Make an Impact by
- To responsible for identifying and mitigating potential cyber threats by proactively seeking out and analyzing suspicious activity across our organization's networks, systems, and applications. The role shall have experience in identifying, hunting and mitigating cyber threats in an enterprise organization. Provide independent oversight of the cybersecurity risk management process and ensure that Business Unit performs risk assessments and remediates the identified risks per the defined process.
- Conduct proactive threat hunting activities, including analysis of network traffic, logs, and other data sources to identify and investigate potential threats.
- Develop and maintain threat hunting playbooks, tools, and methodologies to enhance the efficiency and effectiveness of the threat hunting program.
- Collaborate with other security teams to investigate and respond to identified threats, and provide recommendations for remediation.
- Stay current with the latest threat intelligence and security trends to ensure that our threat hunting strategies and processes remain effective.
- Work with other teams to implement and maintain security controls, tools, and technologies to prevent and detect threats.
- Provide regular reports on threat hunting activities, including metrics and key performance indicators.
- Investigate and manage cyber security incident as incident manager and incident response team.
- Participate in incident response and crisis management activities as needed.
Skills for Success
- Diploma in Cybersecurity, Computer Science, Computer Engineering or other relevant field of study
- Professional cyber security certifications in areas like CTIA, CEH specialized SANS certifications, or other similar credentials, is required.
- Minimum 5 years of experience as in cybersecurity roles.
- Minimum 3 years of practical experience in threat hunting, threat intelligence, incident response and security analysis and investigation
- Working knowledge of and experience in the policy and regulatory environment of information security in telecommunication industry.
- Expert level competence in the following:EDR, NDR and XDR technologies
Security Monitoring Tools
Network Security Technology
Platform Security Technology
Endpoint Security Technology
Threat Analysis and Defence
Threat Intelligence and Detection
Network and system administration: - Advanced understanding in the following areas:
- Machine Learning
- Programming and Scripting
- Advance competence in the following: Problem analysis and solving
- Have exposure to developing threat detection and response capabilities based on MITRE ATT&CK and DEFEND framework