Security Operations Analyst

4 weeks ago


gurgaon, India Zaportiv Full time
  • Role Description

    If you are a security enthusiast with demonstrable experience in security domain, we would like to talk to you. We are looking for a security expert with strong hands-on experience and broad knowledge across the security domain.

    The ideal candidate should have managed a SOC team of 8+ SOC analysts, is an expert in at least two of the security domains (monitoring & response, data security, application security, endpoint security, network security, perimeter security, cloud security, risk & compliance) and have hands on experience on at least SIEM and two other security technologies (such as SOAR, IPS/IDS, EDR, TI, DLP, CASB, PAM etc.).

    Candidate will be expected to:

    Microsoft security operations analysts must monitor, identify, investigate, and respond to threats at on-premises / multi-cloud environments by using Microsoft Sentinel

    Microsoft Defender, Microsoft O365 Defender, and third-party security solutions.

    Microsoft security operations analysts collaborate with business stakeholders, architects, identity administrators, Azure administrators, and endpoint administrators to secure IT systems for the organisation.

    Candidates should be familiar with Microsoft 365, Azure cloud services, and Windows and Linux operating systems.

    Must coordinate with all subject matter specialists to address the Incidents. Primarily responsible for onboarding the on-premises/ Cloud servers, Network/Security devices with required use cases with the Sentinel platform.

    Knowledge sharing and training must be provided to L1 technical associates.

    Primarily responsible for directing security event monitoring, management, response, and cyber intelligence.

    Ensuring incident identification, assessment, quantification, reporting, communication, mitigation and monitoring.

    Ensuring compliance to policy, process, and procedure adherence and process improvisation to achieve operational objectives

    Revising and developing processes to strengthen the current Security Operations Framework, Review policies and highlight the challenges in managing SLAs.

    Responsible for the overall use of resources and initiation of corrective action where required for the Security Operations centre.

    Ensuring daily management, administration & maintenance of security devices to achieve operational effectiveness.

    Ensuring threat management, threat modelling, identifying threat vectors and developing use cases for security monitoring

    Creation of reports, dashboards, and metrics for SOC operations

    Good knowledge on AD & Cloud security issues, Must be familiar with SIEM, SOAR, EDR and MDR operations.

    Must have experience in various monitoring tools & must have event hunting capabilities.

    Having skills in DLP and Vulnerability management is added advantage Education and certifications, Science Graduate with 4 to 5 Years of Experience in SOC Management.

    Microsoft Certified: Security Operations Analyst Associate

    Responsible for the security monitoring & log analysis of multi-vendor security solutions

    24x7 alerts monitoring and tracking Incidents on SIEM and EDR, reporting & escalation, regular SIEM administration, definition and enforcement of network & cloud security policies, research on new security technologies and create roadmap for implementing them in SOC,

    Formulating and implementing monitoring policies, procedures and standards relating to SecOps and security domains network security, data security, cloud security, zero trust, etc.

    Automated response to security incidents (malware infections, un-authorised access, malicious emails, DDoS attacks, etc, together with evaluating the type, nature, and severity of security events (security assurance/security compliance) through the use of a range of security event analysis tools.

    Assess security technologies and data in place to propose relevant Security use cases (mostly from security incidents monitoring perspective)

    Work with SIEM and SOAR technical team to design new security use cases and provide functional requirements.

    Enhance SOC service capabilities and offerings across key security domains and solution areas.

    Deliver security consulting and security implementation projects.

    Engage with potential clients (senior executives) on broad security domain discussions (topics can be related to basics of SecOps processes, Security architecture design, ISO security standards, NIST standards, Threat Intelligence, security analytics, Identity and Access Management, Network security, IDS/IPS, VAPT, etc.)

    Work with CISO/CIO to create a SOC maturity roadmap and then execute it

    Speak at in-house and partner marketing events/webinars on the trending security topics of interest.

    Candidate Preferred Requirements

    The Preferred candidate holding one or more of the industry certifications will be a plus.

    Master's degree in cyber security or demonstrated interest in the Cyber Security domain 5 + years of Security Operations centre experience.

    Solid understanding of network and computer security, security testing, software security Experience with Windows & *Linux platforms

    Understanding of MITRE ATT&CK and Cyber Kill Chain frameworks

    Scripting skill set (Bash, Python, Ruby, Perl, Powershell) will be considered a plus

    Experience working with SIEM platforms. Minimum one year Azure Sentinel experience is mandatory.

    Strong analytical, critical observation skills

    Willing to follow SOC processes and procedures while maintaining the flexibility to "think outside the box"

    Strong written and oral communication skills

    Collaborative and team focus

    Ability to prioritize tasks.

    Security Certifications (CEH, GCIH, GCIA, CYSA+, Azure Security...) are a plus

    Primary Tools: Microsoft Sentinel (SIEM) & Microsoft Defender (XDR)

    Location:

    The role location is Gurugram.

    Shift Schedule: Candidate will begin working in rotation, If required. We are looking for someone who is ready to work in Night Shift and open for 24X7 operations.

    Work Culture: Permanent work from Office

    Due to the nature of the work, you are required to have on-call duties on weekends.

    Remuneration:

    Competitive to the market.

    Interview Process:

    Approximately 3-4 rounds of interview



  • gurgaon, India SAFFRON NETWORKS PVT LTD Full time

    Company DescriptionSaffron Networks Pvt Ltd is a leading cybersecurity consulting firm based in Gurugram. We specialize in providing expert guidance and solutions to organizations looking to enhance their security posture and protect against modern cyber threats. With a team of highly skilled cybersecurity professionals and extensive industry experience, we...


  • Gurgaon, India RiDiK (a Subsidiary of CLPS. Nasdaq: CLPS) Full time

    Skills : SIEM security operations using Microsoft sentinel-2 State : Haryana City : [GURGAON] Experience (Years) : 3 (Min) - 6 (Max) Description Responsibilities & Duties Key responsibilities and duties include: Identifying, monitoring, and responding to events and incidents that occur in the network, Application, Data hosting in AWS cloud . Monitoring...

  • Security Guard

    1 month ago


    Gurgaon, India SLV Security Services Full time

    These roles would comprise duties stated as follows: - Supervising and overseeing security functions in an organisation - Training and scheduling programs and functions to security personnel - Evaluating, assessing and analysing performance of security personnel - Initiating disciplinary measures wherever necessary - Patrolling premises regularly to...

  • Security Officer

    1 month ago


    Gurgaon, India SLV Security Services Full time

    These roles would comprise duties stated as follows: - Supervising and overseeing security functions in an organisation - Training and scheduling programs and functions to security personnel - Evaluating, assessing and analysing performance of security personnel - Initiating disciplinary measures wherever necessary - Patrolling premises regularly to...


  • Gurgaon, India Beam Suntory Full time

    What makes this a great opportunity? The Cloud Security Analyst is a key member of the Global Information Security team reporting to the Cloud Security Manager. The Cloud Security Analyst will interface with peers in the security team as well as other members of the broader technology team. Beam Suntory is a world class employer that develops talented,...


  • gurgaon, India RiDiK (a Subsidiary of CLPS. Nasdaq: CLPS) Full time

    Skills : SIEM security operations using Microsoft sentinel-2State : HaryanaCity : (GURGAON)Experience (Years) : 3 (Min) - 6 (Max)DescriptionResponsibilities & Duties Key responsibilities and duties include:Identifying, monitoring, and responding to events and incidents that occur in the network, Application, Data hosting in AWS cloud .Monitoring alerts from...


  • Gurgaon, India Boston Scientific Full time

    Additional Locations: India-Haryana, Gurgaon Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance At Boston Scientific, we’ll give you the opportunity to harness all that’s within you by working in teams of diverse and high-performing employees, tackling some of the most important health industry challenges....


  • Gurgaon/Gurugram, India Sampoorna Consultants Pvt. Ltd Full time

    Responsibilities :- Primarily responsible for directing security event monitoring, management and response and cyber intelligence- Responsible for the SOC as part of the overall IT Security strategy- Responsible for team & vendor management, overall use of resources and initiation of corrective action where required for Security Operations Center- Ensuring...


  • gurgaon, India Coralogix Full time

    About The PositionSnowbit is a cybersecurity technology innovator with a vision to empower organizations across the globe to quickly, efficiently, and cost-effectively ready themselves to address omnipresent cyber risk. Built off years of Israeli cybersecurity experience, Snowbit is looking to offer the broadest managed detection and response offering...


  • Gurgaon, Haryana, India Suntory Global Spirits Full time

    Why is this role exciting?The position of Cloud Security Analyst is crucial within the Global Information Security team under the supervision of the Cloud Security Manager. This role involves collaborating with colleagues in the security department and across the wider technology team. Beam Suntory is renowned for nurturing skilled and high-performing...


  • Gurgaon, India Valvoline Global Operations Full time

    About the job Why Valvoline Global Operations (VGO)? Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil. As an...


  • gurgaon, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...


  • Gurgaon, India NETSACH GLOBAL Full time

    Greetings from Netsach - A Cyber Security Company.We are looking for a candidate who is able to configure Routing, vLAN, Network ACL, Wireless Ent Auth (802.11x), AD NPS, AD-DS, GPO, DNS, Cert Authority, DHCP, Firewall policies, IDS/IPS policies, App/web Content policies, Policy based routing, VPN, SDWAN (understanding), NAC (optional).Mandatory Skills...


  • Gurgaon, India Coralogix Full time

    About The PositionSnowbit is a cybersecurity technology innovator with a vision to empower organizations across the globe to quickly, efficiently, and cost-effectively ready themselves to address omnipresent cyber risk. Built off years of Israeli cybersecurity experience, Snowbit is looking to offer the broadest managed detection and response offering...


  • Gurgaon, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...

  • Operations Analyst

    2 weeks ago


    Gurgaon, India AKQA Full time

    At AKQA, technology is at the heart of everything we do, and it is AKQA IT’s mission to enable everyone to collaborate, create and thrive. AKQA IT is undergoing a significant transformation to modernise ways of working, shift to cloud and micro-service-based architectures, drive automation, digitise colleague and client experiences and deliver insight from...

  • Security Analyst

    1 month ago


    Gurgaon/Gurugram, India Sampoorna Consultants Pvt. Ltd Full time

    Role and responsibilities:- Perform investigations, threat hunting and work cases as needed- Act as an escalation point for Tier 1- Communicate with customers regarding security related incidents- Assist in threat signature implementation and tuning- Define and mature 'playbooks' for response to cyber threats- Provide teaching/mentoring to junior...

  • Security Analyst

    2 weeks ago


    Gurgaon, India Career Stone Consultant Full time

    Qualys Support - SME ( Looking for a Client which is a globally active high-tech company headquartered Germany. As a trusted partner of central banks and the entire currency industry, we increase security and efficiency in cash circulation. Our 170 years with more than 12,600 employees worldwide. ) Objective Of This Role Qualys global infrastructure setup...


  • Gurgaon, India RiDiK (a Subsidiary of CLPS. Nasdaq: CLPS) Full time

    Skills : SIEM security operations using Microsoft sentinel-2State :HaryanaCity :(GURGAON)Experience (Years) :3 (Min) - 6 (Max)DescriptionResponsibilities & Duties Key responsibilities and duties include:- Identifying, monitoring, and responding to events and incidents that occur in the network, Application, Data hosting in AWS cloud .- Monitoring alerts from...

  • Operations Analyst

    2 months ago


    gurgaon, India AKQA Full time

    At AKQA, technology is at the heart of everything we do, and it is AKQA IT’s mission to enable everyone to collaborate, create and thrive. AKQA IT is undergoing a significant transformation to modernise ways of working, shift to cloud and micro-service-based architectures, drive automation, digitise colleague and client experiences and deliver insight from...