About the role
The position is part of our Cyber Fusion Center’s managed support and operations team and is responsible for day-to-day support and operations of assigned cybersecurity solutions and platforms.
Responsibilities:
• Provide support for assigned security platforms, including onsite troubleshooting, root cause analysis, prepare and present incident reports.
• Provide security knowledge in security architecture recommendation and perform the necessary best configuration.
• Provide collaboration efforts in assisting the SOC teams in incident investigation.
• Manage ticket queue and take ownership and responsibility of tickets assigned, within agreed SLA.
• Perform change requests activities per change window allocated, including planning, review, tracking & verification and documentation.
• Ensure that daily operations and tasks are properly completed and followed up.
• Escalate issues and liaise with subject matter experts as required to resolve issues.
• Support after-office hours activities and standby requirements as necessary.
• Support shift rotation as necessary.
• Prepare activities report and work documentation.
Candidate requirements:
• Educational background in Information Systems, Cybersecurity or related disciplines.
• 2-5 years of hands-on engineering, support or operations experience in Infrastructure, Network or Security Tools
• Broad understanding of systems, network infrastructure; working experience with databases, LDAP and directory services, application servers, operating systems, and network infrastructure.
• Proficiency in one or more general-purpose programming languages (Perl, Python, PHP, Shell, PowerShell, Windows Scripting, Windows console programs, .Net, Yara, Regular expression) will be a plus.
• Certificates such as ITIL Foundations, Microsoft MCSA, CISA, CISSP will be a plus.
• Ability to work independently, under the general guidance.
• Support after office hour and during weekend/public holiday