01 Zakres zadań
- Monitor and supervise security systems, including SIEM platforms, firewalls, IDS/IPS solutions, and other security monitoring tools
- Identify, classify, and investigate security incidents to determine root causes and potential impact
- Respond to cybersecurity incidents and coordinate incident management activities across relevant teams
- Implement corrective actions following incident investigations and recommend improvements to security infrastructure
- Prepare detailed reports regarding detected incidents, investigation findings, and remediation activities
- Develop, maintain, and update incident response procedures and security playbooks
- Participate in development and testing of Disaster Recovery Plans (DRP) and Business Continuity Plans (BCP)
- Support internal and external security audits
- Collaborate with infrastructure, system administration, and development teams to ensure effective incident resolution
- Contribute to continuous improvement initiatives related to cybersecurity operations and incident response processes
