Security Analyst (QRadar)- Amsterdam, NL

North Holland  ‐ Onsite
This project has been archived and is not accepting more applications.
Browse open projects on our job board.

Description

Job Description:

Experience/Skills

8+ years' experience in delivering Enterprise SOC services for customers including Security Event Monitoring, Security Operations Services.

Hard skills -

  • Experience in SIEM(QRADAR) Solution Use case (Rules, Filters,BB )development.
  • Experience in Security Event Monitoring process development and design for Enterprise customers.
  • Good understand of Event Analysis, triage, categorization and event escalation processes working closely with remote SOC customers
  • Good Experience in log analysis of Security Technologies such as Enterprise Firewalls, IPS, DLP, Email and Web Content filtering, Anti-Malware.
  • Good Experience in Custom Parser Development (UDSM)
  • Soft skills -

    a) Excellent written and communication skills

    b) Good documentation and presentation skills

    Roles and Responsibility

    • Content (Use Case ) development on the SIEM platform based of the information provided by the Data Analyst (SOC)
    • Creation of search queries, reports, dashboards as per functionality required and inputs from the Data Analyst (SOC)
    • SIEM app installation based of requirements given by the application team and following sign-off by CUSTOMER
    • Define correlation rules, alerts for near Real Time monitoring requirements

    Activities

    • Event source log collection status and trends ( Weekly )
    • Health and performance metrics for SIEM ( Monthly )
    • Support new content development into SIEM including ( Monthly ):
    • New event sources integrated into SIEM
    • Searches, queries, reports and associated dashboards deployed
    • SIEM applications (available on SIEM's application store ) deployed
    Start date
    n.a
    From
    Infoplus Technologies UK Ltd
    Published at
    28.03.2017
    Project ID:
    1314409
    Contract type
    Freelance
    To apply to this project you must log in.
    Register