✨ AI Summary
The Cyber Security Engineer will manage and optimize the enterprise SIEM environment, developing correlation rules, dashboards, and alerts for anomaly detection. Responsibilities include deploying and managing Endpoint Detection and Response (EDR) solutions, investigating endpoint alerts, and managing Web Application Firewalls (WAF) and Intrusion Detection/Prevention Systems (IDS/IPS). The role involves writing comprehensive reports, designing cybersecurity architecture, and developing user awareness policies. The ideal candidate will have a Bachelor's degree in Computer Science and at least 2 years of experience in system or information security engineering, with hands-on experience in SIEM, EDR, and related security tools.
Requirements
Bachelor degree of Computer Science (Certified (CISSP, CEH, CISM, Security+).Proven work At least 2-year experience as a System Security Engineer or Information Security EngineeHands-on experience with SIEM Elastic SearchAbility to write queries (e.g., KQL, EQL) to search through massive log datasets. Experience parsing logs, creating data visualizations, and building custom threat detection rules.Operational experience with enterprise EDR platformsAbility to analyse process trees, memory alerts, and registry changes to identify malware or unauthorized access.Understanding of the OWASP, MITTER AttackExperience running vulnerability scannersExperience on integrate SIEM to other security tools like EDR / Forti
Description
Manage and optimize the enterprise SIEM environment. Develop, tune, and maintain correlation rules, dashboards, and automated alerts to ensure the rapid identification of anomalous network and user behaviour.Deploy, manage, and monitor Endpoint Detection and Response (EDR) solutions across the organization. Investigate endpoint alerts, isolate compromised hostsManage Web Application Firewalls (WAF) to protect public-facing applications from web-based attacks. Tune and monitor Intrusion Detection and Prevention Systems (IDS/IPS) to block malicious network traffic.Write comprehensive reports including assessment-based findings, outcomes and propositions for further system security enhancement.Design computer security strategy and engineer comprehensive cybersecurity architecture.Develop and implement user awareness policies and procedures.Apply the required HSE (Health & Safety) regulations.