Project Role: Security Analyst
Project Role Description
Security threat analysis and investigation skills, Training and Documentation
Key Responsibilities
- Work as part of a global security analysis team that works 24/7 on rotational shift
- Handling tunings, customer requests, escalations, reporting, training, etc.
- Life cycle management of the SIEM (Onboarding, Break-fix, Patching, Live update etc)
- Adhering to SOPs and notify customers on log flow/log format issues
- Incident analysis, deep dive threat hunting and investigation and root cause analysis
- Evaluation of client detection requirements, gap analysis, fine tuning
- Document best practices and writing KB articles
- Identify opportunities for process improvements
,
Must have skills
- Network fundamentals Security threat analysis and EDR investigation skills, knowledge on rules and playbooks
Good to have skills
- Network Security (Firewall, IDS/IPS, Endpoint AV, EDR etc.), scripting
Technical Experience
- Experience in SOC Operations with customer-facing responsibilities
- Deep understanding on cyber security fundamentals, security devices, network defense concepts and threat landscape
- Hands-on experience in SIEM, SOAR, EDR and threat hunting tools
- Desirable knowledge in any scripting language and EDR products
- Strong threat hunting and investigation skills and root cause analysis
- Knowledge on networking and security concepts
- Knowledge with security devices such as Firewall, DS/IPS, EDR, UTM, Proxy, Cloud solutions, etc.
- Knowledge on log collection mechanisms such as Syslog, Log file, DB & API
- Preferable certifications GCIA
Professional Attributes
- Passion for cyber security, learning, and knowledge sharing
- Strong Verbal & written communication skills
- Proven customer service skills, problem solving and interpersonal skills
- Ability to handle high pressure situations
- Consistently exhibit high levels of teamwork
Educational Qualification
- Bachelor's Degree in computer science, prior experience in information security or SOC operations
Additional Information
- Following certifications is added advantage: GCIA, GCFA, CISSP