Outside Spy
Birmingham, UK
Qualification & Experience Required Industry standard Security qualifications (SANS GCIH, CISSP, Azure, Splunk, etc) or equivalent. Strong experience with SIEM technologies within a SOC (Splunk experience highly desirable). MS Sentinel is also now being introduced. Hands-on experience creating security use cases, analytics, and playbooks. Experience conducting security event triage and rapid incident response. Log analysis experience (Wireshark, NPCap, etc.). Experience with (ITSM) Service Management Systems (Remedy, Service Now). Strong understanding of information security principles, threat detection, and remediation processes. Knowledge of Microsoft and Linux technologies, networking, anti-virus, vulnerability management, and encryption. Familiarity with GDPR, Data Protection legislation, and security governance frameworks. Ability to think critically under pressure and respond effectively to fast-moving security incidents. Scripting or query experience is highly desirable...