Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузи резюме
О рекламодателе
ОБЩЕСТВО С ОГРАНИЧЕННОЙ ОТВЕТСТВЕННОСТЬЮ "ЦЕНТР НАЦИОНАЛЬНЫХ ИНТЕЛЛЕКТУАЛЬНЫХ СИСТЕМ" ИНН: 9704271170
описание
BeOne develops medicines and is dedicated to fighting cancer, helping make more affordable medicines available to patients around the world.
задачи
Lead advanced analysis of SIEM alerts, endpoint telemetry, network traffic, and threat intelligence
Identify patterns, anomalies, and emerging threats requiring deeper investigation
Develop and tune detection rules, correlation logic, and alerting thresholds to reduce false positives
Oversee the configuration, optimization, and health of SOC tools, including SIEM, EDR, IDS/IPS, SOAR, and firewalls
Help evaluate new security technologies and contribute to architecture decisions
Automate repetitive tasks and workflows using scripting or SOAR platforms
Contribute to audits, risk assessments, and security control evaluations
Help develop and refine security policies, standards, and playbooks
Participate in on-call rotations and serve as an escalation point for critical events
Oversee junior SOC analysts’ work, providing guidance, performance feedback, and technical support to ensure accurate analysis, effective incident response, and professional development
Act as a subject-matter expert in cross-team security discussions
Communicate complex security issues to leadership in clear, actionable terms
Lead and coordinate SOC team response activities, ensuring efficient escalation, proper task delegation, and timely resolution of critical security incidents
требования
3+ Years of hands-on experience in a SOC or equivalent security role, including exposure to incident response and threat analysis
Strong understanding of the Cyber Kill Chain, MITRE ATT&CK Framework, and modern threat actor techniques
Experience with security event monitoring and triage, including log and network traffic analysis
Solid knowledge of endpoint security, network security fundamentals, and operating systems
Ability to conduct forensic analysis and identify indicators of compromise (IOCs)
Strong verbal and written communication skills for technical and non-technical audiences
Knowledge of compliance frameworks such as NIST and ISO 27001 and their operational implications
Relevant certifications such as GCIH, GCFA, or CompTIA CySA+
Proficiency with security technologies such as SIEM, EDR, IDS/IPS, vulnerability management, and log analysis tools
Strong problem-solving and analytical skills, with a proactive approach to threat detection and mitigation
Ability to work in a fast-paced, dynamic environment while balancing multiple priorities
Commitment to continuous learning and staying updated on cybersecurity trends and technologies
Familiarity with Python, PowerShell, or Bash for analyzing security data, parsing logs, and identifying potential threats or anomalies during investigations
Bachelor’s Degree or equivalent practical experience