Job Description
Infrastructure Security Analyst is responsible for protecting client's technological foundations—networks, servers, storage, cloud, and endpoints—against cyber threats, vulnerabilities, and unauthorized access. They act as a defensive barrier by combining real-time monitoring, vulnerability management, and incident response to ensure system integrity and availability using frameworks such as ITIL and SOC/ SIEM/ XDR tools.
In this role, he/ she will be responsible for:
• To continuously analyze logs and network traffic using SIEM (Security Information and Event Management) tools Management) to detect abnormal behavior.
• Regularly scan the infrastructure (servers, databases, firewalls) to identify security vulnerabilities, configuration errors or outdated software.
• To study attackers' methods in order to anticipate new threats and improve detection capabilities.
• Manage the configuration and maintain security tools (firewalls, IDS/ IPS, VPN, EDR, protection of terminals).
• To implement access management rules, SSO and multi-factor authentication (MFA).
• To apply secure configurations on servers (Windows/ Linux) and virtualized or Cloud environments (AWS, Azure, Kubernetes).
• To implement encryption solutions to protect data at rest and in transit
• In the event of an incident, investigate, isolate compromised systems, collect digital evidence, and take appropriate action remediation (containment, eradication).
• Participate in the development and testing of Disaster Recovery Plans and business continuity plans activity
• To conduct internal penetration tests and audits to assess the robustness of the infrastructure.
• Ensure that the infrastructure complies with standards (ISO 27001, CyFun).
• To prepare detailed reports on the security level, incidents that occurred, and recommended corrective actions for the management
Technical Skills (Expert - +10 years,Advanced- 7 to 9 years Intermediate - 4-6 years,Beginner - 1 to 3 years)
Network security - +10 years
SIEM - +10 years
Hardening of Operating Systems - 7 to 9 years
Vulnerability Management (CVE) - 7 to 9 years