עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
Job Title: SOC Engineer
Location: Modiin-Maccabim-Reut (On-Site Only)
Position Type: Full-Time
About Us:
Join our dynamic xTriage SOC, where we specialize in proactive threat detection, investigation, and response. As a SOC Engineer, you will play a key role in safeguarding our organization by leveraging cutting-edge tools, including Microsoft Sentinel, Entra ID, and Defender XDR, to maintain and enhance our cybersecurity posture.
Responsibilities:
- Manage and maintain Microsoft Sentinel for log ingestion, correlation rule development, and incident management.
- Perform advanced incident detection, analysis, and response using Defender XDR and associated tools.
- Implement and monitor access controls, policies, and configurations in Entra ID to protect identities and manage authentication security.
- Develop and fine-tune analytics rules, playbooks, and automation workflows to enhance SOC efficiency.
- Conduct forensic investigations and root cause analysis for security incidents.
- Provide input into the design and continuous improvement of security monitoring processes and SOC capabilities.
- Collaborate with other teams to ensure seamless integration of security tools and incident response processes.
- Prepare detailed incident reports and metrics to support executive decision-making.
- Stay updated on the latest threats, vulnerabilities, and industry best practices.
Requirements:
- 3+ years of experience in a SOC or cybersecurity engineering role.
- Hands-on experience with Microsoft Sentinel, including KQL query writing, workbook creation, and rule tuning.
- Expertise in Entra ID (Azure AD) for identity protection and incident analysis.
- Proficiency in Defender XDR, with a deep understanding of its components (Defender for Endpoint, Defender for Office 365, Defender for Identity, etc.).
- Strong understanding of SIEM, SOAR, and EDR concepts.
- Knowledge of incident response frameworks, such as NIST, MITRE ATT&CK, or SANS.
- Familiarity with scripting (PowerShell, Python, or similar) to automate tasks and enhance security operations.
- Excellent problem-solving and communication skills.
What We Offer:
- A collaborative and innovative work environment.
- Opportunities for professional growth and training.
- Competitive compensation and benefits package.
- The chance to work with cutting-edge security technologies.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.