Security Engineer
Job Description
Kobalt is an equal opportunity employer looking for team members who have a real passion for security. The SOC Analyst is an engaged contributor role within Kobalt’s Security Operations Centre (SOC). This role is responsible for supporting the development of a SOC, geared towards mid sized organizations.
Kobalt’s back-end systems use industry-leading frameworks and tools to deliver a best-in-class solution that is able to log, monitor, and alert clients about security issues that may impact their business.
If you are ready for a new challenge and want to join a growing team, this is your opportunity. Kobalt is building a leading global SOC, and if you have want to be a part of this journey, we would love to hear from you.
Role Responsibilities
- Identify areas for process improvement and aid in efforts to implement the recommendation as appropriate
- Contribute to production of innovative technical solutions and creative automation opportunities
- Generate operational playbooks and documentation
- Provide concise and effective Tier-2 support as part of alert triage from other SOC team members
- Participate in active threat hunting, alert tuning, and discovery of new tactics, techniques and procedures (TTP)
- Operate and maintain in-house security systems providing insightful recommendations on improvements and opportunities for efficiencies
- Comfortable and flexible in a fast changing environment
- Ability to work independently as well collaboratively, asking for help when needed
- Provide mentoring for junior members of the team
- Capture regular metrics highlighting key activities, measurable accomplishment, and blockers
Ideal Qualifications
- Bachelor’s degree in a related field or 3+ years of meaningful security operations related experience (including some SOC related)
- 2+ years of experience as a security or network administrator
- Familiar with major Open Source SIEM tools such as Elastic Stack, OSSIM, Apache Metron, OSSEC, Splunk, etc.
- Able to interpret security logs and related information, and identify false positives