Istanbul, Istanbul, Türkiye
Focused; SIEM, SOC, SOAR, Vulnerability Management and Incident Detection
Key responsibilities; -Lead Security incident management and monitoring team. -Manage daily operations, keep SOC structure up and running. -Developt content for SOC team on SIEM, EDR and SOAR platforms. -Be a part of incident response process and help to investigate security related system anomalies to tier 1 as tier 3. -Support information security awarenes program and build social engineering tests. Evaluation, implementation and administration of following technologies; -Security Information and Event Management(SIEM) -Database Activity Monitoring(DAM) -Security Orchestration, Automation and Response(SOAR) -User Behavior Analytics(UBA) -Endpoint Detection and Response(EDR) -Data Leakage Prevention(DLP) -Data Classifications -Vulnerability Management -Other Technologies like deception, threat intelligence, social engineering, bigdata platforms like vertica and hadoop
Key responsibilities; -Lead Security incident management and monitoring team. -Manage daily operations, keep SOC structure up and running. -Developt content for SOC team on SIEM, EDR and SOAR platforms. -Be a part of incident response process and help to investigate security related system anomalies to tier 1 as tier 3. -Support information security awarenes program and build social engineering tests. Evaluation, implementation and administration of following technologies; -Security Information and Event Management(SIEM) -Database Activity Monitoring(DAM) -Security Orchestration, Automation and Response(SOAR) -Endpoint Detection and Response(EDR) -Data Leakage Prevention(DLP) -Vulnerability Management -Other Technologies like deception, threat intelligence, social engineering, bigdata platforms like vertica and hadoop
• Manage and maintane SOC structure, help to analyze and investigate security related information system anomalies to tier 1 analyst as tier 2. • Improve and create security based use cases on SOC structure. • Manage and maintane "Log Management(SIEM)" structure(ArcSight ESM and Logger) and big data products(Hadoop and Vertica) • Manage and maintane "Database Activity Monitoring" structure with Imperva SecureSphere, keeping that structure up. • Manage and maintane "Data Leakage Prevention(DLP)" structure with Forcepoint DLP, keeping that structure up and running.
• A member of Security Incident Management and Monitoring team. I have gained experience in log management.