Soar L3
5 months ago
Job Responsibilities:
- Must Have Skills:
- Playbook, **SOAR** Integration, CEH, SIEM, SOAR, Splunk, Security Operations
- Integrate respective solution / technology with every other solution / technology deployed in the GCSOC setup
- Automation of all L1 & L2 activities within first year,
- Migration of data & logs from currently running SOC to new GCSOC
- Collaborate closely with Technical Account Manager (TAM) and engineering division of the respective OEM for early resolution to the product level cases, vulnerabilities, bugs, features enhancement, patches, versions etc.
- Single point of contact to the Bankʼs stakeholders with respective OEM
- Maintain the suitable architecture of the technology solution
- Perform threat modelling of the Bankʼs assets and accordingly define the necessary use cases - Execute Major changes without any disruption and adverse impact.
- Continuously deliver the value of solution to the Banking terms of detecting all kind threats, accuracy of detection, value added use cases and content development etc.
- Improvise threat hunting capabilities of the technology
- Continuous development of analytical, statistical, mathematical models leveraging AI/ML capabilities of the technology to threat detection and prediction capabilities and put in place advanced use cases
- Continuous fine tuning of configuration, rules, policies etc.
- Continuous innovation and automations in intuitive dashboards, report, queries.
- Optimization of response time to fetch data, logs in advanced queries, reports, dashboards etc. - Closely collaborate with onsite team of bidder and other GCSOC OEMs to leverage each technologyʼs capabilities to develop inter.
- GCSOC and inter-IT Infrastructure technologies& services, logs, data ingestion, correlation, alerting etc. and automation.
- Ensure logs ingestion from SBDL automation of incident, vulnerability etc. remediation through SOAR
- Threat Intel feed analysis, provide appropriate recommendations, define use cases to detect the threats according to the information provided in Threat intel.
- Participate in DR, cyber, tabletop drills etc.
- Responsible for ensuring end to end tight integration of the Bankʼs IT Assets, other GCSOC solutions, Applications etc.
- Provide management report on respective solutions effectiveness.
- Provide necessary support during the Forensics investigation and threat hunting.
- Perform continuous assessment of respective solution maturity against global standards and fine tune the configuration parameters, technical policies, rules, algorithms accordingly.
- Prepare road map for product maturity and enhancements plan and ensure the recommended featured deliver within the agreed times.
- Provide on the job training to the officials of the Bank and bidder through structured and unstructured methods. Assess job knowledge of officials.
- Participate in meetings, discussions etc. to provide technology specific perspective. Make presentations on the current technology capabilities, use cases, automation done etc. and current and future enhancements / roadmap etc.
- Work at GCSOC as per Bankʼs working calendar & hours and on holidays if situation demands.
- Above is illustrative list of general activities. Technology specific activities shall be arrived at in consultation with the Project Manager of the bidder and / or TAM of respective OEM.
**EXPERTISE AND QUALIFICATIONS**
Should have Good knowledge on
1. Network Security
2. End point security
3. Threat intelligence
4. SOAR integration
5. SOAR playbook creation
**Salary**: ₹166,000.00 - ₹233,000.00 per month
Ability to commute/relocate:
- Mumbai, Maharashtra: Reliably commute or planning to relocate before starting work (required)
**Experience**:
- total work: 5 years (preferred)
-
SOC L3
5 months ago
Mumbai, India Fossgen Technologies Full timePosition: SOC L3 Location: Lower Parel, Mumbai **Roles and Responsibilities** - Lead and mentor junior SOC analysts - Conduct in-depth investigations into complex security incidents - Identify and analyse emerging threats and vulnerabilities - Develop and implement security incident response plans - Participate in vulnerability assessments and penetration...
-
SOC Lead
1 month ago
Mumbai, India MaimsD Technology Full timePosition : SOC-Platform Engg & Adminstration -L2/L3 Location : MumbaiExperience : 5 - 7 YrsEmployment Type : Full Time, PermanentWorking mode : RegularNotice Period : Immediate - 15 DaysMandatory Skills : 1. SIEM Administration2. Log Souce Integration3. SOAR and UEBA administration4. Playbook and Usecase engineering5. Advanced Hunting with EDR, CASB,...
-
Security Managed Services Engineer
1 week ago
Mumbai, India NTT DATA Full timeJob Description Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.Your day at NTT...
-
Security Managed Services Engineer
2 months ago
Mumbai, India NTT Full timeJOB DESCRIPTION Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive. Your day at...
-
Siem/soc L3
3 months ago
Mumbai, Maharashtra, India IBM Full timeIntroduction Your Role and Responsibilities - Responsible for implementation partner to see project on track along with providing required reports to management and client - Handle the project as well as BAU operations while ensuring high level of systems security compliance - Coordinate with and act as an authority to resolve incidents by working with...
-
Siem Admin L3
1 month ago
Mumbai, Maharashtra, India IBM Full timeIntroduction Your Role and Responsibilities - Responsible for implementation partner to see project on track along with providing required reports to management and client - Handle the project as well as BAU operations while ensuring high level of systems security compliance - Coordinate with and act as an authority to resolve incidents by working with...
-
Network Security Engineer
4 weeks ago
Mumbai, Maharashtra, India Recruin Full timeRole : WAF L3. Experience : 8 to 10 years of experience working on Network Security. Location : Mumbai. Product Certification F5 WAF. Required Candidate profile : - Overall 8-10 years' experience in network security with at least 5 years in managing WAF solutions. - Proficiency with management WAF. - Experience in working with Windows, Linux, Unix...
-
Network Security Engineer
4 weeks ago
Mumbai, India Recruin Full timeRole : WAF L3. Experience : 8 to 10 years of experience working on Network Security. Location : Mumbai. Product Certification F5 WAF. Required Candidate profile : - Overall 8-10 years' experience in network security with at least 5 years in managing WAF solutions. - Proficiency with management WAF. - Experience in working with Windows, Linux, Unix...
-
Cybersecurity Engineer
3 weeks ago
Mumbai, Maharashtra, India NTT Full timeAbout the RoleThe Security Managed Services Engineer (L3) is a seasoned engineering role responsible for providing proactive security services to clients by identifying and resolving technical incidents and problems.Key Responsibilities:Advanced Cyber Analytics: Proactively drive hunting and analysis against customer datasets.Threat Detection and Incident...
-
Cybersecurity Threat Hunter
2 weeks ago
Mumbai, Maharashtra, India NTT Full timeAbout the RoleThe Security Managed Services Engineer (L3) is a seasoned engineering role responsible for providing proactive incident and problem resolution services to clients. This position requires a high level of technical expertise and analytical thinking to ensure zero missed service level agreement (SLA) conditions.Key Responsibilities:Advanced Cyber...