Acba Bank OJSC
Հայաստանի Հանրապետություն
Ոլորտ`
Ֆինանսներ/Բանկ/Ապահովագրություն
Աշխատակիցների քանակը`
1500-2000
Ընկերության տեսակը`
ՍՊԸ/ԲԲԸ/ՓԲԸ
Հիմնադրման տարեթիվ`
1996
Cybersecurity Specialist (Blue Team)
Ամբողջ դրույք
Երևան
Աշխատանքի պայմաններ Մշտական
Կատեգորիա ՏՏ անվտանգություն/Ցանցեր
Աշխատանքի նկարագրություն՝
We are looking for a skilled and proactive Blue Team Specialist to join our cybersecurity team. In this role, you will be responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats. The ideal candidate will have hands-on experience with SIEM tools, endpoint protection platforms, incident response, and vulnerability management.
Աշխատանքային պարտականություններ
- Investigate and respond to security incidents, conduct root cause analysis, and document findings.
- Perform threat hunting and analyze abnormal behavior across the network and endpoints.
- Oversee threat monitoring and incident response using SIEM, SOAR, AV, EDR, XDR, SEG and threat intelligence platforms.
- Collaborate with DevOps, and IT teams to harden infrastructure.
- Support and improve the incident response process, playbooks, and automation.
- Conduct vulnerability scans, interpret results, and coordinate remediation.
- Maintain and enhance security monitoring infrastructure.
- Participate in internal security audits, compliance checks, and risk assessments.
- Create clear and detailed reports and dashboards for stakeholders and management.
Անհրաժեշտ հմտություններ
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field, or equivalent professional experience.
- 3+ years of experience in blue team / SOC.
- Experience with dynamic/static malware analysis tools (e.g., VirusTotal, Any.Run, Ghidra) .
- Deep understanding of security operations, threat detection, malware analysis, digital forensics and incident response.
- Strong background in Linux and Windows.
- Good grasp of networking fundamentals, VPNs, IDS/IPS, firewalls, segmentation, and security best practices.
- Hands-on experience with SIEM, AV, EDR, XDR, SEG and threat intelligence platforms.
- Experience with Kubernetes, Docker, and container runtime security.
- Experience with incident response and triage techniques.
- Good knowledge of MITRE ATT&CK, NIST CSF, and incident response frameworks.
- Familiar with log analysis, threat intelligence, and forensic tools.
- Scripting and automation skills in Python, Bash, PowerShell, C#.
- Ability to work independently and collaboratively.
Nice to Have
- Cybersecurity certifications
- Familiarity with compliance frameworks: 27001:2022, ISO 27701:2019 or PCI DSS