IT&Data Sr. Product Analyst CERT Asia
IT&Data Sr. Product Analyst CERT Asia
Infosys LimitedFresher
- Posted 18 hours ago
- Be among the first 10 applicants
Job Description
Job Description:
- The SOC Product Analyst is responsible for advanced investigation validation and response to cybersecurity incidents
- The role performs in depth analysis of alerts generated by security monitoring platforms and business stakeholders conducts incident investigations supports containment and remediation activities and contributes to the continuous improvement of detection capabilities
- The analyst acts as the technical interface between Detection Engineering Incident Response Threat Hunting and Security Platform teams to improve the effectiveness scalability and reliability of security monitoring and response capabilities
- The role drives continuous enhancement of detection content telemetry coverage response automation investigation workflows and SOC platform effectiveness through engineering focused analysis and prioritization
- Additionally the analyst supports cybersecurity product and platform enhancements by gathering operational requirements identifying improvement opportunities defining use cases and contributing to the continuous evolution of SOC capabilities
- Working Hours
- The SOC analyst team operates within a global security monitoring model to ensure continuous incident detection and response coverage
- Participation in rotational shifts covering weekdays and weekends
- Support multiple geographic regions and time zones
- Participate in a global 24x7 security operations model
- Availability for incident response escalations and critical security events as required
Key Responsibilities:
- Key Responsibilities
- Investigate security alerts from security tools and business stakeholders
- Perform triage qualification and analysis of potential security incidents
- Validate incidents and determine severity impact and scope
- Lead investigations involving endpoint network cloud identity and application telemetry
- Coordinate containment and remediation activities with IT and business teams
- Maintain detection standards operational procedures and knowledge management repositories
- Identify areas for improvement and recommend enhancements to security products and monitoring capabilities
- Support continuous improvement of SOC tools detection use cases automation workflows and response processes
- Collaborate with Detection Engineering teams to improve detection coverage and reduce false positives
- Support platform enhancement initiatives by documenting requirements evaluating solutions and tracking implementation progress
- Develop operational metrics dashboards and reports to measure security operations effectiveness
- Ensure continuous security monitoring and incident response coverage within a global operating model
- Collaborate with Product Owners Cybersecurity teams IT teams and business stakeholders
- Required Skills Competencies Must Have
- Strong knowledge of SOC operations incident detection investigation and response
- Hands on experience with
- o SIEM Sekoia
- io
- o EDR XDR SentinelOne
- o SOAR Palo Alto Cortex XSOAR
- o Email Security Proofpoint
- Experience investigating endpoint network cloud identity and email security threats
- Strong understanding of threat detection methodologies and incident response processes
- Expertise in security monitoring log analysis and cybersecurity operations
- Strong stakeholder management communication and collaboration skills
- Analytical thinking reporting and problem solving capabilities
- Good knowledge of networking concepts and security technologies
- Required Skills Competencies Good to Have
- MITRE ATT CK Framework
- Threat Hunting
- ServiceNow and Jira
- Cloud Security Monitoring
- Scripting and Automation
- Product Ownership and Agile Delivery Practices
- Vulnerability Management
- Detection Engineering concepts and use case development
Technical Requirements:
- Experience Qualifications
- Total Experience 5 8 years
- Relevant Experience 3 5 years in one or more of the following areas
- SOC Operations
- Security Monitoring
- Incident Response
- Detection Engineering
- Security Tool Administration
- Cybersecurity Product Management
- Education Bachelor s Degree in Cybersecurity Computer Science Information Technology or a related field
- Preferred Certifications
- Microsoft SC 200
- GCIH
- Security
- GCFA
- ITIL
- CSPO
- Other relevant cybersecurity or product management certifications
Preferred Skills:
SOC,Technology->Infrastructure Security->Security Incident and Event Management (SIEM)->IBM Qradar,Technology->Infrastructure Security->Threat Hunting,Technology->Security Operations->SOARMore Info
Key Skills
Detection Engineering concepts
SIEM Sekoia
Cloud Security Monitoring
Scripting and Automation
SOAR Palo Alto Cortex XSOAR
Email Security Proofpoint
MITRE ATT CK Framework
EDR XDR SentinelOne
Agile Delivery Practices
