The CISOC Engineer role is centered on the installation, configuration, deployment, administration, and troubleshooting of KCB Bank Group’s security monitoring solutions on a day-to-day basis across the Group. This role is crucial for ensuring the bank’s systems are defended against unauthorized access and that maximal return on investment is achieved from key security monitoring platforms.
Key Responsibilities
- Installing, configuring, deploying, administering, and troubleshooting the Bank’s security monitoring solutions on a day-to-day basis across the Group.
- Defending said systems against unauthorised access.
- Managing logical user access to the Cybersecurity Intelligence Security Operations Centre (CISOC) toolset.
- Keeping the CISOC toolset up to date as regards patches and hotfixes.
- Upgrading the CISOC toolset to take advantage of bugfixes and new features.
- Maximising the utilisation of the Bank’s Security Information and Event Management (SIEM), Database Activity Monitoring (DAM), and other security monitoring platforms to ensure maximal return on investment is realised.
- Researching on new technologies and the latest trends in security monitoring and cybersecurity incident response, and applying the findings to develop the strategic direction of the CISOC.
- Track metrics to track the operation of the CISOC’s toolset.
- Reporting on the usage of the CISOC’s toolset to management.
Minimum Position Qualification Requirements
Academic & Professional
Education:
- Bachelor’s Degree in Information Technology, Computer Science, Telecommunications, Engineering or a related field.
Professional Qualifications (Minimum 1 required):
- Certified Information Systems Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- Security+
- Any server/virtualisation/security platform administration certification
- Any SIEM platform certification
Experience:
- Total Minimum Number of Years of Experience Required: 3 years.
- Minimum 2 years experience in Security Tools Administration (SIEM, DAM, WAF, IDS/IPS, NDR, SOAR, etc.).
- Minimum 2 years experience in a complex technological environment.
- Minimum 1 year experience in the financial services industry.