Security Operations Analyst

2 weeks ago


Gurgaon, India Zaportiv Full time
Role DescriptionIf you are a security enthusiast with demonstrable experience in security domain, we would like to talk to you. We are looking for a security expert with strong hands-on experience and broad knowledge across the security domain.The ideal candidate should have managed a SOC team of 8+ SOC analysts, is an expert in at least two of the security domains (monitoring & response, data security, application security, endpoint security, network security, perimeter security, cloud security, risk & compliance) and have hands on experience on at least SIEM and two other security technologies (such as SOAR, IPS/IDS, EDR, TI, DLP, CASB, PAM etc.).

Candidate will be expected to:Microsoft security operations analysts must monitor, identify, investigate, and respond to threats at on-premises / multi-cloud environments by using Microsoft SentinelMicrosoft Defender, Microsoft O365 Defender, and third-party security solutions.Microsoft security operations analysts collaborate with business stakeholders, architects, identity administrators, Azure administrators, and endpoint administrators to secure IT systems for the organisation.Candidates should be familiar with Microsoft 365, Azure cloud services, and Windows and Linux operating systems.Must coordinate with all subject matter specialists to address the Incidents. Primarily responsible for onboarding the on-premises/ Cloud servers, Network/Security devices with required use cases with the Sentinel platform.Knowledge sharing and training must be provided to L1 technical associates.Primarily responsible for directing security event monitoring, management, response, and cyber intelligence.Ensuring incident identification, assessment, quantification, reporting, communication, mitigation and monitoring.Ensuring compliance to policy, process, and procedure adherence and process improvisation to achieve operational objectivesRevising and developing processes to strengthen the current Security Operations Framework, Review policies and highlight the challenges in managing SLAs.Responsible for the overall use of resources and initiation of corrective action where required for the Security Operations centre.Ensuring daily management, administration & maintenance of security devices to achieve operational effectiveness.Ensuring threat management, threat modelling, identifying threat vectors and developing use cases for security monitoringCreation of reports, dashboards, and metrics for SOC operationsGood knowledge on AD & Cloud security issues, Must be familiar with SIEM, SOAR, EDR and MDR operations.Must have experience in various monitoring tools & must have event hunting capabilities.Having skills in DLP and Vulnerability management is added advantage Education and certifications, Science Graduate with 4 to 5 Years of Experience in SOC Management.Microsoft Certified: Security Operations Analyst AssociateResponsible for the security monitoring & log analysis of multi-vendor security solutions24x7 alerts monitoring and tracking Incidents on SIEM and EDR, reporting & escalation, regular SIEM administration, definition and enforcement of network & cloud security policies, research on new security technologies and create roadmap for implementing them in SOC,Formulating and implementing monitoring policies, procedures and standards relating to SecOps and security domains network security, data security, cloud security, zero trust, etc.Automated response to security incidents (malware infections, un-authorised access, malicious emails, DDoS attacks, etc, together with evaluating the type, nature, and severity of security events (security assurance/security compliance) through the use of a range of security event analysis tools.Assess security technologies and data in place to propose relevant Security use cases (mostly from security incidents monitoring perspective)Work with SIEM and SOAR technical team to design new security use cases and provide functional requirements.Enhance SOC service capabilities and offerings across key security domains and solution areas.Deliver security consulting and security implementation projects.Engage with potential clients (senior executives) on broad security domain discussions (topics can be related to basics of SecOps processes, Security architecture design, ISO security standards, NIST standards, Threat Intelligence, security analytics, Identity and Access Management, Network security, IDS/IPS, VAPT, etc.)Work with CISO/CIO to create a SOC maturity roadmap and then execute itSpeak at in-house and partner marketing events/webinars on the trending security topics of interest.

Candidate Preferred RequirementsThe Preferred candidate holding one or more of the industry certifications will be a plus.Master's degree in cyber security or demonstrated interest in the Cyber Security domain 5 + years of Security Operations centre experience.Solid understanding of network and computer security, security testing, software security Experience with Windows & *Linux platformsUnderstanding of MITRE ATT&CK and Cyber Kill Chain frameworksScripting skill set (Bash, Python, Ruby, Perl, Powershell) will be considered a plusExperience working with SIEM platforms. Minimum one year Azure Sentinel experience is mandatory.Strong analytical, critical observation skillsWilling to follow SOC processes and procedures while maintaining the flexibility to "think outside the box"Strong written and oral communication skillsCollaborative and team focusAbility to prioritize tasks.Security Certifications (CEH, GCIH, GCIA, CYSA+, Azure Security...) are a plusPrimary Tools: Microsoft Sentinel (SIEM) & Microsoft Defender (XDR)Location:The role location is Gurugram.Shift Schedule: Candidate will begin working in rotation, If required. We are looking for someone who is ready to work in Night Shift and open for 24X7 operations.Work Culture: Permanent work from OfficeDue to the nature of the work, you are required to have on-call duties on weekends.Remuneration:Competitive to the market.Interview Process:Approximately 3-4 rounds of interview



  • Gurgaon, India RiDiK (a Subsidiary of CLPS. Nasdaq: CLPS) Full time

    Skills : SIEM security operations using Microsoft sentinel-2 State : Haryana City : [GURGAON] Experience (Years) : 3 (Min) - 6 (Max) Description Responsibilities & Duties Key responsibilities and duties include: Identifying, monitoring, and responding to events and incidents that occur in the network, Application, Data hosting in AWS cloud . Monitoring...


  • Gurgaon, India Beam Suntory Full time

    What makes this a great opportunity? The Cloud Security Analyst is a key member of the Global Information Security team reporting to the Cloud Security Manager. The Cloud Security Analyst will interface with peers in the security team as well as other members of the broader technology team. Beam Suntory is a world class employer that develops talented,...


  • gurgaon, India RiDiK (a Subsidiary of CLPS. Nasdaq: CLPS) Full time

    Skills : SIEM security operations using Microsoft sentinel-2State : HaryanaCity : (GURGAON)Experience (Years) : 3 (Min) - 6 (Max)DescriptionResponsibilities & Duties Key responsibilities and duties include:Identifying, monitoring, and responding to events and incidents that occur in the network, Application, Data hosting in AWS cloud .Monitoring alerts from...


  • Gurgaon/Gurugram, India Sampoorna Consultants Pvt. Ltd Full time

    Responsibilities :- Primarily responsible for directing security event monitoring, management and response and cyber intelligence- Responsible for the SOC as part of the overall IT Security strategy- Responsible for team & vendor management, overall use of resources and initiation of corrective action where required for Security Operations Center- Ensuring...


  • gurgaon, India Coralogix Full time

    About The PositionSnowbit is a cybersecurity technology innovator with a vision to empower organizations across the globe to quickly, efficiently, and cost-effectively ready themselves to address omnipresent cyber risk. Built off years of Israeli cybersecurity experience, Snowbit is looking to offer the broadest managed detection and response offering...


  • Gurgaon, Haryana, India Suntory Global Spirits Full time

    Why is this role exciting?The position of Cloud Security Analyst is crucial within the Global Information Security team under the supervision of the Cloud Security Manager. This role involves collaborating with colleagues in the security department and across the wider technology team. Beam Suntory is renowned for nurturing skilled and high-performing...


  • Gurgaon, India Valvoline Global Operations Full time

    About the job Why Valvoline Global Operations (VGO)? Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil. As an...


  • gurgaon, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...


  • Gurgaon, India Coralogix Full time

    About The PositionSnowbit is a cybersecurity technology innovator with a vision to empower organizations across the globe to quickly, efficiently, and cost-effectively ready themselves to address omnipresent cyber risk. Built off years of Israeli cybersecurity experience, Snowbit is looking to offer the broadest managed detection and response offering...


  • Gurgaon, India NETSACH GLOBAL Full time

    Greetings from Netsach - A Cyber Security Company.We are looking for a candidate who is able to configure Routing, vLAN, Network ACL, Wireless Ent Auth (802.11x), AD NPS, AD-DS, GPO, DNS, Cert Authority, DHCP, Firewall policies, IDS/IPS policies, App/web Content policies, Policy based routing, VPN, SDWAN (understanding), NAC (optional).Mandatory Skills...


  • Gurgaon, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...

  • Operations Analyst

    7 days ago


    Gurgaon, India AKQA Full time

    At AKQA, technology is at the heart of everything we do, and it is AKQA IT’s mission to enable everyone to collaborate, create and thrive. AKQA IT is undergoing a significant transformation to modernise ways of working, shift to cloud and micro-service-based architectures, drive automation, digitise colleague and client experiences and deliver insight from...

  • Security Analyst

    4 weeks ago


    Gurgaon/Gurugram, India Sampoorna Consultants Pvt. Ltd Full time

    Role and responsibilities:- Perform investigations, threat hunting and work cases as needed- Act as an escalation point for Tier 1- Communicate with customers regarding security related incidents- Assist in threat signature implementation and tuning- Define and mature 'playbooks' for response to cyber threats- Provide teaching/mentoring to junior...

  • Security Analyst

    7 days ago


    Gurgaon, India Career Stone Consultant Full time

    Qualys Support - SME ( Looking for a Client which is a globally active high-tech company headquartered Germany. As a trusted partner of central banks and the entire currency industry, we increase security and efficiency in cash circulation. Our 170 years with more than 12,600 employees worldwide. ) Objective Of This Role Qualys global infrastructure setup...


  • Gurgaon, India RiDiK (a Subsidiary of CLPS. Nasdaq: CLPS) Full time

    Skills : SIEM security operations using Microsoft sentinel-2State :HaryanaCity :(GURGAON)Experience (Years) :3 (Min) - 6 (Max)DescriptionResponsibilities & Duties Key responsibilities and duties include:- Identifying, monitoring, and responding to events and incidents that occur in the network, Application, Data hosting in AWS cloud .- Monitoring alerts from...

  • Operations Analyst

    1 month ago


    gurgaon, India AKQA Full time

    At AKQA, technology is at the heart of everything we do, and it is AKQA IT’s mission to enable everyone to collaborate, create and thrive. AKQA IT is undergoing a significant transformation to modernise ways of working, shift to cloud and micro-service-based architectures, drive automation, digitise colleague and client experiences and deliver insight from...

  • L2 SOC Analyst

    2 days ago


    Gurgaon/Gurugram, India Skyleaf consultants Full time

    Urgent hiring for SOC L2 Analyst RoleLocation - GurugramWork Mode - Work from OfficeExperience - 6 to 10 yearsCandidate Preferred Requirements:- The Preferred candidate holding one or more of the industry certifications will be a plus.- Master's degree in cyber security or demonstrated interest in the Cyber Security domain 5 + years of Security...

  • SOC Analyst L2

    4 weeks ago


    Gurgaon/Gurugram, India Skyleaf consultants Full time

    Role : SOC Analyst L2 Role Location : GurugramExperience : 5 to 10 yearsNotice period : Immediate Joiners onlyJob Description : - Master's degree in cyber security or demonstrated interest in the Cyber Security domain 5 + years of Security Operations centre experience.- Solid understanding of network and computer security, security testing, software...

  • Security Consultant

    5 days ago


    gurgaon, India VMock Full time

    Responsibilities:Work with clients to handle first level discussions relating to security and compliance. Act as first level support over email and calls to provide clients information onmeasures undertaken and work with clients on their requirementsAssist Sales Operations teams with any compliance and technical issues to onboard VMock as a vendor for...


  • gurgaon, India Citi Full time

    The Securities & Derivatives Analyst 2 is an intermediate level position responsible for processing orders and transactions originating from trading desks and branch offices in coordination with the Operations - Transaction Services team. The overall objective of this role is to facilitate the clearance, settlement and investigation of client securities and...