Tamkeen Technologies تعلن عن وظيفة أخصائي استجابة للحوادث في الرياض
تفاصيل الوظيفة
تعلن شركة Tamkeen Technologies عن توفر وظيفة أخصائي الاستجابة للحوادث السيبرانية (Cybersecurity Incident Response Specialist) في مدينة الرياض، السعودية.
نبذة عن الوظيفة
أخصائي الاستجابة للحوادث السيبرانية مسؤول عن اكتشاف الحوادث السيبرانية والتحقيق فيها وتحليلها والاستجابة لها. تشمل المهمة إجراء التحليل الجنائي، وربط الأحداث الأمنية، وتحديد التهديدات ونقاط الضعف، وتنسيق أنشطة الاستجابة للحوادث، ودعم المؤسسة في احتواء الحوادث الأمنية وحلها بفعالية.
المهام والمسؤوليات
- مراقبة وتحليل التنبيهات السيبرانية وأحداث الشبكة من مصادر متعددة لتحديد الحوادث الأمنية المحتملة واكتشاف أسبابها الجذرية.
- تتبع والتحقيق وتوثيق الحوادث السيبرانية بدءًا من الاكتشاف وصولاً إلى الاحتواء والمعالجة والإغلاق.
- تحليل السجلات والبيانات الأمنية من مصادر متعددة لتحديد التهديدات المحتملة ومؤشرات الاختراق (IOCs) والأنشطة المشبوهة.
- إجراء تحليل للحوادث لتحديد نطاقها وشدتها وتأثيرها وسببها الجذري.
- إجراء تحليل جنائي رقمي وجمع الأدلة الجنائية الأولية وفقًا لمعايير التحقيق الجنائي المعمول بها.
- جمع وحفظ وتحليل مؤشرات الاختراق وغيرها من الأدلة لدعم التحقيقات السيبرانية.
- ربط بيانات الحوادث والأحداث الأمنية لتحديد نقاط الضعف وأنماط الهجوم والاختراقات المحتملة.
- ترتيب أولويات الحوادث بناءً على شدتها ونطاقها وتأثيرها التجاري والمخاطر الأمنية المحتملة، وتقديم توصيات للمعالجة في الوقت المناسب.
- تنسيق أنشطة الاستجابة للحوادث مع فرق SOC والاستخبارات الأمنية والأمن السيبراني وتقنية المعلومات والفرق الأخرى ذات الصلة.
- مراقبة مصادر الاستخبارات الأمنية الخارجية للحفاظ على فهم محدث للتهديدات السيبرانية الناشئة التي قد تؤثر على المؤسسة.
- التعاون مع محللي استخبارات التهديدات السيبرانية لتحديد أنماط الهجوم والأسباب الجذرية والعلاقات بين الحوادث الأمنية.
عرض النص الأصلي للإعلان
Job Summary:
The Cybersecurity Incident Response Specialist is responsible for detecting, investigating, analyzing, and responding to cybersecurity incidents. The role involves conducting forensic analysis, correlating security events, identifying threats and vulnerabilities, coordinating incident response activities, and supporting the organization in containing and resolving security incidents effectively.
Key Responsibilities:
- Monitor and analyze cybersecurity alerts and network events from multiple sources to identify potential security incidents and determine their root causes.
- Track, investigate, and document cybersecurity incidents from initial detection through containment, remediation, and closure.
- Analyze logs and security data from multiple sources to identify potential threats, indicators of compromise (IOCs), and suspicious activities.
- Conduct incident analysis to determine the scope, severity, impact, and root cause of cybersecurity incidents.
- Perform digital forensic analysis and collect initial forensic evidence in accordance with applicable forensic investigation standards.
- Collect, preserve, and analyze indicators of compromise and other artifacts to support cybersecurity investigations.
- Correlate incident data and security events to identify vulnerabilities, attack patterns, and potential compromise.
- Prioritize incidents based on severity, scope, business impact, and potential security risks, and provide recommendations for timely remediation.
- Coordinate incident response activities with SOC, Threat Intelligence, Cybersecurity, IT, and other relevant teams.
- Monitor external threat intelligence sources to maintain an up-to-date understanding of emerging cyber threats that may impact the organization.
- Collaborate with Cyber Threat Intelligence analysts to identify attack patterns, root causes, and relationships between security incidents.
رقم الإعلان لدى المصدر: 4459286699