Jobiglo

لا توجد نتائج.

افتح هذا الملف الشخصي

سجّل مجانًا كصاحب عمل لعرض السيرة الذاتية الكاملة وبيانات الاتصال والتواصل مع المرشح.

?

2 سنوات خبرة

المهارات

SIEM (LogRhythm, Exabeam, Splunk, QRadar, ELK) EDR (CrowdStrike Falcon, Cybereason, SentinelOne) SOAR (Cortex XSOAR, IBM Resilient) XDR (Cortex XDR) Threat Hunting Digital Forensics & Incident Response (DFIR) Python scripting Ansible automation BASH scripting MITRE ATT&CK framework Cyber Threat Intelligence (MISP, Recorded Future) Vulnerability Assessment (Tenable, Nessus) Phishing analysis (ProofPoint, Fortimail) Incident response playbooks Security operations (24/7 Follow‑the‑Sun)

الخبرة

SOC Analyst – EDR, SIEM & Incident Response

WAFA ASSURANCE

2025-04 -

Administered EDR platforms, performed endpoint investigations, threat hunting and forensic analysis. Executed incident response actions such as remote shell, quarantine and process termination to contain threats. Developed and optimized detection rules, managed policies and designed SIEM use cases using IOC‑based and behavioral logic. Automated workflows between EDR, SIEM and CTI tools with Python and Ansible, significantly reducing manual investigation steps. Produced detailed investigation reports, playbooks and documentation to support SOC operations.

Proven Cyber Security Analyst - SOC Analyst L2

THALES

2023-03 - 2025-04

Triaged and resolved SIEM incidents via Cortex XSOAR, consistently meeting SLA thresholds across 24/7 shift rotations for major European and African clients. Prioritized incidents based on severity, ensuring timely resolution and operational efficiency. Developed and maintained incident response playbooks and procedures, mentoring L1 analysts to reduce false‑positive escalations. Collaborated with internal and external stakeholders to improve security posture, supporting clients in aeronautics, telecom and energy sectors.

SOC Analyst L1

THALES

2022-08 - 2023-03

Monitored security alerts and events using SIEM tools, escalating incidents as necessary. Performed initial triage and analysis of security incidents, distinguishing false positives from real threats. Assisted in incident investigations by gathering evidence and documenting findings. Supported the SOC team in a 24/7 Follow‑the‑Sun environment, contributing to the overall security monitoring of European and African clients.

اللغات

Arabic

native

French

fluent

English

intermediate

تواصل مع المرشح

آخر تحديث: منذ 9 ساعات