Security Operations Analyst I +5 YEARS OF EXPERIENCE
Il y a 23 heures
Rabat, Rabat-Salé-Kénitra, Maroc
NGBS
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
En continuant, vous acceptez nos Conditions d’utilisation & Politique de confidentialité.
We are looking for a Security Operations Analyst specializing in Cyber Defense Operations to contribute to cybersecurity threat monitoring, detection, and response activities.
The position is part of a Security Operations Center (SOC) environment and involves close collaboration with technical and cybersecurity teams.
Key Responibilities :
• Monitor security events and alerts.
• Analyze, assess, and prioritize alerts based on their level of criticality.
• Investigate security incidents and suspicious activities.
• Participate in the response and handling of security incidents.
• Identify indicators of compromise and contribute to threat analysis.
• Analyze logs and events from systems, applications, and infrastructure.
• Monitor network, cloud, and Microsoft security environments.
• Document investigations, incidents, and remediation actions.
• Collaborate with technical teams throughout the incident management process.
• Contribute to the continuous improvement of security processes, detection rules, and procedures.
Requirements:
• Bachelor's or Master's degree in Computer Science, Cybersecurity, Systems and Networks, or a related field.
• Minimum 5 years of professional IT experience, including significant experience in cybersecurity or security operations.
• Proven experience in a SOC / Security Operations / Cyber Defense environment.
• Strong knowledge of alert triage, security investigation, and incident management.
• Solid understanding of systems, networks, and cloud environments.
• Fluent English, both written and spoken. Technical Environment :
• SIEM: Microsoft Sentinel, Splunk, QRadar, ArcSight, ELK Stack.
• EDR / XDR: Microsoft Defender for Endpoint, CrowdStrike.
• Microsoft Security: Microsoft 365, Azure, Defender, Cloud App Security.
• Cloud: Azure, AWS, GCP.
• Systems & Infrastructure: Windows, Linux, databases, web servers.
• Networking: TCP/IP, network monitoring and traffic analysis.
• Security: log analysis, email security, threat detection, and incident response. Soft
Skills:
• Strong analytical and problem-solving skills.
• Clear and effective communication with various stakeholders.
• Strong service-oriented and customer-focused mindset.
• High level of rigor in analysis and documentation.
• Ability to work effectively within an international team.
• Autonomy, responsiveness, and strong prioritization skills.
• Critical thinking and ability to propose appropriate solutions.
• Ability to handle complex situations and communicate effectively with stakeholders.
• Monitor security events and alerts.
• Analyze, assess, and prioritize alerts based on their level of criticality.
• Investigate security incidents and suspicious activities.
• Participate in the response and handling of security incidents.
• Identify indicators of compromise and contribute to threat analysis.
• Analyze logs and events from systems, applications, and infrastructure.
• Monitor network, cloud, and Microsoft security environments.
• Document investigations, incidents, and remediation actions.
• Collaborate with technical teams throughout the incident management process.
• Contribute to the continuous improvement of security processes, detection rules, and procedures.
Requirements:
• Bachelor's or Master's degree in Computer Science, Cybersecurity, Systems and Networks, or a related field.
• Minimum 5 years of professional IT experience, including significant experience in cybersecurity or security operations.
• Proven experience in a SOC / Security Operations / Cyber Defense environment.
• Strong knowledge of alert triage, security investigation, and incident management.
• Solid understanding of systems, networks, and cloud environments.
• Fluent English, both written and spoken. Technical Environment :
• SIEM: Microsoft Sentinel, Splunk, QRadar, ArcSight, ELK Stack.
• EDR / XDR: Microsoft Defender for Endpoint, CrowdStrike.
• Microsoft Security: Microsoft 365, Azure, Defender, Cloud App Security.
• Cloud: Azure, AWS, GCP.
• Systems & Infrastructure: Windows, Linux, databases, web servers.
• Networking: TCP/IP, network monitoring and traffic analysis.
• Security: log analysis, email security, threat detection, and incident response. Soft
Skills:
• Strong analytical and problem-solving skills.
• Clear and effective communication with various stakeholders.
• Strong service-oriented and customer-focused mindset.
• High level of rigor in analysis and documentation.
• Ability to work effectively within an international team.
• Autonomy, responsiveness, and strong prioritization skills.
• Critical thinking and ability to propose appropriate solutions.
• Ability to handle complex situations and communicate effectively with stakeholders.