Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailLine of Service
AdvisoryIndustry/Sector
FS XSectorSpecialism
RiskManagement Level
AssociateJob Description & Summary
A career within Cybersecurity and Privacy services will provide you with the opportunity to help our clients implement an effective cybersecurity programme that protects against threats propels transformation and drives growth. As companies pivot toward a digital business model exponentially more data is generated and shared among organisations partners and customers. We play an integral role in helping our clients ensure they are protected by developing transformation strategies focused on security efficiently integrate and manage new or existing technology systems to deliver continuous operational improvements and increase their cybersecurity investment and detect respond and remediate threats.*Why PWC
At PwC we believe in providing equal employment opportunities without any discrimination on the grounds of gender ethnic background age disability marital status sexual orientation pregnancy gender identity or expression religion or other beliefs perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firms growth. To enable this we have zero tolerance for any discrimination and harassment based on the above considerations.
Job Description & Summary: The SOC Consultant is a pivotal role within our Security Operations Center. The incumbent will be responsible for advanced threat monitoring detection and incident response utilizing LogRhythm SIEM solution. This role acts as an escalation point for L2 analysts and is instrumental in conducting indepth analysis threat hunting and incident management.
Responsibilities:
Continuously monitor security alerts and events through SIEM solutions.
Perform thorough analysis on alerts to distinguish between true positives false positives and benign anomalies.
Develop implement and optimize detection rules and use cases within LogRhythm to improve alerting mechanisms.
Lead the response to security incidents including containment eradication and recovery efforts.
Strong understanding of SIEM architecture and log management principles.
Strong understanding of cybersecurity principles and methodologies.
Coordinate with relevant teams to ensure swift resolution of incidents and minimize impact.
Conduct proactive threat hunting activities to identify potential security gaps and vulnerabilities.
Act as an escalation point for L2 analysts providing guidance and technical support for complex incidents.
Provide expertise in the configuration management and optimization of SIEM platforms.
Maintain detailed records of security incidents including timelines analysis and remediation steps.
Prepare and present detailed incident reports and summaries to management and stakeholders.
Contribute to the continuous improvement of SOC processes playbooks and standard operating procedures.
Experience:
36 years of experience in a cybersecurity role with at least 3 year in an SOC environment.
Handson experience with LogRhythm SIEM solution.
Skills:
Strong understanding of networking concepts and protocols (TCP/IP DNS HTTP etc.).
Proficiency in scripting languages (Regex PowerShell etc.) is an advantage.
Experience with threat hunting incident response methodologies and advanced threat detection techniques.
Excellent analytical problemsolving and decisionmaking abilities.
Strong communication skills both written and verbal.
Familiarity with security frameworks and standards (e.g. MITRE ATT&CK NIST).
Certifications:
Relevant certifications such as CompTIA Security CEH (Certified Ethical Hacker) GCIH (GIAC Certified Incident Handler) SC200 AZ500 or equivalent are preferred.
Working Conditions:
Ability to work effectively in a fastpaced highpressure environment.
Mandatory skill sets:
LogRhythm Deployment Use case creation Log source integrations Report configuration SOAR UEBA
Preferred skill sets:
LogRhythm Deployment Use case creation Log source integrations Report configuration SOAR UEBA
Years of experience :
36Years
Education qualification:
Education (if blank degree and/or field of study not specified)
Degrees/Field of Study required: Bachelor of EngineeringDegrees/Field of Study preferred:Certifications (if blank certifications not specified)
Required Skills
LogRhythmOptional Skills
Accepting Feedback Accepting Feedback Active Listening Agile Methodology Azure Data Factory Communication Cybersecurity Cybersecurity Framework Cybersecurity Policy Cybersecurity Requirements Cybersecurity Strategy Emotional Regulation Empathy Encryption Technologies Inclusion Intellectual Curiosity Managed Services Optimism Privacy Compliance Regulatory Response Security Architecture Security Compliance Management Security Control Security Incident Management Security Monitoring 3 moreDesired Languages (If blank desired languages not specified)
Travel Requirements
Not SpecifiedAvailable for Work Visa Sponsorship
NoGovernment Clearance Required
NoJob Posting End Date
Required Experience:
IC
Full-Time