Security Operations Centre Specialist (SOC)
Company Description
We are SkillOnNet, leading the igaming entertainment by providing our customers with the most entertaining and trustworthy experience possible, while also reinventing the gambling industry. We are home to more than 30 well-known brands, including PlayOJO, DruckGluck, BacanaPlay, Genting, and many more. We are committed to long-term development and sustainability, and we are trying to revolutionise our industry for the benefit of our players, ourselves, and the entertainment industry as a whole.
Job Description
We are seeking a highly skilled and proactive Security Operations Centre Specialist (SOC) to manage and enhance the organisation's security monitoring, detection, and response capabilities. As a successful candidate you will be responsible for the day-to-day operation, administration, and optimization of SIEM and EDR platforms, proactive threat hunting, security event monitoring, incident investigation, and continuous improvement of detection capabilities.
You will possess hands-on experience in configuring and managing security monitoring tools, developing correlation rules and detection use cases, implementing automated response and blocking mechanisms, reviewing security logs, and ensuring security operations align with regulatory and compliance requirements, including ISO 27001 and PCI DSS.
Responsibilities include:
Monitor SIEM tools for alerts, incidents, and anomalies in real-time.
Triage, investigate, and respond to security incidents following established playbooks.
Correlate data across systems to identify potential threats or breaches.
Create and maintain incident reports and dashboards.
Create, review and improve incident playbooks.
Conduct proactive threat hunting based on threat intelligence and hypotheses.
Analyze endpoint, network, and log data to detect stealthy or advanced threats.
Develop detection rules and logic for SIEM, EDR, and other monitoring tools.
Maintain threat intelligence feeds and indicators of compromise (IOCs).
Perform internal and external penetration tests on networks, applications, and systems.
Simulate real-world attack scenarios to identify vulnerabilities and misconfigurations.
Provide detailed technical reports and recommendations for remediation.
Maintain proficiency with common offensive tools and frameworks (e.g., Metasploit, Cobalt Strike, Burp Suite).
Monitor, investigate, and respond to security alerts and incidents generated by SIEM, EDR, and other security technologies.
Administer, manage, and optimize SIEM and EDR platform.
Perform continuous security event monitoring and analysis.
Triage, investigate, contain, eradicate, and support recovery activities for security incidents.
Analyse security events and identify indicators of compromise (IOCs) and suspicious activities.
Participate in incident response activities, root cause analysis, and post-incident reviews.
Produce incident reports, dashboards, metrics, and executive summaries.
Configure and onboard log sources from servers, endpoints, network devices, cloud services, and security solutions.
Develop, tune, and maintain detection use cases and correlation rules.
Ensure log collection, retention, integrity, and availability requirements are met.
Conduct endpoint investigations and forensic analysis where required.
Monitor endpoint security posture and identify suspicious activities.
Conduct proactive threat hunting activities using endpoint, network, and log data.
Review and analyse logs from security and infrastructure systems.
What we are looking for:
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience).
Minimum 3-5 years of experience in Security Operations, SOC, Incident Response, Threat Hunting, or Security Monitoring roles.
Hands-on experience managing SIEM platforms.
Hands-on experience managing EDR solutions.
Strong understanding of log analysis, threat detection methodologies, and incident response processes.
Familiarity with ISO 27001 and PCI DSS security monitoring requirements.
Experience with scripting and automation (PowerShell, Python, KQL, SPL, etc.) will be considered an advantage.
Strong analytical and investigative mindset.
Excellent troubleshooting and problem-solving abilities.
Ability to work independently and manage multiple priorities.
Strong written and verbal communication skills.
Ability to communicate technical findings to both technical and non-technical stakeholders.
Attention to detail and commitment to continuous improvement.
Collaborates well with colleagues and contributes to a positive team environment.
Shares knowledge and resources, supports and helps team members.
What's in it for YOU?
Excellent work environment
Monetary vouchers on Birthdays and other special occasion
Fully equipped kitchen and in-house entertaining space
Eligibility to enrol in Company's medical insurance plan
Eligibility to enrol in Company's pension plan
Exciting company activities including monthly lunches, corporate gatherings, an intercompany football team, competitions, and many other activities
Casual dress code
A chance to advance professionally inside one of the world's largest iGaming organisations
What Life at SkillOnNet is like!
SkillOnNet is a firm believer in putting people first and our “family oriented” multinational culture is what drives us. We care and focus on our staff and ensure that you are provided with the most relevant and valuable tools, privileges and amenities.
- Department
- Product Cyprus
- Role
- Security Operations Centre Specialist (SOC)
- Locations
- Limassol, Cyprus
About SkillOnNet
How it all started
Founded in 2005, we have steadily grown both our product portfolio and our reputation, having developed and delivered cutting-edge casino software for numerous successful online casino brands.