Manager - SOC Admin & Platform Engineer

1 week ago


Pune, Maharashtra, India Genpact Full time
Genpact (

NYSE:
G) is a global professional services and solutions firm delivering outcomes that shape the future.

Our 125,000+ people across 30+ countries are driven by our innate curiosity, entrepreneurial agility, and desire to create lasting value for clients.

Powered by our purpose – the relentless pursuit of a world that works better for people – we serve and transform leading enterprises, including the Fortune Global 500, with our deep business and industry knowledge, digital operations services, and expertise in data, technology, and AI.

Inviting applications for the role of Manager-SOC Admin & Platform Engineer

Genpact is seeking invitations for SOC Admin & Engineering role to support implementation, integration & management of SIEM, SOAR, EDR & other technologies within its environment.

The SOC Admin is an internal corporate role responsible for administration, management, configuration, testing and integration of SIEM, SOAR, EDR & other security platform solutions to improve the security value of the organization.

A working knowledge of SIEM & other security solutions with relevant experience is required.

Should have deeper understanding with some hands-on experience on other enterprise IT infra components such as advanced firewalls, IPS/IDS/WIPS/HIPS, routers/switches, TACACS, VPN, proxy, AV, domain controllers, DNS, DHCP, multi factor authentication, virtualization, Email systems/security, DLP etc.

along with cloud environments (AWS, Azure etc.).

Responsibilities

  • Align with internal & external needs, threat trends, and operational performance to identify opportunities for improvement/enhancement of the security operations center technologies and integrations.
  • Perform system administration for SIEM, SOAR, EDR and ancillary devices.
  • Develop, implement, and execute standard procedures for the administration, content management, change management, version/patch management, and lifecycle management of the SIEM/SOAR platforms.
  • Develop information security and incident response workflows, procedures and best practices and publish them as playbooks in SOAR platform.
  • On-board new log sources with log analysis and parsing to enable SIEM correlation.
  • Creates and develops correlation and detection rules within SIEM solution (IBM QRadar), reports and dashboards to detect emerging threats.
  • Manage, develop, and tune the scripts that integrate SIEM.
  • Collaborate with key stakeholders within technology, application, and cyber-Security to develop specific use cases to address specific business needs.
  • Collaborate with platform & application owners to define and establish logging standards to address various governance & security requirements.
  • Create technical documentation around the content deployed to the SIEM.
  • Provides technical support for forensics services to include evidence seizure, computer forensic analysis and data recovery, in support of computer crime investigation. Researches and maintains proficiency in open and closed source computer exploitation tools, attack techniques, procedures, and trends.
  • Performs research into emerging threat sources and develops threat profiles. Keep updated on latest cyber security threats.
  • Demonstrates strong evidence of analytical ability. Has a broad understanding of all stages of incident response.
  • Has a sound understanding of other technologies like PAM, CASB, EDR, Email Security, Secure Web gateway etc. and other threat detection platforms that form part of the broader SOC program.
  • Creation of reports, dashboards, metrics for SOC administration KPIs and presentation to senior management & other stakeholders.
  • Handling audit related activities with internal and external stakeholders to ensure compliance of policies, adherence of procedures, showcase evidence, and align the observation reports for process improvisations to achieve operational objectives.
  • Be prepared to provide a Technical Escalation Point during security incidents, establishing the extent of an attack, the business impacts, and advising on how best to contain the incident along with advice on systems hardening and mitigation measures to prevent a re-occurrence.
  • Has a systematic, disciplined, and analytical approach to problem solving with leadership skills.
  • Has basic knowledge of audit requirements (PCI, HIPPA, SOX, ISMS etc.)
Qualifications we seek in you
Minimum qualifications / Experience Requirements

  • Relevant years working within the information security field, with emphasis on security platform implementation & administration.
  • Bachelors (Graduation) or higher in Computer Science or equivalent.
  • Experience with QRadar (preferred) and/or other platforms SIEM systems like SPLUNK, ArcSight.
  • Experience with IBM Resilient (preferred) or equivalent SOAR technology like Demisto, Splunk, Service Now.

Technical Experience & Skills Required:

  • Excellent understanding and proven hands-on experience in SIEM concepts such as correlation, aggregation, normalization, and parsing.
  • Experience with deploying and managing a large SIEM deployment.
  • Excellent understanding of enterprise logging standards, with a focus on application logging
  • Advanced knowledge of content creation concepts and best practices
  • Excellent understanding of regular expressions, development of custom/flex Parsers
  • Strong knowledge of frameworks such as Cyber Kill Chain and Adversary Tactics, Techniques and Procedures.
  • Experience in Implementation and support of major SOAR platform (preferred – IBM Resilient) and developing playbooks for automation.
  • Expertise in writing QRadar searches, QRadar Infrastructure and content use case development, well-versed with IBM QRadar architecture and design
  • Experience in QRadar & Resilient Administration and analytics development on Information Security, Triage events, Incident Analysis.
  • Hands on exp with information security tools such as SIEMs, FW, IDS/IPS, EDR, Sandboxes, Vulnerability Management, etc.
  • Excellent Python and Unix Shell scripting skills
  • Understanding of events, related fields in log records and alerts reported by various data sources such as Windows/Unix systems, IDS/IPS, AV, HIDS/HIPS, WAFs, firewalls, and web proxies.
  • Excellent understanding of Cyber Security Operations, Incident Response processes.
  • Experience in using scripting languages to automate tasks and manipulate data. Programming experience is a plus.
  • Experience working in a large enterprise environment and integrating solutions in a multi-vendor environment.
Preferred qualifications

  • Security Certifications Preferred (Including but not limited to the following certifications):
  • Security+, CEH, OSCP, CISSP, CISM, GIAC GCIH.
  • Preferred product specialization certifications on QRadar (SIEM), Resilient (SOAR), Crowdstrike (EDR), Mimecast (Email Security)

  • SOC Analyst

    4 weeks ago


    Pune, Maharashtra, India timesjobs Full time

    SOC Analyst - Information Security Pune, MaharashtraExecutive and Admin Information Security /Full-time/ HybridWith unmatched technology and category-defining innovation, Icertis pushes the boundaries of whats possible with contract lifecycle management (CLM). The AI-powered, analyst-validated Icertis Contract Intelligence (ICI) platform turns contracts from...

  • SOC Analyst

    4 weeks ago


    Pune, Maharashtra, India timesjobs Full time

    SOC Analyst - Information Security Pune, MaharashtraExecutive and Admin Information Security /Full-time/ HybridWith unmatched technology and category-defining innovation, Icertis pushes the boundaries of whats possible with contract lifecycle management (CLM). The AI-powered, analyst-validated Icertis Contract Intelligence (ICI) platform turns contracts from...

  • SOC L3- Logrhythm

    1 week ago


    Pune, Maharashtra, India Atos Full time

    SOC L3- Logrhythm: Publication Date: Feb 8, 2024 RefNo:Location: Pune, MH, IN, 411062Role -SOC L3-LOGRHYTHMJob Location -PuneWork Experience - 7+ yearsMode of Hire: PermanentKey Skills:SOC AnalystResponsibilities / Technical skills:Profile RequirementsSOC L- Proposition of specific recommendations Investigate and solves security breaches and other cyber...

  • Admin Manager

    1 week ago


    Pune, Maharashtra, India Seven Consultancy Full time

    JOB DETAILS Keep front desk tidy and presentable with all necessary material (pens, forms, paper etc.)Greet and welcome guestsAnswer questions and address complaintsAnswer all incoming calls and redirect them or keep messagesReceive letters, packages etc. and distribute themPrepare outgoing mail by drafting correspondence, securing parcels etc.Check, sort...

  • SOC Analyst

    1 week ago


    Pune, Maharashtra, India Icertis Full time

    Who we are: Icertis is the go-to platform for companies looking to stay ahead of the game both now and in the future. Our core values - Fairness, Openness, Respect, Teamwork, and Execution (FORTE) - underpin our unwavering dedication to contract intelligence. We believe that the journey towards becoming the world's leading contract intelligence platform is...


  • Pune, Maharashtra, India Iron Systems Full time

    Date Posted: 8/15/2023Job Function: IT SupportLocation: Pune MH INDOffered Salary: CompetitiveIron Systems is an innovative, customer-focused provider of custom-built computing infrastructure platforms such as network servers, storage, OEM/ODM appliances & embedded systems. For more than 15 years, customer have trusted us for our innovative problem solving...

  • SOC Analyst

    1 week ago


    Pune, Maharashtra, India Icertis Full time

    With unmatched technology and category-defining innovation, Icertis pushes the boundaries of what's possible with contract lifecycle management (CLM). The AI-powered, analyst-validated Icertis Contract Intelligence (ICI) platform turns contracts from static documents into strategic advantage by structuring and connecting the critical contract information...

  • Databricks Admin

    1 week ago


    Pune, Maharashtra, India Persistent Systems Full time

    About PositionPersistent is looking for a Databricks Administrator who can manage Databricks infrastructure and collaborate with various teams to ensure it integrates seamlessly with all components including network, security, messaging, and remote access.Role:Databricks AdminLocation : All PSL LocationExperience : 6-8 yrsJob Type : FTEWhat You'll...


  • Pune, Maharashtra, India Gentrack Full time

    Purpose of the Role: PEO is responsible for the engineering and operations towards the platform (infrastructure) of Gentrack's core products Junifer and Velocity on a global scale.The team are based in the APAC and EMEA regions and work together as a logical group to develop, build, test, deploy, operate, and manage hosted solutions for our customers.In...


  • Pune, Maharashtra, India Securview Full time

    Role OverviewWe're searching for a Trainee Executive - NOC/SOC to assist our 24×7 managed security operations center.ResponsibilitiesUndergo training for 6 months to learn security monitoring concepts, primary analysis of the logs, network concepts, handling customer calls, etc. Assist our security engineers in their day-to-day functions, such as preparing...

  • Soc- L1

    1 week ago


    Pune, Maharashtra, India Futurism Full time

    ID: 310 | 2-5 yrs | Pune | careers- Monitoring SIEM and Ticketing tools sources Identifying and analyzing of security event and incident data by leveraging Orchestration tool workflows and knowledge base Updating the Ticketing system thoroughly and timely Communicating with stake holders for making sound recommendations on mitigation and or prevention...


  • Pune, Maharashtra, India Fujitsu Full time

    Job Summary: As a Security Operations Center (SOC) Manager, you will be responsible for leading and managing a team of security analysts, engineers, and incident responders. Lead incident response efforts, coordinating the teams actions during security incidents. Responsible for evaluating, implement, and maintain security tools and technologies used for...

  • Databricks Admin

    1 week ago


    Pune, Maharashtra, India Persistent Systems Full time

    About PositionPersistent is seeking a skilled Databricks Administrator to oversee the management of Databricks infrastructure, ensuring seamless integration with various teams and components such as network, security, messaging, and remote access.Role: Databricks Admin Location: All PSL LocationExperience: 6-8 yrsJob Type: FTEWhat You'll DoResolve Databricks...

  • Executive - Admin

    1 week ago


    Pune, Maharashtra, India Expleo Full time

    **Overview**:Executive Admin to handle Guest Management, Employee Transport Operations, Cafeteria and other admin activities. Experience around 4 to 5 years. Graduation.


  • Pune, Maharashtra, India Autodesk Full time

    Position OverviewWe are looking for an experienced Senior Software Engineer to join the AMP team, focusing on the design of our AI/ML serving platform within a hybrid cloud architecture. This important role involves architecting scalable, efficient systems for model serving and inference, ensuring seamless deployment and management across diverse...

  • Salesforce Admin

    1 week ago


    Pune, Maharashtra, India PERSOLKELLY India Full time

    Exp 9+ yearsLocation Pune Perform administration Salesforce instance and security settings. Key areas of support include user management: user setup/deactivations, roles, profiles, permissions, public group creation, etc Identify and diagnose end user problems in a timely fashion. Support tickets may relate to changes in both test and production environments...

  • Admin Executive

    1 week ago


    Pune, Maharashtra, India NielsenIQ Full time

    Company DescriptionAbout NielsenIQNielsenIQ is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action-Employer, making decisions without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability status, age, marital status,...


  • Pune, Maharashtra, India Manager Full time

    Business Services Team Overview Our Business Services team is a collective of creative, strategic, forward-thinking business enablers. Together the People & Culture, Marketing & Communications, IT, Operations, Finance and Quality & Risk Management teams make it their mission to ensure Forvis Mazars has the right tools, technology, strategies and services in...


  • Pune, Maharashtra, India Autodesk Full time

    Position OverviewWe are looking for an experienced Senior Software Engineer to join the AMP team, focusing on the design of our AI/ML serving platform within a hybrid cloud architecture. This important role involves architecting scalable, efficient systems for model serving and inference, ensuring seamless deployment and management across diverse...

  • Apigee Admin

    1 week ago


    Pune, Maharashtra, India Change Leader Full time

    Role - Apigee Hybrid Admin**Location: Hyderabad, Bangalore ,Pune ,Mumbai ,Kolkata ,ChennaiExperience: 7 to12 YearsProficient with Apigee API Management Platform installation and administration Proficient in Installation of Apigee Hybrid Configuration of Apigee Hybrid Knowledge of Unix and shell scripting Understanding of GCP services GCP projects, GCP IAM...