Bachelor's or Master's degree in a technical field;
Minimum of 5 years of experience in Security Operations / SOC;
Understanding of various types of cyber attacks (phishing, ransomware, brute force, DDoS, insider threat);
Advanced knowledge of network protocols (TCP/IP, DNS, HTTP/S, SMTP, VPN);
Knowledge of Linux and Windows operating systems from a security perspective;
Understanding of Active Directory security;
Advanced practical knowledge of the IBM QRadar SIEM platform;
Experience in setting up rules for detecting malicious events;
Experience working with SOAR solutions;
Experience in designing and implementing SOAR playbooks;
Experience in automating incident response processes;
Professional knowledge of English (technical documentation, communication with vendors and teams).