Manage and optimize the enterprise SIEM environment. Develop, tune, and maintain correlation rules, dashboards, and automated alerts to ensure the rapid identification of anomalous network and user behaviour.
Deploy, manage, and monitor Endpoint Detection and Response (EDR) solutions across the organization. Investigate endpoint alerts, isolate compromised hosts
Manage Web Application Firewalls (WAF) to protect public-facing applications from web-based attacks. Tune and monitor Intrusion Detection and Prevention Systems (IDS/IPS) to block malicious network traffic.
Write comprehensive reports including assessment-based findings, outcomes and propositions for further system security enhancement.
Design computer security strategy and engineer comprehensive cybersecurity architecture.
Develop and implement user awareness policies and procedures.
Apply the required HSE (Health & Safety) regulations.