Senior SOC Engineer

3 days ago


chennai, India IN19 Alcon Laboratories (India) Pvt Ltd Company Full time

Description

SOC L3 (Level 3)

The Alcon Security Operations Center (SOC) is responsible for monitoring, detecting, analyzing, and performing incident response to cyber threats against Alcon applications, platforms, networks, and information. The environment includes local area networks/wide area networks (LAN/WAN), Internet connections, public facing services & websites, wireless, mobile/cellular, cloud-based applications, and services (IaaS, PaaS, SaaS), security devices, servers, end-user workstations and laptops, production manufacturing, and various other 3rd party connections & services.

Duties include:

Administer and maintain the organization's SIEM (Security Information and Event Management) platform to monitor, analyze, and respond to security events and incidents effectively. Configure and customize SIEM rules, alerts, dashboards, and reports to meet the organization's security requirements and compliance standards. Perform regular health checks, tuning, and optimization of SIEM infrastructure to ensure optimal performance and maximum effectiveness. Monitor SIEM logs and alerts, investigate security incidents, and provide expert-level analysis and response to security events. Collaborate with SOC (Security Operations Center) analysts to triage, prioritize, and escalate security incidents based on severity and impact. Conduct regular SIEM platform upgrades, patches, and version migrations, following best practices and change management processes. Develop and maintain SIEM documentation, including configuration guides, standard operating procedures (SOPs), and knowledge base articles. Provide mentorship and training to junior team members and SOC analysts on SIEM administration best practices and techniques. Coordinate with vendors and internal stakeholders for SIEM platform integrations, upgrades, and troubleshooting as needed. Stay current with emerging SIEM technologies, trends, and threats, and make recommendations for continuous improvement of the SIEM environment. Manage and maintain the organization's SIEM (Security Information and Event Management) platform to monitor, analyze, and respond to security events and incidents. Implement and manage Data Loss Prevention (DLP) solutions to safeguard sensitive data and prevent unauthorized data exfiltration. Administer Endpoint Detection & Response (EDR) systems to detect, investigate, and remediate security threats on endpoints. Configure and maintain Security Orchestration and Automation (SOAR) platforms to streamline security operations and automate response actions. Monitor and manage Intrusion Detection/Prevention Systems (IDS/IPS) to detect and prevent malicious activities and network intrusions. Provide support for ARMIS platform, focusing on troubleshooting and issue resolution, while collaborating with SOC analysts for effective incident response. Utilize ServiceNow for case management, including ticket creation, tracking, and resolution of security-related incidents and requests. Ensure the security of cloud environments by implementing and managing cloud security solutions and best practices. Offer support for Saviynt platform, assisting with user access management, identity governance, and compliance requirements. Provide assistance for Site Manager and Zscaler platforms, focusing on support activities and issue resolution as needed. Act as a point of escalation for L1 & L2 engineers in support of investigations.

Required Education and Skills:

Bachelor of Science from accredited institution. Strong knowledge of incident management, problem management and change management best practices. Superior communication skills and ability to brief senior government officials. 7+ years of Information Security / Cybersecurity experience.

Desired Skills and Certifications

Experience networking and telecommunications integration, design, and architecture. Hold at least two relevant industry certifications (GCIH, GCED, CISSP, CEH, GMON etc.) Understanding of SIEM tools such as Splunk, FireEye Helix, ArcSight, Microsoft Sentinel, McAfee Nitro, etc. Experience building and maintaining a high-performance team of analysts. Expertise with industry standard frameworks (ISO, NIST, PCI). Experience maintaining metrics and SLAs. Self starter and should be able handle platforms independently.

Desired Skills and Certifications

Experience networking and telecommunications integration, design, and architecture. Hold at least two relevant industry certifications (GCIH, GCED, CISSP, CEH, GMON etc.) Understanding of SIEM tools such as Splunk, FireEye Helix, ArcSight, Microsoft Sentinel, McAfee Nitro, etc. Experience building and maintaining a high-performance team of analysts. Expertise with industry standard frameworks (ISO, NIST, PCI). Experience maintaining metrics and SLAs.
  • SOC/System Power

    3 days ago


    chennai, India Global Pharma Tek Full time

    Job Position: Senior/Staff EngineerYears of experience: -+ years Systems Engineering or related Industry experience+ years of direct hands-on experience in SOC/System Power & Performance analysisLocation: BangaloreEducational RequirementsBachelor's/Masters degree in Engineering, Electronics & Communication, Computer Science, or related fieldIndividuals who...


  • Chennai, Tamil Nadu, India Schima Sysnet and Systems Full time

    Schima Sysnet and Systems Pvt Ltd, is a Chennai based fast growing Information Technology company focused on business empowerment with cutting-edge technology solutions. A Singapore based global company launched in 2004 at Singapore, it has evolved from a small team of round the clock entrepreneurs to a structured pool of certified engineers with different...


  • Chennai, India Schima Sysnet and Systems Full time

    Schima Sysnet and Systems Pvt Ltd, is a Chennai based fast growing Information Technology company focused on business empowerment with cutting-edge technology solutions. A Singapore based global company launched in 2004 at Singapore, it has evolved from a small team of round the clock entrepreneurs to a structured pool of certified engineers with different...


  • chennai, India Schima Sysnet and Systems Full time

    Schima Sysnet and Systems Pvt Ltd, is a Chennai based fast growing Information Technology company focused on business empowerment with cutting-edge technology solutions. A Singapore based global company launched in 2004 at Singapore, it has evolved from a small team of round the clock entrepreneurs to a structured pool of certified engineers with different...


  • Chennai, India Schima Sysnet and Systems Full time

    Schima Sysnet and Systems Pvt Ltd, is a Chennai based fast growing Information Technology company focused on business empowerment with cutting-edge technology solutions. A Singapore based global company launched in 2004 at Singapore, it has evolved from a small team of round the clock entrepreneurs to a structured pool of certified engineers with different...


  • Chennai, India Schima Sysnet and Systems Full time

    Schima Sysnet and Systems Pvt Ltd, is a Chennai based fast growing Information Technology company focused on business empowerment with cutting-edge technology solutions. A Singapore based global company launched in 2004 at Singapore, it has evolved from a small team of round the clock entrepreneurs to a structured pool of certified engineers with different...


  • Chennai, India Schima Sysnet and Systems Full time

    Schima Sysnet and Systems Pvt Ltd, is a Chennai based fast growing Information Technology company focused on business empowerment with cutting-edge technology solutions. A Singapore based global company launched in 2004 at Singapore, it has evolved from a small team of round the clock entrepreneurs to a structured pool of certified engineers with different...


  • Chennai, India Schima Sysnet and Systems Full time

    Schima Sysnet and Systems Pvt Ltd, is a Chennai based fast growing Information Technology company focused on business empowerment with cutting-edge technology solutions. A Singapore based global company launched in 2004 at Singapore, it has evolved from a small team of round the clock entrepreneurs to a structured pool of certified engineers with different...

  • SOC Tier 1 Analyst-2

    2 months ago


    Chennai, India TransUnion Full time

    TransUnion's Job Applicant Privacy Notice **What We'll Bring**: This role is a Senior Analyst GCC member of the TransUnion Global Threat Detection Service Operations team, which includes TDS/SOC analysts, incident handlers as well as folks responsible for red teaming, intelligence analysis, and technical threat researchers. This role will focus on proactive...

  • SOC Operations

    2 months ago


    Chennai, India RARR Technologies Full time

    **Job Details - SOC Operations**: **Job ID**: - RARR Job 2960**Job Title**: - SOC Operations**Job Type**: - Permanent**Job Location**: - CHENNAI, PUNE**Total Experience**: - 8 - 12 Years**Skills**: - SOC**Posted - **09/02/2023 **Job Description**: **Purpose of Role / Short Description** Experience in Security Incident Handling and Security Alert...


  • Chennai, India Global Pharma Tek Full time

    Job Description: Overview :Silicon Validation team is part of the central SoC digital hardware organization responsible for the overall quality of the SoC silicon. The validation team works closely with architects, designers, verification engineers, software engineers, and customers. The team is currently seeking candidate for Post-silicon and Emulation CPU...


  • Chennai, Tamil Nadu, India Global Pharma Tek Full time

    Job Description:Overview :Silicon Validation team is part of the central SoC digital hardware organization responsible for the overall quality of the SoC silicon. The validation team works closely with architects, designers, verification engineers, software engineers, and customers. The team is currently seeking candidate for Post-silicon and Emulation CPU...


  • chennai, India Global Pharma Tek Full time

    Job Description: Overview : Silicon Validation team is part of the central SoC digital hardware organization responsible for the overall quality of the SoC silicon. The validation team works closely with architects, designers, verification engineers, software engineers, and customers. The team is currently seeking candidate for Post-silicon and Emulation...


  • Chennai, India Global Pharma Tek Full time

    Job Description: Overview : Silicon Validation team is part of the central SoC digital hardware organization responsible for the overall quality of the SoC silicon. The validation team works closely with architects, designers, verification engineers, software engineers, and customers. The team is currently seeking candidate for Post-silicon and Emulation...

  • Senior Engineer

    1 month ago


    Chennai, India Overture Rede Private Limited. Full time

    Position Title : Senior Engineer - ASIC Design Verification Location : Period : Immediate to 15 daysRole & Responsibilities :- An expert level with developing UVM-based SV test-benches.- Highly experienced with defining block, sub-system and SOC top level test plans.- Relevant experience with one or more of PCIe, NVMe, NAND, DDR and CPU sub-systems.- Deep...


  • Chennai, India NielsenIQ Full time

    Job Description Senior Consultant, Cybersecurity - SOC , Chennai/Pune India REFID695328 NielsenIQ is looking to mature our Cybersecurity Program. To support that effort, we are looking for an experienced Cyber Threat Security Operations Senior Consultant who will be responsible for the operational aspects of the program across all geographies and...


  • Chennai, India NielsenIQ Full time

    Job Description Senior Consultant, Cybersecurity - SOC , Chennai/Pune India REFID695328 NielsenIQ is looking to mature our Cybersecurity Program. To support that effort, we are looking for an experienced Cyber Threat Security Operations Senior Consultant who will be responsible for the operational aspects of the program across all geographies and...


  • chennai, India NielsenIQ Full time

    Job Description Senior Consultant, Cybersecurity - SOC , Chennai/Pune India REFID695328 NielsenIQ is looking to mature our Cybersecurity Program. To support that effort, we are looking for an experienced Cyber Threat Security Operations Senior Consultant who will be responsible for the operational aspects of the program across all geographies...


  • chennai, India NielsenIQ Full time

    Job Description Senior Consultant, Cybersecurity - SOC , Chennai/Pune India REFID695328 NielsenIQ is looking to mature our Cybersecurity Program. To support that effort, we are looking for an experienced Cyber Threat Security Operations Senior Consultant who will be responsible for the operational aspects of the program across all geographies...


  • Chennai, India NMS Consultant Full time

    Roles and Responsibilities - Monitoring and analysis of cyber security events with the use of RSA (SIEM), SOAR, PCAP, FIM/HIPS/DAM/PAM, IDS, NBAD, TIP, UEBA, antivirus and other tools. - Provide analysis and trending of security log data from a large number of heterogeneous IT security devices - Provide threat and vulnerability analysis as well as security...