Position Summary: The Cybersecurity Technician, specializing in SIEM operations, plays a critical role in proactive alert investigation and incident response assistance. Operating primarily within the Security Information and Event Management (SIEM) platform, they continuously monitor and analyze security logs and alerts, identifying anomalies and potential security breaches. This technician investigates generated alerts, correlating events and contextualizing data to determine the severity and scope of potential alerts to determine whether they are a true or false positive. They are responsible for escalating critical findings to senior analysts or incident response teams. This role demands a keen analytical mind, a strong understanding of security principles, and the ability to quickly assess and respond to emerging threats in a dynamic environment.
The cybersecurity department operates 24/7. A variety of shifts are available to ensure coverage including 1, 2, and 3 shifts and weekends.
Responsibilities
This role is critical in providing initial support related to security alerts, ensuring customer information is protected, and facilitating the proper response to cybersecurity incidents. Here's a structured breakdown of the responsibilities mentioned:
Security Alert Management
Customer Interaction
Procedure Adherence
Incident Response
Threat Research
Performance Metrics
Continued Professional Development
Other
Qualifications and Skills
Education Background:
Experience:
Technical Skills:
Soft Skills:
Necessary Experience