, implement, and fine-tune detection use cases and alerts within AWS and on-prem environments.
โ Triage and prioritize incoming security alerts, incidents, and privacy-related events.
โ Proactively identify vulnerabilities and enhance SIEM use cases for broader detection coverage.
โ Provide on-call support for critical incident response and urgent threat scenarios.
โ Ensure timely communication and escalation of incidents per SOC protocols.
โ Integrate and analyze threat intelligence feeds to improve detection capabilities.
โ Maintain detailed incident records in Jira, ensuring timely updates and SLA compliance.
โ Lead the development of actionable detection logic and support log parsing, rule validation, and false positive reduction.
โ ๐๐๐ช๐ฎ๐ข๐ซ๐๐ ๐๐ฎ๐๐ฅ๐ข๐๐ข๐๐๐ญ๐ข๐จ๐ง๐ฌ:
โ Bachelor's degree in Computer Science, Information Systems, or a related field.
โ 3+ years of hands-on experience in a Security Operations Center or related cyber defense roles.
โ Solid understanding of cybersecurity frameworks and methodologies (e.g., MITRE ATT&CK, Cyber Kill Chain, NIST).
โ ๐๐ฑ๐ฉ๐๐ซ๐ข๐๐ง๐๐:
โ Experience working in a 24x7 enterprise security operations environment.
Strong familiarity with AWS services and infrastructure (e.g., EC2, VPC, IAM, CloudTrail, GuardDuty).
โ Sound knowledge of cloud security architecture and virtualized environments.
โ Proficient in Linux/Unix systems, web protocols, and system hardening practices.
โ Experience in mitigation, log analysis, threat hunting, and forensic investigations.
โ Working knowledge of firewalls, IDS/IPS, vulnerability scanners, and IAM technologies.
โ Experience in the following areas: SOC, Threat Hunting, or Threat Intelligence.
โ Proficiency with SIEM tools and alert tuning (e.g., Logsign, Wazuh, ELK Stack).
โ Strong analytical, documentation, and problem-solving skills.
โ Excellent verbal and written communication abilities.
โ ๐๐ซ๐๐๐๐ซ๐ซ๐๐:
โ Experience with SOAR platforms and scripting (Python, PowerShell) for automation.
โ Familiarity with security compliance standards such as ISO 27001, PCI DSS, or SOC 2.
โ Experience using Jira, Confluence, or similar ticketing/documentation platforms.
๐๐ฉ๐ฉ๐ฅ๐ฒ ๐๐๐ซ๐: https://lnkd.in/gpp3sb_y
๐ Islamabad#Security Operations Engineer๐งณ Experienced Required