Please Wait ...

163515

views

1332

job history

Industry:

Finance/Banking/Insurance

Number of Employees:

1500-2000

Type:

LLC/OJSC/CJSC

Date of Foundation:

1996

Cybersecurity Specialist (Blue Team)

Full time

Yerevan

Employment term Permanent

Category IT security/Networks

Job description:

We are looking for a skilled and proactive Blue Team Specialist to join our cybersecurity team. In this role, you will be responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats. The ideal candidate will have hands-on experience with SIEM tools, endpoint protection platforms, incident response, and vulnerability management.

Job responsibilities
  • Investigate and respond to security incidents, conduct root cause analysis, and document findings.
  • Perform threat hunting and analyze abnormal behavior across the network and endpoints.
  • Oversee threat monitoring and incident response using SIEM, SOAR, AV, EDR, XDR, SEG and threat intelligence platforms.
  • Collaborate with DevOps, and IT teams to harden infrastructure.
  • Support and improve the incident response process, playbooks, and automation.
  • Conduct vulnerability scans, interpret results, and coordinate remediation.
  • Maintain and enhance security monitoring infrastructure.
  • Participate in internal security audits, compliance checks, and risk assessments.
  • Create clear and detailed reports and dashboards for stakeholders and management.
Required qualifications
  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field, or equivalent professional experience.
  • 3+ years of experience in blue team / SOC.
  • Experience with dynamic/static malware analysis tools (e.g., VirusTotal, Any.Run, Ghidra) .
  • Deep understanding of security operations, threat detection, malware analysis, digital forensics and incident response.
  • Strong background in Linux and Windows.
  • Good grasp of networking fundamentals, VPNs, IDS/IPS, firewalls, segmentation, and security best practices.
  • Hands-on experience with SIEM, AV, EDR, XDR, SEG and threat intelligence platforms.
  • Experience with Kubernetes, Docker, and container runtime security.
  • Experience with incident response and triage techniques.
  • Good knowledge of MITRE ATT&CK, NIST CSF, and incident response frameworks.
  • Familiar with log analysis, threat intelligence, and forensic tools.
  • Scripting and automation skills in Python, Bash, PowerShell, C#.
  • Ability to work independently and collaboratively.

Nice to Have

  • Cybersecurity certifications
  • Familiarity with compliance frameworks: 27001:2022, ISO 27701:2019 or PCI DSS
Professional skills
SIEM Linux Cybersecurity
Soft skills
Problem solving  Analytical skills