Jobs Career Advice Post Job
X

Send this job to a friend

X

Did you notice an error or suspect this job is scam? Tell us.

  • Posted: Dec 11, 2024
    Deadline: Not specified
    • @gmail.com
    • @yahoo.com
    • @outlook.com
  • Liquid Intelligent Technologies is a leading connectivity, innovation and intelligent technology company across 13 countries, primarily in Eastern, Central and Southern Africa, that is building a digital future for Africa. Put simply, we connect people. We started out by questioning the way things are done and being single-minded in our determination to i...

     

    L3 SIEM Engineer

    Requirements

    Role Requirements:

    • Manages the functionality and efficiency of the SIEM infrastructure.
    • Maintains the integrity and security of servers and systems.
    • Sets up administrator and service accounts.
    • Maintain system documentation and standard operating procedures.
    • Makes recommendations to purchase hardware and software, coordinates installation and provides backup recovery.
    • Develops and monitors policies and standards for allocation of SIEM resources.
    • Provides advice and training to end-users.
    • Provides guidance and work leadership to less-experienced staff members and may have supervisory responsibilities.
    • May serve as a technical team or task leader.
    • Maintains current knowledge of relevant technologies as assigned.
    • Participates in special projects as required.
    • Deploy new SIEM Loggers, SmartConnectors / FlexConnectors as required to collect data feeds.
    • Assist in the proper operation and performance of SIEM ESM, Loggers and connector.
    • Provide capability to analyse SIEM output and interpret reports.
    • Integration of data feeds (logs) into SIEM.
    • Perform content development to properly identify data feeding SIEM.
    • Develop filters to assist in the identification of significant events.
    • Develop reports (manual and automated) to support the development, collection, and reporting of Quality Assurance and Performance metrics (as defined by the client).
    • Develop dashboards/reports for external customers for system monitoring.
    • Provide ad-hoc training to analysts focusing on specific client missions, including generic SIEM training sessions and Custom Use Case training sessions.
    • Provide recommendations and implement changes to optimize SIEM products in the customer environment.
    • Support the client in fact finding or case supporting tasks as it relates to SIEM.
    • Evaluate relative SIEM product advancements and provide recommendations to the customer.
    • Identifies security risks, threats and vulnerabilities of networks, systems, applications and new technology initiatives.Provides technical support in the development, testing and operation of firewalls, intrusion detection systems, and enterprise anti-virus and software deployment tools.
    • Conducts complex security architecture analysis to evaluate and mitigate issues
    • Develops implements, enforces and communicates security policies and/or plans for data, software applications, hardware and telecommunications.
    • Acts as team lead, managing and mentoring efforts of junior engineers.
    • Develops capacity planning for entire SIEM infrastructure over 3 years.

    Accountable for:

    • Day to day running of MSS within customer accounts.
    • Escalation of concerns/issues/incidents.
    • Team/vendor efficiency in delivering as contracted, and ensuring the customers receive all relevant services according to SLAs.
    • The effectiveness of security being delivered to customers.

    Education required:

    • Bachelor’s degree in computer science or a related technical discipline, or the equivalent combination of education, technical certifications.
    • One or more of these industry Cybersecurity Certifications: CISM, CEH, OSCP, CompTiA Security Plus, as well any SIEM related qualification.
    • Strong analytical and organizational skills.
    • Concise writing skills, excellent MS Word skills as well as other MS Office Applications.
    • Experience with securing various environments preferred.
    • Experience in working across security technologies.
    • Managed security services experience across complex architectures.

    Experience required:

    • Minimum of six (6) years of work experience and three (3) years of relevant experience in SIEM engineering in a Security Operations Center [SOC]
    • Strong analytical and organizational skills.
    • Concise writing skills, excellent MS Word skills as well as other MS Office Applications.
    • Experience with securing various environments preferred.
    • Experience in working across security technologies.
    • Managed security services experience across complex architectures.
    • In depth understanding of the role of SIEM engineering tools and dashboards.
    • Prior experience to advise, plan, deploy, configure, manage and monitor large scale SIEM solutions.
    • Ability to communicate effectively with all levels, influence, persuade and be credible internally and externally.
    • Must work well under pressure and changing priorities.
    • Have demonstrated ability to plan, prioritize, coordinate and manage multiple, and often conflicting, initiatives.
    • Able to establish trust and build on-going client relationships.
    • Ability to translate and clearly formulate technical issues in business terms.
    • Good interpersonal skills.
    • In depth understanding of the role of incident analysis tools.
    • In depth understanding of various types of log analysis.
    • Prior experience to advise, plan, deploy, configure, manage and monitor large scale and complex cyber defense and IT risk management and information or cybersecurity solutions.

    go to method of application »

    Technical Cyber Security Solutions Architect - End Point

    Role Requirements:

    • Take the lead technical role in projects, managing less experienced engineers to ensure a successful outcome to endpoint security projects.

    Deep technical knowledge of the following endpoint security solutions and services:

    • Microsoft Defender for Endpoint.
    • Microsoft Intune
    • Microsoft Entra
    • Microsoft Purview
    • Microsoft Sentinel
    • Endpoint security architecture and best practice configurations to align with Zero Trust Network Access solutions.
    • Perform implementation and technical leadership in Pre-sales and Proof of Concept [POC] customer engagements.
    • Provide senior level technical support on endpoint security products for lower tier engineers at customers and in the organization.
    • Provide architectural diagrams and concepts to meet company solution requirements.
    • Act as thought leader to assess existing endpoint security product implementations and suggest improvements to design and implementation as part of technical reviews.
    • Implement, upgrade and maintain products in the endpoint security stack.
    • Develop standard operating procedures and guides for junior resources to refer to in future engagements with endpoint security products.
    • Stays abreast with endpoint security product developments and can bring new technology solutions to the table to meet customer requirements more effectively.
    • Playing a leading role in terms of the organization Cybersecurity strategy and the implementation thereof.
    • Act as top tier troubleshooting resource for service degradation and outages.

    Qualifications and Experience Requirements:

    • Matric/ Grade 12
    • Relevant IT Security Diploma/Degree is expected.
    • Must have the following Cyber Security vendor certifications:
    • Relevant Microsoft certifications e.g. SC900, AZ500, SC300, SC400, MS500, etc.
    • Industry certifications would be advantageous, e.g. Security+, etc.
    • Experience of IT and Cyber Security industry frameworks or standards such as ISO2700x, NIST, CIS Top18, etc.
    • 3 - 5 years’ experience in large scale Microsoft Endpoint Security product configuration and deployments.
    • References of actual endpoint security deployments and projects.

    go to method of application »

    Technical Cybersecurity Solutions Architect (Microsoft & Cloud)

    Role Requirements:

    • Take the lead technical role in projects, managing less experienced engineers to ensure a successful outcome to Microsoft and Cloud security projects.
    • Proven technical knowledge of the following Microsoft and Cloud security solutions and services:
    • Microsoft Intune
    • Microsoft Entra
    • Microsoft Defender
    • Microsoft Purview
    • Microsoft Sentinel
    • Priva
    • Purview
    • AWS & Google Security Portfolio
    • Perform implementation and technical leadership, as well as Proof of Concept [POC] when requested by customers.
    • Provide Level 3 technical support on Microsoft and Cloud security products on an ad-hoc basis to operations when required.
    • Provide architectural diagrams and concepts to meet company solution requirements.
    • Act as thought leader and participate in assessments (technical reviews) of existing Microsoft and Cloud security product implementations, including proposing improvements in relation to architecture design, posture and improvements.
    • Implement, upgrade and maintain products in the Microsoft and Cloud security stack.
    • Develop standard operating procedures and guides for junior resources to refer to in future engagements with Microsoft and Cloud security products.
    • Stays abreast with Microsoft and Cloud security product developments and can bring new technology solutions to the table to meet customer requirements more effectively.
    • Playing a leading role in terms of the organization Cybersecurity strategy and the implementation thereof.
    • Act as top tier troubleshooting resource for service degradation and outages and assist the managed security services (MSS) team members with challenging Level 3 support requests and incident response activities when so required.
    • Provides support to Pre-sales Specialists around technical detail that may be required in response to client requirements and tender responses.

    Qualifications and Experience Requirements:

    • Matric/ Grade 12
    • Relevant IT Security Diploma/Degree is expected.
    • Must have the following Cyber Security vendor certifications:
    • Relevant Microsoft certifications e.g. SC900, AZ500, SC300, SC400, MS500, etc.
    • Industry certifications would be advantageous, e.g. Security+, etc.
    • Experience of IT and Cyber Security industry frameworks or standards such as ISO2700x, NIST, CIS Top18, etc.
    • 5 - 10 years’ experience in large scale Microsoft and Cloud Security product configuration and deployments.
    • References of actual Microsoft security deployments and projects.

    Method of Application

    Build your CV for free. Download in different templates.

  • Get new ICT / Computer jobs like this on Telegram.Subscribe on Telegram
  • Send your application

    Back To Home

Career Advice

View All Career Advice
 

Subscribe to Job Alert

 

Join our happy subscribers

 
 
Send your application through

GmailGmail YahoomailYahoomail