Job Description:
- Reviewing and investigating security alerts and logs using tools like Splunk, Darktrace, Cofense, Trend Micro and Trellix Email Security.
- Communicating with users to verify the legitimacy of alerts and potential threats.
- Managing vulnerabilities by notifying relevant teams of required updates, tracking progress, and updating stakeholders on identified vulnerabilities to maintain a secure IT environment.
- Support firmware upgrades and fine‑tuning for firewalls and switches (Palo Alto, FortiGate, Cisco, etc.).
- Coordinate patching of Windows servers via Manage Engine.
- Assist in the development and maintenance of security documentation, including incident reports, standard operating procedures, and compliance records.
- Participate in security incident response activities, providing timely analysis and mitigation recommendations during security events.
- Monitor network traffic and system logs for unusual activities, and perform root cause analysis to prevent recurrence of security issues.
- Collaborate with IT teams to implement security best practices and ensure alignment with organizational security policies.
Required Skills & Qualifications:
- Diploma In Network Defence And Forensic Counter Measures.
- Certificate In INFOCOMM Technology (or relevant)
- Practical knowledge of SIEM tools, log analysis, and endpoint security solutions.
- Familiarity with vulnerability management processes and common security frameworks.
- Basic understanding of firewall configurations, network protocols, and server administration.
- Ability to communicate technical security issues clearly to non-technical stakeholders.
- Strong analytical thinking and attention to detail in high-pressure situations.