Start Date
Immediate
Expiry Date
21 Jan, 24
Salary
0.0
Posted On
23 Oct, 23
Experience
1 year(s) or above
Remote Job
No
Telecommute
No
Sponsor Visa
No
Skills
Knowledge Base, Kubernetes, Soar, Incident Response, Digital Forensics, Incident Handling
Industry
Information Technology/IT
SERVICE DESCRIPTION:
For the information security platform to be built in the overall project, SOAR functionality will be built as one component. This comprises the following three components:
o Integration of solutions
o Modelling and playback of workflows for automation
o Management of playbooks
o Security Case and Incident Management
o Definition of task steps
o Knowledge base for security incidents
o Threat Intel Aggregation, distribution and remediation of resulting threats
o Enrichment of alerts
o Visualization and structuring of Threat Intel
In order to map the functionality, various technical components are required.
A decision on the products to be used is made by the AG. However, according to the current state of knowledge, none of the solutions discussed supports all the necessary functionality. Therefore, the selected solution must be further developed as a basis for further action.
QUALIFICATION REQUIREMENTS:
EXPERIENCE REQUIREMENTS:
TASKS:
o The CO creates a concept for an external SOAR UI that can be used by different roles from different services.