Cyber Security Analyst
Indexed description
This is a shift-based hybrid role with office presence, requiring coverage across a 24x5 operational model and support for Cyber Security Operations and services, with occasional after-hours activities for complex changes or critical tasks.
JOB Responsibilities
- Provide L2 Cyber support by handling escalations from users via ServiceNow, Awareness campaign, Phishing, performing monitoring activities, troubleshooting and resolution.
- Take ownership of complex incidents, ensuring timely resolution within agreed SLAs
- Perform in-depth diagnostics and root cause and remediation action.
- Provide 24x5 security monitoring support and participate in weekend/On-Call rotations.
- Ensure timely detection, triage and response to security incidents.
- Perform deep-dive investigations for Critical and High Priority security incidents.
- Lead critical incident response activities and coordinate stakeholder communications.
- Work closely with Infrastructure, Network, Cloud and Application teams to drive issue resolution.
- Track remediation activities and ensure closure within agreed SLAs
- Monitor Microsoft Defender compliance across Windows Server , Endpoints and Linux servers.
- Identify non-compliant assets and coordinate remediation efforts.
- Support endpoint security policy implementation and enforcement.
- Analyse phishing alerts and suspicious emails, perform email header analysis and determine threat indicators.
- Knowbe4 awareness recommend and implement appropriate containment and user awareness actions.
- Conduct advanced threat investigations using Cisco Umbrella to perform URL analysis, Smart Search investigations, blacklist management and threat hunting activities and other security tools.
- Identify malicious domains, indicators of compromise (IOCs) and emerging threats.
- Manage vulnerability remediation activities using Tenable and related platforms.
- Track CVEs, Out-of-Band (OOB) patches and third-party software vulnerabilities.
- Coordinate Patch deployment Compliance with relevant tower and validate remediation effectiveness.
- Support vulnerability risk assessments and reporting to each group.
- Develop and maintain monthly security dashboards and compliance reports..
- Drive incident resolution end-to-end, including coordination with L3 teams, vendors and external providers.
- Review, validate and execute non-standard and complex operational changes following change management processes.
- Participate actively in major incident management, including technical bridge calls when required
- Ensure problem management activities, including identifying recurring issues and driving permanent fixes.
- Remote support and endpoint troubleshooting Security issue.
- Maintain and improve Operational documentation, runbooks, troubleshooting guides and knowledge base articles
- Contribute to service improvement initiatives, automation opportunities and operational efficiency.
- Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.
- 3–5 years of hands-on expertise in IT Operations and Cybersecurity analysis.
- Relevant certifications (e.g., CompTIA Security+, CCSP, CISSP, CEH, GIAC certifications) are a plus.
- Strong understanding of network protocols, operating systems (Windows, Linux) and cloud environments (Azure, OCI)
- Microsoft Defender for Endpoint, SIEM Platforms.(Microsoft Sentinel, Cisco Umbrella, Defender for Linux, beyond trust privilege management and Identity management )
- Endpoint Security - Security Event Analysis , Log Correlation, Malware Analysis and IOC Investigation.
- Proven experience in handling complex incidents and escalations
- ServiceNow or similar ITSM platforms
- Ability to work independently and take technical ownership
- Excellent communication and stakeholder management skills
- Ability to perform under pressure in a high-availability enterprise environment
- Strong analytical and problem-solving skills
We offer all employees access to a dedicated recognition platform, empowering you to celebrate achievements, share appreciation and stay connected globally.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search