🔸 SIEM alert triage and investigation using Splunk/Sentinel/QRadar, incident response coordination aligned to NIST SP 800-61, threat intelligence reporting to CISO and risk committees.
🔸Perform SIEM alert triage & investigation (Splunk/Sentinel/QRadar); coordinate incident response (per NIST SP 800-61 best practices); generate threat intelligence reports for CISO and risk committees.
🔸This role focuses on monitoring the bank’s security environment to identify potential cyber threats, reviewing and prioritizing security alerts, and coordinating response actions when incidents occur.
🔸The specialist works with security monitoring tools, follows established incident-handling practices, and prepares clear summaries of threats and trends to support security leadership and risk discussions.
🔸 Vendors should propose candidates with hands-on SOC experience, strong analytical skills, and the ability to communicate findings clearly.
Certification
📌 GIAC Certified Intrusion Analyst (GCIA), Certified Ethical Hacker (CEH), Security+ CE