Cybersecurity - WiZ SOAR Engineer
Role: Cybersecurity Platform Operations, focusing on Security Information and Event Management (SIEM) solutions.
Main Goal: To ensure that the cybersecurity platforms (specifically SOAR and WIZ) are working correctly and reliably for the Cyber Intelligence Response Centre (CIRC). This person acts as a bridge between the internal CIRC team and external infrastructure providers, and works closely with Security Platform architects.
Key Responsibilities:
· Platform Operations (50%): Define, implement, and maintain the operational environment for SOAR and WIZ, ensuring stability and performance. This includes rolling out the WIZ Agent, connecting with CIRC, architects, and suppliers, defining operational processes, optimizing platforms, and researching new tools.
· Point of Contact (20%): Be the main contact for operational process topics related to SOAR and WIZ for the CIRC, managing external operational units through service level agreements (SLAs).
· Platform Integration (10%): Collaborate with platform architects to integrate SOAR and WIZ with other security platforms like EDR and SIEM.
· WIZ Agent Rollout (10%): Work with infrastructure providers to roll out the WIZ Agent, including documentation, process, technical advice, and timelines.
· Platform Development (10%): Cooperate with CIRC, Platform Owners, and Lead Architects on further platform development, acting as an interface between them and demand management.
Qualifications:
· Education: Degree in Computer Science, Networking, Engineering, or related fields.
· Experience: Previous experience in a security operational/analytical role (corporate, military, or police), experience in a global environment and with virtual teams.
· Skills: Effective communication, good time management, self-motivated.
· Specific Knowledge: Familiarity with operational processes and global environments, understanding of Cloud and Security Platforms.
· Plus Points: Technical and security knowledge of leading Cloud platforms (Azure, AWS, GCP), experience with DevOps CI/CD Pipelines, Git Repository, and Container technologies, relevant technical and industry certifications (Splunk, ArcSight, Microsoft, SANS, ISC2).