Senior SOC Analyst - Incident Response
Tasks
- Build response and remediation actions
- Conduct threat hunting
- Create detection engineering automations
- Create incident response playbooks
- Design detection use cases
- Develop investigation documentation
- Ingest and correlate security data
- Maintain SIEM operations
- Maintain incident timelines
- Manage log source onboarding
- Monitor security alerts
- Operate log collectors
- Perform incident response investigations
- Provide incident response coaching
- Support CIRT activities
- Tune SIEM detections
Perks/Benefits
- N/A
Skills/Tech-stack
Cloud Monitoring | Cribl | Data Ingestion | Detection engineering | Forensics | Google SecOps | IBM QRadar | Incident Response | Log Collection | MITRE ATT&CK | NxLog | Palo Alto | Palo Alto XSOAR | SIEM | SOAR | Scripting | Security monitoring | Splunk | Threat hunting | Torq | WEF
Education
Related jobs
-
Security Operations Center (SOC) Analyst PLN 237K-400KAdvanced persistent threat | CrowdStrike | CrowdStrike Fusion | CrowdStrike Fusion SOAR | CrowdStrike Query LanguageOn-call rotation | Remote workMid-level Full TimePoland - Remote, Poland R4d ago
-
Information Security Analyst PLN 106K-159KCloud Computing | Endpoint protection | Firewalls | Incident Response | Intrusion DetectionDevelopment programs | Equal opportunity employment | Generous leave policies | Health insurance | Life insuranceMid-level Full TimeRemote - Poland R15d ago
-
Security Operations Center (SOC) Analyst PLN 282K-408KCrowdStrike | CrowdStrike Query Language | Detection and Response | EDR | Endpoint Detection and ResponseContinuous learning | On-call rotation | Professional development | Remote workMid-level Full TimePoland - Remote, Poland R20d ago
-
Senior-level Full TimeRemote Poland, Poland R1mo ago
-
Senior Full Stack Security Engineer PLN 257K-374KAntivirus | Application Security | Automation | Bash | Cloud SecurityFlexible PTO | HolidaysSenior-level Full TimePoland - Remote R1mo ago
-
Cyber Security Analyst | Full remote PLN 103K-156KAuthentication | Encryption | Firewalls | Honey pots | Incident ResponseCertification eligibility | Medical cover | Multisport | Security training accessEntry-level Full TimeWarsaw, Masovian Voivodeship, Poland - Remote R1mo ago