Пожалуйста подождите ...

Acba Bank OJSC

Армения

163564

Просмотр

1332

История вакансий

Индустрия:

Финансы/Банк/Страхование

Количество сотрудников:

1500-2000

Тип компании:

ОАО/ЗАО/ООО

Дата основания:

1996

Cybersecurity Specialist (Blue Team)

Полная ставка

Ереван

Условия контракта Постоянный

Категория ИТ-безопасность/Сети

Описание работы

We are looking for a skilled and proactive Blue Team Specialist to join our cybersecurity team. In this role, you will be responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats. The ideal candidate will have hands-on experience with SIEM tools, endpoint protection platforms, incident response, and vulnerability management.

Обязанности
  • Investigate and respond to security incidents, conduct root cause analysis, and document findings.
  • Perform threat hunting and analyze abnormal behavior across the network and endpoints.
  • Oversee threat monitoring and incident response using SIEM, SOAR, AV, EDR, XDR, SEG and threat intelligence platforms.
  • Collaborate with DevOps, and IT teams to harden infrastructure.
  • Support and improve the incident response process, playbooks, and automation.
  • Conduct vulnerability scans, interpret results, and coordinate remediation.
  • Maintain and enhance security monitoring infrastructure.
  • Participate in internal security audits, compliance checks, and risk assessments.
  • Create clear and detailed reports and dashboards for stakeholders and management.
Требования
  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field, or equivalent professional experience.
  • 3+ years of experience in blue team / SOC.
  • Experience with dynamic/static malware analysis tools (e.g., VirusTotal, Any.Run, Ghidra) .
  • Deep understanding of security operations, threat detection, malware analysis, digital forensics and incident response.
  • Strong background in Linux and Windows.
  • Good grasp of networking fundamentals, VPNs, IDS/IPS, firewalls, segmentation, and security best practices.
  • Hands-on experience with SIEM, AV, EDR, XDR, SEG and threat intelligence platforms.
  • Experience with Kubernetes, Docker, and container runtime security.
  • Experience with incident response and triage techniques.
  • Good knowledge of MITRE ATT&CK, NIST CSF, and incident response frameworks.
  • Familiar with log analysis, threat intelligence, and forensic tools.
  • Scripting and automation skills in Python, Bash, PowerShell, C#.
  • Ability to work independently and collaboratively.

Nice to Have

  • Cybersecurity certifications
  • Familiarity with compliance frameworks: 27001:2022, ISO 27701:2019 or PCI DSS
Профессиональные навыки
SIEM Linux Cybersecurity
Личные навыки
Решение проблем Аналитические навыки