Incident Response
Tamkeen Technologies · Riyadh, Saudi Arabia
قدّم وتابع مع أبلاي إيدجJob Summary:The Cybersecurity Incident Response Specialist is responsible for detecting, investigating, analyzing, and responding to cybersecurity incidents. The role involves conducting forensic analysis, correlating security events, identifying threats and vulnerabilities, coordinating incident response activities, and supporting the organization in containing and resolving security incidents effectively.Key Responsibilities:Monitor and analyze cybersecurity alerts and network events from multiple sources to identify potential security incidents and determine their root causes.Track, investigate, and document cybersecurity incidents from initial detection through containment, remediation, and closure.Analyze logs and security data from multiple sources to identify potential threats, indicators of compromise (IOCs), and suspicious activities.Conduct incident analysis to determine the scope, severity, impact, and root cause of cybersecurity incidents.Perform digital forensic analysis and collect initial forensic evidence in accordance with applicable forensic investigation standards.Collect, preserve, and analyze indicators of compromise and other artifacts to support cybersecurity investigations.Correlate incident data and security events to identify vulnerabilities, attack patterns, and potential compromise.Prioritize incidents based on severity, scope, business impact, and potential security risks, and provide recommendations for timely remediation.Coordinate incident response activities with SOC, Threat Intelligence, Cybersecurity, IT, and other relevant teams.Monitor external threat intelligence sources to maintain an up-to-date understanding of emerging cyber threats that may impact the organization.Collaborate with Cyber Threat Intelligence analysts to identify attack patterns, root causes, and relationships between security incidents.