Lead SIEM Analyst
2 weeks ago
Overview:
- We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor’s “Best Places To Work India 2023”
Scope:
- Lead SIEM analyst administer Plan, design, implement, monitor, Manage QRadar SIEM Tool that protect an organization’s computer systems and data.
- The Enterprise Security team currently comprises of 30+ members and is expected to grow rapidly. The incumbent will need to have leadership qualities also to mentor junior security associates in our team.
Technical Environment:
- Software: CEH. Strong Administration knowledge on QRadar, Endpoint Security, Web and Email and Cloud Security Products
- Application Architecture : Enterprise Information Security -SOC
What you’ll do:
- End to End Management of SIEM (QRadar) and Splunk technology
- Setup and configure new QRadar tools and configure policies
- Data source integration
- SIEM administration
- Parser development
- Content development
- Use case development
- Report, and Dashboard configuration
- Engage in Security incident life cycle phases
- Develop the playbook for defined use cases for SOC analyst
- Rule Creation, Building block creation and fine tuning
- For all the about products candidate is responsible for
- Product Upgrades
- Act as POC for all product issues
- Vendor Co-ordination
- Co-ordinate with Stakeholder to troubleshoot any product related issues
- Prepare SOPs, Ensure SLA is met
- Provide Weekly and Monthly Metrics to the management
- Lead new projects independently
What are we looking for:
- 6 to 10 years of experience on SIEM tool IBM QRadar and Splunk.
- IBM QRadar SIEM administration and implementation
- Strong skill set in Parser development for unsupported log sources/Custom log source integration
- Log source integration with SIEM
- IBM QRadar UBA administration
- Candidate with Splunk ES experience will have additional advantage.
- Ability to multitask and work independently with minimal direction and maximum accountability
- Must be proficient in scripting language PowerShell or Python
- Intimate familiarity with Linux and windows platform and its command line utilities
- Ability to reach to high pressure and challenging environment
- Excellent customer service including strong written and oral communication skills
- Bachelor’s degree in Information Security/Systems or related inLogdustry experience
- Certifications such as IBM Certified Associate Administration and/or IBM Certified Deployment Professional
Good to have:
- Performs detailed analysis of alerts and potential threats
- Performs daily detect & response functions, working closely with SOC functions
- Maintains and documents the security control procedure, SOP & Play-book
- Participates in Forensic investigations and computer security incident response.
- Leverages internal and external resource to research threats, vulnerabilities and intelligence on various attack vectors and attack infrastructure
- Strong knowledge on ITIL processes like Incident, Problem & Change Management. ITIL V3 Foundation certification will be given preference
-
Lead SIEM Analyst
2 weeks ago
Bengaluru, India Blue Yonder Full timeOverview:- We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor’s “Best Places To Work India 2023”Scope:- Lead SIEM analyst administer Plan, design, implement, monitor, Manage QRadar SIEM Tool that protect an organization’s computer systems and data.- The Enterprise Security team currently comprises...
-
Lead SIEM Analyst
2 weeks ago
Bengaluru, India Blue Yonder Full timeOverview:We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor’s “Best Places To Work India 2023”Scope:Lead SIEM analyst administer Plan, design, implement, monitor, Manage QRadar SIEM Tool that protect an organization’s computer systems and data.The Enterprise Security team currently comprises of 30+...
-
Lead SIEM Analyst
2 weeks ago
Bengaluru, India Blue Yonder Full timeOverview:We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor’s “Best Places To Work India 2023”Scope:Lead SIEM analyst administer Plan, design, implement, monitor, Manage QRadar SIEM Tool that protect an organization’s computer systems and data.The Enterprise Security team currently comprises of 30+...
-
Lead SIEM Analyst
2 weeks ago
Bengaluru, India Blue Yonder Full timeOverview:We are a leadingAI-driven Global Supply Chain Solutions Software Product Companyand one of Glassdoor’s “Best Places To Work India 2023”Scope:Lead SIEM analyst administer Plan, design, implement, monitor, Manage QRadar SIEM Tool that protect an organization’s computer systems and data.The Enterprise Security team currently comprises of 30+...
-
SIEM Engineer
2 weeks ago
Bengaluru, India Aceseekers Full timeJob Description : Experience : 4 - 10 Years1) As a SIEM Engineer you will be managing and providing SIEM health and operational support, including supporting architecture changes, tool deployments and advanced content development.2) Perform SIEM configuration management, and troubleshooting, addressing complex issues and day to day operations management3)...
-
SOC Analyst
1 week ago
Bengaluru, India [24]7.ai Full timeSOC Analyst - 1: POSITION SUMMARY : The Level One SOC Monitoring analyst will fit into a global team providing 24/7 monitoring and first line of response for incidents, as L1 Engineer you are expected to conduct investigations, monitor for alerts, triage, and mitigation of detected threats/issues, also to start and track security investigations for...
-
Security Analyst
7 days ago
Bengaluru, India Zyoin group Full timeResponsibilities:- Security Monitoring and Incident Response: Drive the creation and refinement of security monitoring rules, techniques, and procedures, particularly automating incident response playbooks. - Investigate and resolve escalated security incidents, both independently and while leading a team of security analysts.- Operational Roles Rotation:...
-
Lead Cyber Defence Analyst
4 weeks ago
Bengaluru, India Groww Full timeAbout GrowwWe are a passionate group of people focused on making financial services accessible to every Indian through a multi-product platform. Each day, we help millions of customers take charge of their financial journey.Customer obsession is in our DNA. Every product, every design, every algorithm down to the tiniest detail is executed keeping the...
-
Senior SOC analyst L2 support
4 weeks ago
Bengaluru, India Netlabs Global IT Services Pvt Ltd Full timeJob Responsibilities: Perform monitoring, identification, investigation, documentation, resolution, and reporting of security alerts through prioritization of events based on risk/exposure. Analyze Endpoint Detection and Response (EDR), Network, Cloud and other traffic and log data for potential threats or vulnerabilities. Generating tickets and incident...
-
SOC Analyst L1/L2
3 weeks ago
Bengaluru, India Qtek Systems Full timeDescription:POSITION SUMMARY:SOC Analyst ( L1/L2 – 2 to 6 years)The SOC Analyst is responsible for a broad range of responsibilities with a primary emphasis on 24/7, Log analysis, threat and event monitoring and data loss prevention to contribute to effective remediation of security incidents.ESSENTIAL DUTIES AND RESPONSIBILITIESExperience in one or more...
-
Cyber Security Analyst
2 weeks ago
Bengaluru, India ThoughtFocus Full timeONLY IMMEDIATE JOINERS (0-7 DAYS) , Should be open to work in rotational shifts.Exp below 6yrs in Cybersecurity will not be considered.ResponsibilitiesSupport a 24/7/365 Security Operations Center and monitor security toolsProvide Tier 1 response to security incidents.Must have exp in incident analysis.Respond to cybersecurity events and incidents caused by...
-
Cyber Security Analyst
4 weeks ago
Bengaluru, India ThoughtFocus Full timeONLY IMMEDIATE JOINERS (0-7 DAYS) , Should be open to work in rotational shifts.Exp below 6yrs in Cybersecurity will not be considered.ResponsibilitiesSupport a 24/7/365 Security Operations Center and monitor security toolsProvide Tier 1 response to security incidents.Must have exp in incident analysis.Respond to cybersecurity events and incidents caused by...
-
Azure Sentinel Sme 9 to 12 Years Pan India
4 weeks ago
Bengaluru, India Capgemini Full timeProvide superior technical security expertise(L2/L3/L4) to ensure that the Security Operations Centre SOC is always delivering a professional service to its customers- - Conduct detailed analytical queries and investigations identify areas that require specific attention identify indicators of compromise IOC or events of interest EOI that need further...
-
Bengaluru
7 days ago
Bengaluru, India Qualitest Full timeDescription **Expectations**: Exp 3-5 years SOC Engineer will be responsible for monitoring, reporting, and escalating events to our SOC Leads. The primary function of this position is to monitor the analytics tools, perform alert management, and initial incident qualification. This role reports to the SOC Team Lead. Bachelor’s degree with CEH...
-
DeleteMe - Security Engineer - SIEM
2 weeks ago
Bengaluru, India DeleteMe Full timeRole : Security Engineer (India)About DeleteMe, The Online Privacy CompanyDeleteMe is the online privacy company that makes easy-to-use tools for consumers and businesses to control what personal information companies, third parties, and what other people see about them online.DeleteMe is a rapidly growing SaaS privacy business operating globally and...
-
Bengaluru
7 days ago
Bengaluru, India Qualitest Full timeDescription Acknowledge, analyse, and validate incidents triggered from correlated events through SIEM solution oCollection of necessary logs that could help in the incident containment and security investigation oEscalate validated and confirmed incidents to SOC Lead oUndertake first stages of false positive and false negative analysis oOpen incidents...
-
Bengaluru
4 weeks ago
Bengaluru, India Qualitest Full timeDescription Acknowledge, analyze, and validate incidents triggered from correlated events through SIEM solution Collection of necessary logs that could help in the incident containment and security investigation Escalate validated and confirmed incidents to SOC Lead Undertake first stages of false positive and false negative analysis Open incidents in...
-
Siem Security Use Cases Architect
6 days ago
J. P. Nagar, Bengaluru, Karnataka, India Engage ESM Full time**Publication Date**:Mar 31, 2023**Ref. No**:420195**Location**:J. P. Nagar, Bengaluru, Karnat, IN, 560078- SIEM Architect**Exp : 10-12years** **Job Location-Bangalore** **JD**: - 1. Prior experience of Content Engineering (i.e. Use Case Conceptualization or rollouts)- 2. At least 8+ years in SOC/MSSP/MDR service delivery- 3. - 1. Analyse & understand...
-
Cyber Security Lead-SOC
5 days ago
Bengaluru, India 5100 Kyndryl Solutions Private Limited Full timeWho We AreAt Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.The RoleAre you...
-
SOC Analyst L1/L2
4 weeks ago
Bengaluru, India Qtek Systems Full timeDescription : POSITION SUMMARY: SOC Analyst ( L1/L2 – 2 to 6 years) The SOC Analyst is responsible for a broad range of responsibilities with a primary emphasis on 24/7, Log analysis, threat and event monitoring and data loss prevention to contribute to effective remediation of security incidents. ESSENTIAL DUTIES AND RESPONSIBILITIES ...