07 oct
|
Excelia
|
Madrid
You work in the Security Operations Centre on a rotating shift, reviewing alerts raised by the monitoring tools. For each one you check the surrounding activity, decide whether it is a false positive or a genuine incident, and escal ... ??? What you will do
Triage alerts against the runbook and escal ... Write the timeline of what happened while it is still fresh Flag detections that fire constantly and are worth tuning What they ask for
Understands TCP/IP, DNS and HTTP well enough to read a packet capture Can explain the difference between a scan and an intrusion Writes clearly under time pressure Nice to have
Home lab Any SIEM exposure Scripting in Python or PowerShell
#J-18808-Ljbffr
📌 Analista SOC (Nivel 1) (Madrid)
🏢 Excelia
📍 Madrid