وصف الوظيفة
الأدوار والمسؤوليات
اتصل بفرصتك
بصفتك مستشار تصميم SOC السحابي، ستكون مسؤولاً عن التصميم الشامل والتحسينات المستمرة لقدرتنا على الاكتشاف والاستجابة من الجيل التالي. ستوفر الجسر بين استراتيجيتنا وخدماتنا، مقدماً المخططات التي يبنيها مهندسونا ويقدّمها خبراء التهديدات لخدماتنا. ستتحمل أيضاً مسؤولية الهندسة على مستوى العمل، بدءاً من تعريف نموذج التشغيل، وتنقيح عملياتنا لتشكيل التصميم الفني العام واختيار الأدوات. وبفضل الحرية في البحث والتجربة مع أساليب وأدوات مختلفة لضمان بقائنا في طليعة الاكتشاف والاستجابة، ستؤثر على نهجنا الشامل وتحدد الاتجاه لكيفية تلبية مطالب عملائنا. قرر أفضل مسار للعمل لاكتشاف التهديدات والتحقيق والاستجابة لها. طور واعتمد عمليات وحوكمة وطرق عمل لتمكين تسليم نموذج التشغيل المستهدف وكتالوج الخدمات. دعم أنشطة البحث للحفاظ بشكل مستمر على الحد في ممارسات الأمن السيبراني. العمل كنقطة تصعيد للمهندسين المعماريين المبتدئين. العمل مع المهندسين وخبراء التهديدات لتحليل البيانات من لوحات التحكم لرسم الاستراتيجية والتحسين المستمر بشكل فعال. السعي بنشاط لتحسين وتطوير محتوى جديد بناءً على النشاط الأمني الملاحظ. مسؤول عن إنشاء وتنمية علاقات العملاء وفهم احتياجاتهم. تطوير علاقات عمل إيجابية مع فرق Deloitte والعملاء. المشاركة في تحديد تطوير عقد الدعم وتجديداته.
الملف المرشح المطلوب
ارتبط بمهاراتك وخبرتك المهنية.
لدخول هذا الدور، ستحتاج إلى مطابقة المعايير التالية:
- 3+ سنوات خبرة ذات صلة في الأمن السيبراني
- حد أدنى سنة واحدة من الخبرة في تصميم الحلول وتطويرها. في أدوات SOC المتنوعة (SIEM، SOAR، EDR/XDR/NDR، إلخ)
- خبرة في العمل ضمن نماذج التوصيل Agile أو DevOps أو Kanban..
- خبرة في العمل مع أطر العمل الهندسية، ويفضل TOGAF.
- خبرة في تطوير وثائق HLD وLLD لحلول الأمن.
- فهم قوي لعمليات الأمن ضمن مراكز عمليات الأمن أو بجانبها، ويفضل أن تكون مبنية على MSSP.
- خبرة في العمل في بيئات أحد مشغلي السحابة المتعددة، ويفضل حيازة شهادة Professional Cloud Architect.
- خبرة مع أداة SIEM & SOAR متعددة، ويفضل Google SecOps (المعروفة سابقاً Chronicle)، SPLUNK، Sentinel، XSOAR، XSIAM أو Arcsight.
- خبرة مع أدوات EDR/XDR وNDR، ويفضل Crowdstrike، Corelight، وMicrosoft Defender XDR.
الصفات التالية أساسية:
- الاستعداد للعمل كجزء من فريق متنوع
- الالتزام بالتحسين المستمر والتعلم مدى الحياة
- شغف بالتكنولوجيا ودافع لتقديم حلول آمنة وعالية الجودة
- القدرة على البقاء هادئاً تحت الضغط مع الاستمرار في الانتباه للتفاصيل
- مهارات تحليلية وحل مشاكل قوية
- اتصالات شخصية ومهارات تواصل ممتازة
- القدرة على العمل بفاعلية في بيئة سريعة وت(dynamic)
- دافع ذاتي ومبادرة مع انتباه دقيق للتفاصيل
Job Description
Roles & Responsibilities
Connect to your opportunity
As a Cloud SOC Design Consultant , you will be responsible for the overall design and continuous improvements of our Next-Gen Detection and Response capability. You will provide the bridge between our strategy and our services, providing the blueprints to which our engineers build, and our Threat Hunters deliver our services. You will also be responsible for the architecture at a business level, from defining our Operating Model, refining our processes to shape the overall technical design and tooling selection. Given the freedom to research and experiment with different approaches and tooling to ensure we remain on the cutting edge of detection and response you will influence our macro approach and set the direction for how we meet our clients demands. Decide the best course of action to detect, investigate and respond to threats. Develop and establish processes, governance, and ways of working to enable the delivery of our target operating model and service catalogue. Support research activities to continually maintain the edge in cybersecurity practices. Serve as point of escalation for the Junior architects. Work with Engineers & Threat Hunters to analyse data from dashboards to effectively chart strategy and continuous improvement. Actively seek to improve and develop new content based upon observed security activity. Responsible for establishing and growing client relationships and an understanding of the client s needs. Develop positive working relationships with Deloitte and client teams. Involvement in the determination of support contract development and renewals.
Desired Candidate Profile
Connect to your skills and professional experience.
To succeed in this role, you will need to match the following criteria:
- 3+ years of relevant experience in Cybersecurity
- Minimum 1 years of experience in solution design and development. of various SOC tools (SIEM, SOAR, EDR/XDR/NDR, etc.)
- Experience working within Agile, DevOps or Kanban delivery models..
- Experience working with Architecture Frameworks, ideally TOGAF.
- Experience in developing HLD & LLD documents for security solutions.
- Strong Understanding of Security Operations working within or alongside Security Operations Centre(s), ideally MSSP based.
- Experience working in in one or more hyperscaler environments, preferably holding Professional Cloud Architect Certification.
- Experience with multiple SIEM & SOAR Tooling, preferably Google SecOps (formerly Chronicle), SPLUNK, Sentinel, XSOAR, XSIAM or Arcsight.
- Experience with EDR/XDR and NDR Tooling, preferably Crowdstrike, Corelight, and Microsoft Defender XDR.
The following attributes are essential:
- A willingness to work as part of a diverse team.
- A commitment to continuous improvement and lifelong learning.
- A passion for technology and a drive to deliver secure, high-quality solutions.
- An ability to remain calm under pressure whilst continuing to pay attention to detail.
- Strong analytical and problem-solving skills.
- Excellent communication and interpersonal abilities.
- Ability to work effectively in a fast-paced and dynamic environment.
- Proactive and self-motivated with a keen attention to detail.