Senior IT Security Operation
Summary
Senior IT Security Operations role defending enterprise infrastructure—configuring firewalls/EDR/VPN, leading Tier-2/3 SIEM investigations, enforcing IAM/PAM/MFA controls, and managing vulnerability scans and patching. Requires 6+ years across Windows/Linux and Azure/AWS environments with ISO 27001/NCA-ECC compliance.
Key responsibilities
Infrastructure & network defense: Configure, manage, and audit enterprise firewalls, VPNs, Endpoint Detection and Response (EDR) agents, and web proxy controls.
Security monitoring & incident response: Lead Tier-2/Tier-3 security event investigations, analyze SIEM logs, and mitigate security incidents to limit operational downtime.
Identity & access governance: Enforce strict identity and access management (IAM) controls, privileged access management (PAM), multi-factor authentication, and role-based access policies.
Vulnerability & patch management: Direct routine infrastructure vulnerability scans, prioritize critical patching schedules with IT infrastructure teams, and verify system hardening.
Backup integrity & system audits: Ensure secure backup configurations, system disaster recovery readiness, and adherence to security standards (ITIL, ISO 27001, NCA-ECC).
Requirements
- Minimum 6+ years of hands-on experience in IT security administration, SOC engineering, or network security operations.
- Advanced proficiency with core security solutions including SIEM tools (Splunk, QRadar, Sentinel), EDR platforms (CrowdStrike, Defender), and Next-Gen Firewalls (Palo Alto, Fortinet).
- Strong expertise in Identity & Access Management (Active Directory, Entra ID, PAM solutions), multi-factor authentication, and network access controls.
- Proven track record in threat detection, incident response, log analysis, and system hardening across Windows/Linux servers and cloud platforms (Azure/AWS).
- Hold at least one active industry certification such as CompTIA Security+, CISSP, CEH, CCSP, or ITIL4.