SOC Analyst Tier 2- Banking
1 day ago
Position
Department
Security Operations Center\Information Security
Reports TSOC Manager
Location Head Office\Remote
Job Purpose
Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within bank environments for the purposes of mitigating threats.
Duties & Responsibilities
Working closely with IT admins to minimize false positives from the security tools.
Full root cause analysis and level 1 incident investigation.
Provide Incident Response actions and remediation recommendations
Full Incident Management and Incident Resolution
Threat Intelligence and ongoing information Gathering
Security Events Trend Analysis
Leverages emerging threat intelligence (IOCs, updated rules, etc.) to identify affected systems and the scope of the attack.
Create knowledge base article with incident details along with the resolution, which serves as a reference to SOC team in case of repetition of the same/similar incident in future.
Track, analyse and understand the characteristics of latest threats, malware and vulnerability information and perform an assessment of the applicability of the same to the environment.
Translate the logic to implementation by configuring resources such as Rules, Reports, Dashboards and Filtersetc. in SOC monitoring tools to detect the threats or anomalies.
Create and maintain the alerts/dashboards/ reports inventory document.
Analyse and investigate the alerts in SOC monitoring tools to report any abnormal behaviours, suspicious activities, traffic anomalies etc.
Develop and configure use cases in SOC monitoring tools to detect and alert the non-compliance status and support the threat detection guidelines as per IT security team.
Ensure that security significant logs are available in SOC monitoring tools for analysis and investigation.
Internal Contacts
Information Technology sector, end user
External Contacts
Central Bank of Egypt (CBE)
**Requirements**:
- Qualifications
Holds Bachelor’s degree in Engineering, Computer Science, Cyber Security or any related field, Information Technology Institute (ITI) graduates preferably majoring in Security Operations
Hold at least one of the following SANS certifications:
GIAC Certified Incident Handler (GCIH)
GIAC Certified Intrusion Analyst (GCIA)
Or equivalent EC-Council certificates such as
Certified Ethical Hacker (C|EH)
Computer Hacking Forensic Investigator (CHFI)
Certified Incident Handler (ECIH)
Preferably have one of the following certifications: CCNA Security, Security +
Language
Arabic, English
Experience
At least 3 - 5 year’s professional IT experience or working in a Security Operations Center (SOC)
Incident Management and Response
Advanced Experience in security device management and SIEM
Knowledge in Security Scans.
Good Analytical skills, Problem solving and Interpersonal skills.
Knowledge of security concepts such as cyber-attacks and techniques, threat vectors.
Needed Skills & Knowledge
Ability to:
Analyze malware.
Conduct vulnerability scans and recognize vulnerabilities in security systems.
Accurately and completely source all data used in intelligence, assessment and/or planning products.
Interpret the information collected by network tools (e.g., Nslookup, Ping, and Traceroute).
Knowledge of:
Computer networking concepts and protocols, and network security methodologies.
Risk management processes (e.g., methods for assessing and mitigating risk).
Laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.
Cybersecurity and privacy principles.
Cyber threats and vulnerabilities.
Specific operational impacts of cybersecurity lapses.
Authentication, authorization, and access control methods.
Cyber defense and vulnerability assessment tools and their capabilities.
Computer algorithms. Encryption algorithms
Cryptography and cryptographic key management concepts
Database systems.
Host/network access control mechanisms (e.g., access control list, capabilities lists).
Vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins).
Incident response and handling methodologies.
Cybersecurity and privacy principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
Intrusion detection methodologies and techniques for detecting host and network-based intrusions.
Information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption).
Network access, identity, and access management (e.g., public key infrastructure, Oauth, SAML).
Network traffic analysis methods.
New and emerging information technology (IT) and cybersecurity technologies.
Operating systems.
Traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).
Policy-based and risk adap
-
SOC Analyst Tier Ii
2 weeks ago
مصر, Egypt Cyshield Full timeAs a Tier 2 SOC Analyst you and the team will be responsible for manning a 24x7x365 coordination center and responding to alerts, notification, communications and providing incident response activities such as tracking the incident, communication with stakeholders, remediation and recovery actions and reporting. Ensure reports are properly entered into the...
-
SOC Analyst L3
3 days ago
مصر, Egypt اورنچ مصر Full timeAbout the job SOC Analyst L3 **Key Responsibilities** - Manage the scoping, containment, remediation, reporting, and root cause analysis for Security Incidents within the customer infrastructure. - Provide guidance on control implementation for post-incident risk reduction. - Support Use Case development cycle. - SOC level 3 Investigation and Follow-up of...
-
SOC Analyst
7 months ago
مصر, Egypt اورنچ مصر Full timeAbout the job SOC Analyst **Key Responsibilities** - Continuously monitors the security alerts from different security devices - Investigate security alerts - Monitors health of SOC security devices and report the issue if needed - Work as part of 24x7 security operation team - Collects data and context necessary to initiate Level 2 escalation - Create and...
-
SOC Analyst
7 months ago
مصر, Egypt اورنچ مصر Full timeAbout the job SOC Analyst **Key Responsibilities** - Continuously monitors the security alerts from different security devices - Investigate security alerts - Monitors health of SOC security devices and report the issue if needed - Work as part of 24x7 security operation team - Collects data and context necessary to initiate Level 2 escalation - Create and...
-
SOC Analyst L3
2 days ago
مصر, Egypt Orange Egypt Full time**Key Responsibilities** - Manage the scoping, containment, remediation, reporting, and root cause analysis for Security Incidents within the customer infrastructure. - Provide guidance on control implementation for post-incident risk reduction. - Support Use Case development cycle. - SOC level 3 Investigation and Follow-up of threats / events / incidents...
-
SOC Analyst T2
7 months ago
مصر, Egypt ITS Information Technology Solutions Full time**Job Title: SOC Analyst T2** **Company Overview**: ITS Information Technology Solutions is a leading IT solutions provider based in Giza, Egypt. We offer a wide range of services including network security, cloud computing, and data management solutions to businesses of all sizes. Our team of experts is dedicated to providing innovative and reliable...
-
SOC Analyst
7 months ago
مصر, Egypt Orange Full time**Key Responsibilities** - Continuously monitors the security alerts from different security devices - Investigate security alerts - Monitors health of SOC security devices and report the issue if needed - Work as part of 24x7 security operation team - Collects data and context necessary to initiate Level 2 escalation - Create and delivers scheduled and...
-
SOC Analyst
7 months ago
مصر, Egypt Orange Egypt Full time**Key Responsibilities** - Continuously monitors the security alerts from different security devices - Investigate security alerts - Monitors health of SOC security devices and report the issue if needed - Work as part of 24x7 security operation team - Collects data and context necessary to initiate Level 2 escalation - Create and delivers scheduled and...
-
Netwitness- Tier-2 Incident Response Analyst
2 weeks ago
مصر, Egypt RSA Full time**NetWitness - Tier-2 Incident Response Analyst** As one of the most established cybersecurity companies in the world, we at NetWitness are hard at work every day helping our customers and partners better protect their organizations from cyberattacks. Our products and incident response services are used within most large enterprises, governments and...
-
SOC Analyst L2
7 months ago
مصر, Egypt Orange Full time**Key Responsibilities** - Conduct secondary triage and analysis on escalated events and initial remediation for escalated incidents - Provide Incident Response (IR) support when analysis confirms actionable Incident - Review SOC tickets, closure or reassignment as needed - Tuning SIEM Alerts when needed to avoid false positive alerts - Provide and prepare...
-
SOC Analyst L2
7 months ago
مصر, Egypt Orange Egypt Full time**Key Responsibilities** - Conduct secondary triage and analysis on escalated events and initial remediation for escalated incidents - Provide Incident Response (IR) support when analysis confirms actionable Incident - Review SOC tickets, closure or reassignment as needed - Tuning SIEM Alerts when needed to avoid false positive alerts - Provide and prepare...
-
Senior Analyst
7 months ago
مصر, Egypt Envision Employment Solutions Full time**Ready and hungry for a new adventure? You are definitely in the right place! We at **Envision Employment Solutions** are always on the look for top talents around the globe and matching them with our partners' hiring needs, to help them build and scale! - Our partners offer awesome work environment, competitive salaries, full benefits, and many others...
-
SOC Intelligence Analyst
7 months ago
مصر, Egypt SSC Egypt Full time1. Follow up with the major adversary groups targeting the enterprise in term of motivation, tools and methods to be updated with resent threats and risks. 2. Identify and classify cyber threats facing the organization, map the adversary’s objective to which the bank’s assets that are likely to be targeted and translate which cyber threats are possible...
-
Mid-level Cyber Defense Operations Specialist
7 months ago
مصر, Egypt Cyber Force Full time**Job Code**: [T24-004-CDO-Mid] **Job Type**: Hybrid (Office and Remote) **Location**: HQ, Cairo, Egypt Cyber Force, a pioneering Managed Security Service Provider (MSSP), is seeking a Mid-Level Cyber Defense Operations Specialist to join our dynamic Cybersecurity Operations Center (CSOC) team. This role is crucial for deploying and managing a broad array...
-
Corporate Banking Analyst
7 months ago
مصر, Egypt Citi Full timeCorporate Banking sits in Citi’s Banking, Capital Markets and Advisory division. We support our clients by delivering an international network and an integrated range of wholesale banking products and services to clients across three main segments that are Public sector, financial Institutions and Large Local Corporates. We, at Citi deliver responsible,...
-
Tier 2 Manager
7 months ago
مصر, Egypt AireSpring Full time**Company Description** Founded in 2001, family owned and operated AireSpring is a leading Provider of Cloud Communications, Managed Connectivity and Managed Security which has earned its stellar reputation by taking service and support to the next level, delivering an award-winning customer experience that far exceeds the industry standards. AireSpring has...
-
SOC Technology Engineer
7 months ago
مصر, Egypt SSC Egypt Full time1. Manage, verify, validate and tune data collection for log continuity and act to solve any log continuity problem to ensure incidents are identified and alerted and maintain the integrity and availability of all the collected logs, along with monitoring log sources heart-beat. 2. Configure and manage performance & capacity monitoring and tuning of SOC...
-
Credit Analyst Banking
7 months ago
مصر, Egypt Pillars Consultancy Full timeCredit Analyst Banking (Muscat - Oman) Role Statement (brief general overview of key focus of the position) The Credit Analyst is responsible for assessing the creditworthiness of loan applicants, analyzing financial data, and making informed recommendations to ensure responsible lending and mitigate credit risk. They are also responsible monitoring of...
-
Analyst and Sales Role
2 weeks ago
مصر, Egypt Silverlight Research Full timeFounded in 2017 by ex-investment banking professionals, we are a fast growing knowledge research firm. We are looking to hire individuals for analyst roles to the team. Our clients include many of the largest Tier 1 global investment banks, private equity funds, hedge funds, corporates and consultancies. They are leading decision makers at these firms, and...
-
SOC Integration Engineer
7 months ago
مصر, Egypt SSC Egypt Full time1. Ensure that all log sources are reporting to the SIEM platform to maintain the availability of the logs. 2. Ensure all the integrated assets are reporting to their relevant solution (such as Data Activity Monitor, File Integrity Monitor, or Firewall Monitor) 3. Monitor the health of the log sources to make sure the log sources are sending proper logs that...