The Security Operations Specialist will support the organizations cybersecurity operations by implementing and managing on-premise and cloud security controls. This role acts as the internal point of contact for all security operational activities Servicesing closely with the outsourced SOC provider to review alerts validate incidents and execute recommended actions. The specialist will manage fine-tune and monitor various security technologies including firewalls endpoint protection intrusion prevention systems (IPS) and netServices access controls (NAC) such as Cisco ISE.
Key Responsibilities
This position requires strong technical expertise hands-on configuration capability and effective coordination skills to ensure timely and accurate implementation of security recommendations and continuous improvement of the organizations security posture.
Serve as the primary internal contact for day-to-day security operational activities.
Review alerts and incident reports shared by the outsourced SOC and perform validation and deeper investigation when required.
Implement and fine-tune security configurations across firewalls IPS/IDS endpoint protection platforms and cloud security tools.
Support and manage endpoint protection solutions ensuring effective detection response and compliance with security policies.
Maintain and optimize Cisco ISE for NAC operations user profiling posture assessment and access policy enforcement.
Coordinate with the SOC provider to ensure incident response recommendations are implemented and tracked to closure.
Perform root cause analysis and assist with remediation planning for detected security incidents.
Support vulnerability remediation efforts in collaboration with IT and application teams.
Implement and maintain secure configurations in cloud environments (Azure AWS or GCP).
Participate in security tool evaluation integration and enhancement projects.
Maintain updated documentation for configurations standard operating procedures and incident reports.
Support compliance and audit activities by providing control evidence and operational reports.
Assist in developing internal awareness and operational security improvements.
Requirements
Bachelors degree in computer science Information Security or related field.
Preferred certifications: CompTIA Security CEH Cisco CCNP Security or equivalent.
Additional certifications such as Palo Alto PCNSA/PCNSE Fortinet NSE or Microsoft SC-200 are advantageous.
ITIL Foundation certification preferred.
Minimum 5 years of experience in IT or cybersecurity operations.
Hands-on experience implementing and managing security tools such as firewalls IPS/IDS endpoint protection and NAC.
Strong knowledge of Cisco ISE and access policy management.
Familiarity with SOC operations incident response and SIEM processes.
Servicesing knowledge of security in cloud environments (Azure/AWS/GCP).
Experience with EDR/XDR solutions and vulnerability management tools.
Understanding of security frameServicess like NIST ISO 27001 and CIS Controls.
Strong troubleshooting analytical and coordination skills.
Ability to Services effectively with third-party vendors and internal IT teams.