Duties and responsibilities
- Operate, maintain and ensure the SIEM system availability
- Ensure logs availability for the in scope systems on the SIEM
- Responsible for onboarding and integration critical systems with the SIEM
- Support integration with the Group SIEM
- Building use cases for critical systems, threats and attack scenarios
- Respond and investigate suspicious events and alerts from local or Group SOC
- Provide security reports to government entities based on requests from legal and regulatory affairs
- Support Internal Business entities in investigations and provide needed reports
- Provide security reports to executive management
- Maintain Orange Egypt central logging system in accordance to NTRA regulations and Business needs
- Work with different technology teams to analyze complex problems and establish root cause of failures.
- Incidents investigations and response
- Reviewing vendor sites, bulletins, and notifications for security information, threats and incidents
- Exhibit deep technical understanding and experience with security technologies including, but not limited to, Intrusion Detection/Prevention, Event Correlation, Firewalls, Antivirus, Antispam, policy enforcement, patch/configuration management, secure application development, etc.
- Demonstrate deep knowledge of Internet systems and IT platforms.
- Manage junior team members, and support in complex problems
- Assist in analyzing and enhancing work processes to ensure efficient operations
Job specification
Education & Experience
- University degree in Telecommunication, Information Technology or Computer Science
- 4-6 Years In a similar security position
- SIEM / Incident Managment certification
Skills and abilities
- Strong analatical skills.
- Strong Problem solving capabilities.
- Strong understanding of the roles impact on the entire company and business.
- Ability to work under pressure and achieve excellence.