Assistant SOC Analyst Job Britam, Nairobi, Kenya
Britam, Nairobi, Kenya
Job description
Job Purpose
- The role is responsible for monitoring, detecting, and responding to security incidents to ensure the integrity and availability of our systems and data.
Key responsibilities
- Monitor security alerts and events using SIEM (Security Information and Event Management) tools to identify potential security incidents.
- Conduct initial triage and analysis of security alerts to determine their validity and severity.
- Investigate security incidents, including analyzing logs, network traffic, and endpoint data to identify indicators of compromise (IOCs) and determine the scope and impact of the incident.
- Collaborate with senior SOC analysts and other cybersecurity teams to coordinate incident response activities and implement appropriate mitigation measures.
- Document incident details, analysis findings, and response actions taken in incident reports and case management systems.
- Assist in the development and implementation of security monitoring use cases, detection rules, and playbooks to enhance threat detection capabilities.
- Support the implementation, configuration, optimization, and ongoing management of cybersecurity tools and platforms, including SIEM, EDR, email security, vulnerability management, and threat intelligence solutions.
- Perform routine health checks, upgrades, tuning, and maintenance of security tools to ensure optimal performance and effectiveness.
- Assist in onboarding new log sources, integrations, and security technologies into the SOC environment.
- Stay informed about the latest cybersecurity threats, vulnerabilities, and attack techniques through continuous learning and training.
- Participate in tabletop exercises, incident response drills, and simulations to test and improve incident response procedures and preparedness.
- Provide support for security investigations, compliance audits, and regulatory inquiries as needed.
- Support user cybersecurity awareness initiatives by assisting in the delivery of security awareness training, phishing simulation campaigns, and user education programs to promote a strong security culture across the organization.
- Contribute to the overall improvement of SOC processes, procedures, and tools through feedback and suggestions.
Knowledge, experience and qualifications required
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Relevant certifications such as CompTIA Security+, Certified Ethical Hacker (CEH), or equivalent is a plus.
- 1-2 years’ experience in IT related role, prior experience or internship in a cybersecurity-related role is preferred but not required.
- Strong analytical and problem-solving skills with attention to detail.
- Excellent communication and collaboration skills with the ability to work effectively in a team environment.
- Demonstrate ability to learn quickly and adapt to new technologies and concepts.
- Understanding of cybersecurity principles, threat landscape, and common attack vectors.
- Familiarity with security tools such as SIEM, IDS/IPS, antivirus, and endpoint detection and response (EDR) solutions.