۱ ساعت پیش

استخدام SOC Team Lead برای دیجی کالا در تهران
دیجی کالا

استخدام SOC Team Lead برای دیجی کالا در تهران

دیجی کالا
تهران
اطلاعات تماس

حضوری
مقطع تحصیلی اعلام نشده
سابقه دارد (۵ تا ۹ سال)
حقوق توافقی
آقا و خانم
تمام وقت

مشاهده اطلاعات تماس
اطلاعات بیشتر
امروز

دیجی کالا در تهران (محدوده ونک) جهت تکمیل کادر خود به افراد واجد شرایط ذیل نیازمند است.

Description job title
Overview:
The SOC Team Lead leads an engineering-driven Security Operations function covering detection, threat hunting, investigation, incident response, forensics, automation, and security platforms.
This role develops a team of SOC Engineers and modernizes SOC capabilities through improved telemetry, integrated security tools, engineering practices, and AI-enabled workflows.
Responsibilities:
Define and execute the SOC strategy, architecture, operating model, and modernization roadmap.
Lead and develop SOC Engineers across detection, hunting, investigation, response, forensics, automation, and platform operations.
Lead complex incidents and coordinate investigation, containment, remediation, forensic analysis, and post-incident improvements.
Develop and continuously validate detection rules, hunting content, playbooks, and response workflows.
Improve security visibility across endpoints, networks, identities, applications, cloud environments, and infrastructure.
Own and integrate SIEM, SOAR, EDR/XDR, NDR, DLP, PAM, vulnerability management, and security platforms.
Automate enrichment, triage, investigation, hunting, response, and reporting using scripts, APIs, SOAR, and specialized AI agents with appropriate human oversight.
Define and track detection coverage, investigation quality, response time, automation effectiveness, and security-tool health.
Collaborate with OffSec, IT, infrastructure, cloud, DevOps, risk and compliance teams.
Communicate incidents, capability gaps, risks, and improvement priorities to senior management.
Requirements:
7+ years of experience in security operations, detection engineering, incident response, threat hunting, forensics, or security engineering.
Proven experience leading multidisciplinary security engineers and technical initiatives.
Deep hands-on experience with SIEM platforms, particularly Splunk Enterprise Security.
Strong knowledge of security telemetry, detection engineering, investigation, threat hunting, incident response, and digital forensics.
Practical experience with major SOC technologies, including EDR/XDR, NDR, SOAR, DLP, PAM, IAM, vulnerability management, and cloud security tools.
Experience integrating and automating security platforms using APIs and scripting, preferably Python or PowerShell.
Strong knowledge of MITRE ATT&CK, network security, identity threats, and cloud security.
Strong leadership, systems thinking, technical decision-making, and stakeholder communication skills.
Preferred Certifications:
CISSP, CISM, GCFA, GCIH, GCIA, Splunk Enterprise Certified Architect, or equivalent practical qualifications.
SOC Team Lead

 متقاضیان واجد شرایط می توانند با کلیک روی لینک تکمیل فرم استخدام، رزومه خود را ارسال نمایند.

اطلاعات تماس
گزارش مشکل آگهی
https://iranestekhdam.ir/?p=3121612
ابتدای صفحه
مختصری درباره ایران استخدام

سایت ایران استخدام در تاریخ ۱۳۹۱/۱/۱۰ راه اندازی شد و با تلاش گروهی و روزانه مدیران و نویسندگان خود در جهت تبدیل شدن به مرجع بروز آگهی های استخدامی گام برداشت. سعی همیشگی همکاران ما ارائه مطلوب و با کیفیت آگهی های استخدامی خدمت بازدیدکنندگان محترم این سایت بوده است. ایران استخدام به صورت مستقل و خصوصی اداره می شود و وابسته به هیچ نهاد و یا سازمان دولتی نمی باشد، این سایت تنها منتشر کننده ی آگهی های استخدامی بوده و بنابراین لازم است که بازدید کنندگان محترم سایت خود نسبت به صحت و سقم اخبار منتشر شده در آن هوشیار باشند.

نماد اعتماد الکترونیکی
ارسال رزومه