Specialist, SOC (Service Delivery)
Entity: Aga Khan University
Location: Karachi
Introduction to the Aga Khan University:
The Aga Khan University is a private, international university committed to international standards of excellence in teaching, research and service. Its teaching hospital, the Aga Khan University Hospital has been accredited by the prestigious Joint Commission International for achieving the highest international healthcare standards.
As an equal opportunity employer, AKU believes in promoting a diverse and inclusive culture and is committed to adopt appropriate standards for safeguarding and promoting a respectful relationship with and between diverse workforce of its faculty, staff, trainees, volunteers, beneficiaries, wider communities, and other stakeholders with whom it works, including children and vulnerable adults and expects all employees/trainees and partners to share this commitment.
Job Role / Responsibilities:
Reporting to the Manager, Information Technology, you are expected to be a highly motivated and energetic individual to support our Security Operations Centre (SOC). This role thrives in the delivery of consistently high level of services to monitor multiple feeds in a 24/7 environment to immediately detect, verify, and respond swiftly to cyber treats, e.g. vulnerability exploitation, malware, cyber-attacks, etc. The incumbent will extensively monitor the global ICT infrastructure of the institution through various tools like SIEM, EDR, Azure ATP, next generation firewall etc.
You will also require carrying host forensics, network forensics, log analysis, and malware triage in support of incident response investigations.
You will be working collaboratively with multiple teams including Systems, Networks, managed SOC, etc. You will serve as an SME within the ICT Service Delivery to hunt and mitigate cyber threat hunters, threat intelligence analysis, and implement and continuously improve technology and process to enhance SOC monitoring, investigation, and response capabilities.
You must be experienced with NIDS/HIPS/EDR infrastructure & tools, protocol analysis and tools. You must have extensive working knowledge of Windows and Linux, malware operation and indicators, networking fundamentals (TCP/IP, network layers, Ethernet, ARP, etc.), Firewalls, current cyber threat landscape (e.g. threat actors, APT, cybercrime, etc.), Data Loss Prevention monitoring, penetration techniques, and DDoS mitigation techniques. Establish standard policies, prepares support documentation, and provides training to team members. This person will respond to service request and request fulfilment on a regular basis while managing project concurrently.
Specifically, you will be responsible to;
Eligibility Criteria / Requirements:
Comprehensive employment reference checks will be conducted.