Job Overview
Description : IT Operations
Responsibilities :
- Monitor computer/system security event for customer
- Analyze and respond to real time alert and report triggered from security appliance
- Demonstrated an initial triage of security related incidents
- Perform compliance activities such as ensuring customer; IT operation is conformance with security and standard operational policies given
Requirements :
- Experience with one or more Security Information and Event Management (SIEM) solutions. (such as McAfee, LogLogic, Splunk, QRadar, ArcSight)
- Familiar with generic Security solutions such as: Firewall, Anti-malware, Email Security, IAM, etc
- In-depth understanding of security threats, threat attack methods and the current threat environment
- Experience in security monitoring, Incident Response (IR), security tools configuration and security remediation
- Must have excellent troubleshooting and analytical skills. Must be able to clearly articulate and propose security solutions in business terms. Must be able to multitask in a fast-paced environment.
- Must be able to work in a fast-paced environment with tight deadlines and changing priorities
- Understanding of network protocols, network capture/analysis tools such as Wireshark.
- Understanding of Linux and Windows operating systems and OS event logging
- Have certification in IT Security Field: such as CEH, CISSP, SANS Course of Incident Response, Digital Forensic
Keahlian yang dibutuhkan :
IT Security Tools