Responsibilities
Focusing on security monitoring initiatives and Endpoint Detection and Response (EDR) rule management, which includes recruitment, training, coaching, performance evaluation, and setting team objectives.
Manage relationships with external service providers and product vendors, ensuring that service level agreements are established, tracked, and fulfilled effectively.
Supervise backlog prioritization in collaboration with the Security Operations Centre (SOC) Team to address issues and enhancements, including onboarding new log sources.
Ensure that correlation rules and response playbooks are rigorously tested and optimized for meeting performance standards and accuracy, while also developing systems to monitor security logging coverage and alert log source owners to any issues.
SKills Reqd
Extensive experience in technologies related to Cyber Threat Intelligence, Security Monitoring, and Cybersecurity Incident Response.
Possesses strong logical reasoning and analytical thinking abilities.
Demonstrates exceptional interpersonal, teamwork, and communication skills.
Well-organized and exhibits high standards of professional competence and integrity, with experience in services and technologies such as SIEM, SOAR, Threat Intelligence Platforms, Breach Attack Simulation, API, and Python.