Role Purpose(s)
This individual will perform the role of level 2 security analyst in a 24x7 Security Operations Center responsible for monitoring the environment for potentiaJob Responsibilities & Duties
- 2+ Years Experience in NOC.
- Looking Only Immediate Joiner.
- Location: Bangalore
- Using security tools, perform monitoring and analysis of security events of interest to detect security risks and threats.
- Create incidents and support the investigation of such incidents to not only mitigate the current threat but also prevent future occurrence.
- Conduct hunts (specialized searches) for evidence of compromise
- Tracking suspicious network, application, and user behavior
- Recommend and create SIEM rules.
- Investigating breaches, gathering evidence, and analyzing data
- Document all actions taken as part of incident investigation.
- Work closely with other teams to support the incident management process.
- Provide tuning and filtering recommendations to engineering team.
- Conduct investigation upon requests for data by the customer and/or other teams.
- Assist with the identification, creation and refinement of the team's processes and procedures.
- Stay abreast of current threats and vulnerabilities, particularly those that may directly impact the customer.
- Support and guide Junior analysts and engineers on investigation as required
Key Job Competencies
- Good analytical Skills
- Result oriented
- Good communication skills
- Teamwork
Education Requirements
- Bachelor's degree or equivalent experience in a related field with 3 working years experience
- GCIA, GCIH or equivalent
Working Experience Requirements
- Bachelor's degree or equivalent experience in a related field with 3 working years experience
Skills Required
- Prior experience in an operations environment as a security analyst
- Highly independent with robust analytical skills
- Familiar with MITRE Attack Framework
- Incident Response Experience with Remediation
- Basic OS and SIEM administration experiences
- Programming language : KQL, Regex