Help AG is looking for a talented Associate Cybersecurity Defense Analyst who will be an integral part of our Security Operations Centre (SOC) team for our Managed Security Services (MSS) unit. If you have a strong knowledge and interest in Cyber security, this position might be the right one for you. The Level one (I) MSS Security Analyst will be responsible for monitoring multiple security technologies and events using the Security Information Event Management (SIEM) tool in order to detect and identify Cyber security incidents.
This role requires:
1-3 years of experience in information security, in areas such as security operations, intrusion detection, incident analysis, incident handling, log analysis, or firewall administration
1-2 years of experience in one of the following: Network operations or engineering or system administration on Unix, Linux, Windows
Responsibilities
Follow detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents.
Handling tickets and large queues and efficiently prioritize based on criticality of alerts.
Reach out for assistance in case of initial triage/categorization/prioritization of alerts.
Correlate and analyze events using the Splunk/Log Rhythm/QRadar SIEM tool to detect IT security incidents.
Monitor logs in/from multiple security technologies, such as SIEM, IDS/IPS, Firewalls, Switches, VPNs, and other security threat data sources.
Monitor logs across Microsoft platforms like Sentinel, Defender, ATP etc.
Respond to inbound requests via phone and other electronic means for technical assistance with managed services.
Respond in a timely manner (within documented SLA) to support, threat, and other cases.
Maintain a high degree of awareness of the current threat landscape.
Participate in knowledge sharing with other analysts and assist in writing technical articles for Internal knowledge Bases.
Perform other essential duties as assigned.
Able to work in rotating shifts within a 24/7 operating environment.
Qualifications & Skills
A Degree in Computer Science, Information Systems, Electrical Engineering, or a closely related degree.
An active interest in internet security, incident detection, network, and systems security .
A sound knowledge of IT security best practices, common attack types and detection/prevention methods.
Demonstrable experience of analyzing and interpreting system, security, and application logs.
Knowledge of the type of events that both Firewalls, IDS/IPS, and other security related devices produce.
Experience in using SIEM tools such as Splunk, Log Rhythm, QRadar, Alien Vault, NitroSecurity, etc.
Good to have knowledge across platforms like Sentinel, Microsoft defender, ATP.
TCP/IP knowledge, networking, and security product experience.
Knowledge of Cyber Kill Chain and MITRE ATT&CK frameworks.
Possible attack activities, such as scans, man in the middle, sniffing, DoS, DDoS, etc. and possible abnormal activities, such as worms, Trojans, viruses, etc.
CCNA, CISSP, GCA, GCIA, GCIH, CEH certification would be preferable.
Outstanding organizational skills.
Exclusive focus and vast experience in IT.
Strong analytical and problem-solving skills.
A motivated, self-managed, individual who can demonstrate above average analytical skills and work. professionally with peers and customers even under pressure.
Strong written and verbal skills.
Strong interpersonal skills with the ability to collaborate well with others.
Benefits
Health insurance with one of the leading global providers for medical insurance.
Career progression and growth through challenging projects and work.
Employee engagement activities throughout the year.
Tailored training & development program.
About Us
Help AG is the cybersecurity arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a competitive edge.
Present in the Middle East since 2004, Help AG was strategically acquired by Etisalat in Feb 2020, hence creating a cyber security and digital transformation powerhouse in the region.
Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor agnostic, trustworthy, independent, and cyber security focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the art consulting practice, Help AG delivers unmatched value to its customers by strengthening their cyber defenses and safeguarding their business.