Higher or high professional degree in a technical field;
Minimum of 5 years of experience in the field of Security Operations / SOC;
Understanding of various types of cyber attacks (phishing, ransomware, brute force, DDoS, insider threat);
Advanced knowledge of network protocols (TCP/IP, DNS, HTTP/S, SMTP, VPN);
Knowledge of Linux and Windows operating systems from a security perspective;
Understanding of Active Directory security;
Advanced practical knowledge of the IBM QRadar SIEM platform;
Experience in configuring rules for detecting malicious events;
Experience working with SOAR solutions;
Experience in the design and implementation of SOAR playbooks;
Experience in automating incident response processes;
Professional knowledge of the English language (technical documentation, communication with vendors and teams).