- Cyberjaya Selangor Malaysia
Working Location
Job Description
Responsibilities
·Check if SLA has been met for Alert alerting and Alert closure
·Update and maintain SOC knowledge base for new alerts
·Develop and implement threat case for new global threat
·Prepare the Daily Status & Monthly MIS report and submit to SOC lead for review
·Monitoring of SIEM CONSOLE logs on daily basis for alert detection.
·Complete the SOC Turnover Status Report sheet.
·Provide support to SOC L2 Analyst in alert investigation process.
·Assist SOC Leader in SOC related work and management reporting
·Review advisories and make necessary detection measures.
·Perform Risk Analysis/pilot testing for new scheduled report /rule request
·Add/Modify/Delete scheduled reports based on approved change requests
·Update List of Reports and inform requestor on changes in Reports
·Update list of alerts and inform requestor on changes in alerts
·Participate in alert drill
·Define threat cases and reports for newly added log source
·Verify status of the daily automated backup job and raise ticket if backup has failed
·Raise an alert ticket if log source stops sending logs
·If SOC Specialist is unable to analyze an alert, such events will be sent to Investigator.
·Perform malware engineering, attack analysis and flow analysis.
·Helps team in critical and complex investigations to identify underlying threat and to provide relevant artifact.
Important Information
Never provide your bank or credit card details when applying for jobs. Do not transfer any money or complete unrelated online surveys. If you see something suspicious, Report this Job ad.