Information Security (SIEM)

A large financial Service Company based in Sandton, seeks an Information Security (SIEM)

Minimum Requirements

  • Matric
  • Degree/Diploma
  • A background in scripting languages like powershell, bash, python or perl will be a bonus

Responsibilities:

  • The Information Security Monitoring Team requires an individual who is very highly skilled in activities aligned to monitoring the Cyber Security landscape and with the ability to detect potential and actual threats to the bank.
  • The need is that the individual is capable of hunting for threats as well as the capability to design methods for such detections.
  • The individual will be required to be a self-starter who has the necessary skillset and mind-set.
  • They will need to be highly skilled in the use of SIEM products as well as with other security devices, including a deep understanding of how forensic and other security logs work and how to interpret them and use them in order to compile the actual and potential steps of a threat or compromise, this means they would need to have a deep understanding of DFIR (especially in memory forensics).
  • This particular individual should be comfortable with developing IOC’s based on analysis and triage such across the bank.
  • Included in their skill set will be the ability to configure SIEM rules, alarms and correlations and a deep understanding of how these work together with the sources.
  • In addition to their hunting abilities they would need to be competent in the maintenance of SIEM and its configuration.
  • They would in essence be capable of working in the analytical and the engineering space.
  • Capability will also be required in the running of and coordination of CSIRT incidents.
  • In these cases they will be expected to be well versed in the gathering of information provided by responders as well as participating as a responder.
  • This includes but is not limited to the creation and maintenance of timelines, story boards and collation of information of an incident.

For more information please contact Sinisa 011 234 0388, alternatively email your updated CV to sinisa@esmartgroup.co.za

If you do not receive a response within 2 weeks please consider your application declined.

Please be advised that we are currently experiencing technical problems receiving emails from Yahoo account, please use an alternative email address when communicating with us. If you do not have alternative address please contact the Recruiter (number above) for an alternative way to submit your application.

 Our apologies for the inconvenience caused 

Leave a Reply

Your email address will not be published.