The role focuses on designing automated solutions and tuning SIEM detection content to enhance the efficiency of the Security Operations Center
Job Summary
The role focuses on designing automated solutions and tuning SIEM detection content to enhance the efficiency of the Security Operations Center.
Nordic is a best-in-class IT services firm solely serving the healthcare industry, empowering providers to leverage technology for digital transformation.
Candidates must possess advanced knowledge of cybersecurity incident response automation and skills in threat hunting and analysis.
Matching Summary
The role focuses on designing automated solutions and tuning SIEM detection content to enhance the efficiency of the Security Operations Center.
Skills & Requirements
Must-have
Microsoft Sentinel KQL detection engineering
Python PowerShell Bash scripting for automation
SOC incident response and threat hunting
SOAR playbook development and orchestration
PCI-DSS HIPAA compliance documentation
Nice-to-have
Experience in large healthcare organizations
Knowledge of Microsoft Defender suite integration
Familiarity with ServiceNow and SharePoint
Strong interpersonal and communication skills
Experience with MITRE ATT&CK framework mapping
Key Requirements
Bachelor's degree and 8 years of related experience
Master's degree and 6 years of related experience
11 years of experience without a degree
On-call duty rotation required 24/7
Preferred certifications: CISSP, CEH, SANS GCIH, SC-200