Cybersecurity Lead - Detection & Response
We help progressive enterprises navigate the new reality of digital risks with proactive and intelligent cybersecurity.
Job Description
At Scybers, we’re seeking a sharp, vigilant, and dynamic Detection & Response Lead to join our Managed Detection and Response (MDR) team. Step into a pivotal role where every day brings new challenges, and your strategic decisions will have a significant impact on our clients’ security.
Responsibilities
- Handle client engagements and work as the point of contact for MDR projects
- Drive the implementation of emerging threat intelligence (IOCs, updated rules, etc.) to identify affected systems and the scope of the attack
- Implement standards and procedures to ensure alerts are addressed with relevancy, accuracy and in a timely manner
- Define process and maturing of ‘playbooks’ for operational response to cyberthreats
- Operate autonomously to further investigate and escalate in accordance with policies, procedures and defined processes
- Mentoring and guiding the SOC analysts
- Lead SOC analysts during incident response actions, advise and coordinate with leadership during active incidents
- Identify and develop SOC related metrics via dashboard and/or reports
- Develop and facilitate relevant Cybersecurity tabletop exercises and simulations
Requirements
- 5+ years experience in SOC or similar capacity (Having experience in MSSP environments will be advantageous)
- A degree in Computer Science, IT or a Cyber‑Security related field
- One or more cybersecurity related certification (CySA+, CEH, CSA, ECIH, Cloud& etc.)
- Ability to work and collaborate in a team and lead projects and engagements effectively utilizing resources
- Experience in handling SOC daily operations and process / procedure management
- Strong skills in incident response and technical documentation
- Experience leading high performing technical teams
- Strong communication skills are essential
- Strong leadership qualities and the ability to motivate
- Experience in engaging in cloud security incidents and SIEM Engineering will be an added advantage
- Continuously developing investigative and cybersecurity skills through research and training