FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in administering and operating SIEM/SOC solutions, conducting network investigations, and analyzing security incidents. Proficient in leveraging threat intelligence and developing detection rules while automating security tasks using Python and Bash.
Highest-signal resume keywords
SIEM/SOC Solutions: Elastic Security, Splunk, QRadarNetwork Security: Fortinet, Palo Alto, Check Point, Blue Coat, ZscalerEDR/XDR Solutions: CrowdStrike, Microsoft Defender, SentinelOneNetwork Analysis: Wireshark, tcpdump, ZeekThreat Intelligence: MISP, VirusTotal
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
SIEM AdministrationLog AnalysisNetwork SecurityIncident ResponseDetection Rule DevelopmentAutomation with PythonAutomation with BashThreat Intelligence AnalysisNetwork InvestigationDNS Management
Soft Skills
Analytical ThinkingAutonomyRigorCritical Environment Adaptability
Tools & Technologies
Elastic AgentBeatsInfobloxBINDDNSSECDockerKubernetesPrometheusGrafanaPostgreSQL
Certifications & Qualifications
Higher Education Degree in IT or Cybersecurity
Industry Keywords
CybersecuritySecurity ArchitectureIncident InvestigationLog ManagementThreat Detection
Tech Stack
Tools & technologiesDNSDockerElasticSearchGrafanaKafkaKubernetesLinuxLogstashMariaDBPostgresPrometheusPythonSplunk
About the role
Key responsibilities & impact- Administer and operate SIEM/SOC solutions: Elastic Security, Splunk, QRadar
- Monitor and analyze security logs: Elastic Agent, Beats, Rsyslog, Syslog-ng
- Administer and secure DNS infrastructures: Infoblox, BIND, DNSSEC, DNS Filtering
- Operate Firewall / Proxy / Web Security solutions: Fortinet, Palo Alto, Check Point, Blue Coat, Zscaler
- Analyze alerts and incidents using EDR/XDR solutions: CrowdStrike, Defender, SentinelOne
- Conduct network investigations with Wireshark, tcpdump, and Zeek
- Leverage Threat Intelligence with MISP and VirusTotal
- Develop and optimize detection rules using MITRE ATT&CK, Sigma, and YARA
- Automate security tasks with Python, Bash, and REST APIs
- Participate in the detection, investigation, and response to security incidents
- Contribute to the continuous improvement of security architecture and controls
Requirements
What you’ll need- Higher education degree in IT or cybersecurity
- At least 5 years of experience in operational cybersecurity or a similar role
- Strong knowledge of SIEM, networking, DNS, and log analysis
- Experience with several security solutions from the environment described above
- Proficiency in Python or Bash is a plus
- Ability to analyze complex incidents and conduct technical investigations
- Autonomy, rigor, analytical thinking, and the ability to work in a critical environment
- SIEM/SOC: Elastic Security, Elasticsearch, Kibana, Logstash, Splunk, QRadar
- DNS: Infoblox, BIND, DNSSEC, DNS Filtering
- Network Security: Fortinet, Palo Alto, Check Point, Blue Coat, Zscaler
- EDR/XDR: CrowdStrike Falcon, Microsoft Defender, SentinelOne
- Threat Intelligence: MISP, VirusTotal
- Network Analysis: Wireshark, tcpdump, Zeek
- Systems: RHEL/Rocky Linux, Windows Server
- Automation: Python, Bash, REST APIs, JSON, Regex
- Infrastructure: Docker, Kubernetes
- Detection: MITRE ATT&CK, Sigma, YARA
- Monitoring / Data: Prometheus, Grafana, PostgreSQL, MariaDB, Kafka
Benefits
Comp & perks- Diverse assignments and international challenges
- Work in a dynamic and innovative SOC
- Opportunity to take initiative and contribute to the overall security strategy
- Supportive conditions that foster personal and professional growth
