SOC Use Case Specialist
Fortinet
- Burnaby, BC
- $94,000-127,000 per year
- Permanent
- Full-time
- Strong understanding of threat detection technologies such as Next-Gen Firewalls, endpoint protection and EDR solutions. Experience with Fortinet products such as FortiGate, FortiClient and FortiEDR is a bonus.
- Good understanding of common security log sources across different Operating systems, common services and security devices. Experience with Fortinet product logs is a bonus.
- Develop SOC monitoring use cases based on detection technologies, available data sources and applicable threats vectors across both IT and OT.
- Implement and test SOC monitoring use cases using security tools and technologies such as SIEM and SOAR from development to PoC, Staging and production stages. Experience with Fortinet SecOps products such as FortiAnalyer, FortiSIEM and FortiSOAR is a bonus.
- Experience with DB query languages such as SQL and scripting languages such as Python, Bash, Powershell to retrieve, analyze and visualize security data in different SOC reports.
- Good understanding of cybersecurity frameworks such as MITRE and its tactics and techniques including ICS domain to organize SOC use case development work and gap analysis.
- Collaborating with cross-functional teams, including SOC teams to ensure SOC monitoring use cases are implemented and maintained well. Furthermore provide guidance and expertise to operation teams on triage and response steps.
- Keeping up-to-date with industry trends and developments in cybersecurity and continuously improving the security operations center to meet changing security needs.