Edr & Threat Hunting
4 days ago
**Job Description Summary**
- As an SME, the resource will be part of the Endpoint Security Operations team responsible to administer Crowdstrike Falcon EDR & Threat Hunting. The professional skills for this level include but are not limited to:
Ability to quickly acquire and utilize knowledge on new technologies and solutions, emerging threats and vulnerabilities
- Strong understanding of ITIL process
- MUST have excellent oral and written communication skills and executive presence that enable effective engagement with senior stakeholders
- Ability to work independently and communicate the technical and security related issues Good presentation, facilitation and delivery skills as well as strong analytical and problem?solving capabilities
- Demonstrate critical thinking and the ability to bring order to unstructured problems
- Seek and embrace opportunities which give exposure to different situations, environments and perspectives
- Use straightforward communication, in a structured way, when influencing and connecting with others
- Able to read situations and modify behavior to build quality relationships
- Uphold LTI?s code of ethics and business conduct
- **
Roles and Responsibilities**:
- Hands-on experience (L2/L3 level) in support, implementation, configuration and management of EDR/AV solutions (EDR/AV solutions like CrowdStrike, Symantec, Trend Micro & McAfee)
- Administer Endpoint Security systems to ensure maximum uptime and client Health Compliance
- Monitor, respond to and analyze trends in Workstation/Servers for security-related events Perform daily, weekly & monthly scheduled task for CrowdStrike Falcon
- Prepare Weekly & monthly report for Endpoint Security Solution
- Audit various configured policy, compare & maintain those with respect to Best Practice Basic Troubleshooting of Sensor installation/uninstallation
- Co-ordination with various teams regarding CrowdStrike Falcon compliance, installation & troubleshooting
- Create, track & respond to support cases raised with CrowdStrike Support
- Suggest the necessary changes required to various policy
- Share proactively received notification from CrowdStrike with various team & management
- Download share latest version of various operating systems Sensor
- Monitor Removable media exceptions
- Monitor Anti-Malware Exceptions
- Good understanding of Security Operational Procedures and Vulnerability Assessment Remain current with new security vulnerabilities and key technologies and recommends changes or actions to management as appropriate
- Be able to illustrate and explain use cases for implementation of EDR projects, watchlists, reporting, and correlations of data from multiple data sources
- Good Understanding of Malware operations and indicators or threat, current threat landscape
- Strong experience in managing Endpoint Agents over Windows and Linux operating systems, Active Directory integrations, Windows Event Logs along with MacOS
- Resolve issues of NGAV, EDR, and good Understanding of Threat Life Cycle, Miter Attack Framework.
- Ability to provide Tier 2 and Tier 3 support and manage complex and escalated tickets in the environment
- Experience in design and implementation of endpoint security solutions which includes installation, configuration, policy creation, fine tuning, and maintenance
- Knowledge of multiple operating systems and applicable system administration skills (Windows, Solaris, Linux)
- Good understanding of networking principles including TCP/IP, WANs, LANs, and commonly used Internet protocols such as SMTP, HTTP, FTPx, LDAP and others Familiarity with Information Security Frameworks and standards (NIST CSF, PCI-DSS, ISO27001, etc.)
- Proficiency in scripting language like Python, PowerShell, etc.
- Ensure quality work, i.e., review and validate the technical configuration changes and provide consultative ideas
- Good presentation skills to communicate status and recommendations in clear, concise language for technical and non-technical audiences
- Explore opportunities to optimize and ensure we are in line with enterprise requirements To maintain a lab environment for training, testing of new services and support of customers
- Work Across multiple technical teams towards common goals
**Skills Required**:
threat hunting crowdstrike symantec trend micro mcafee EDR
**Location**
Navi Mumbai
**Years Of Experience**
3 to 5 Years
-
Architect - Threat Hunting
6 days ago
Navi Mumbai, Maharashtra, India Reserve Bank Information Technology Private Limited (ReBIT) Full time**Reporting Structure** - Reports to Chief Manager - Security Operations - Cyber Security **Designation** - Architect - Threat hunting **Education**: - University degree in the field of computer science Or IT is preferable. However, any graduate with relevant experience and technical certifications in the domain can be considered for the...
-
Architect - Threat Hunting
2 weeks ago
Navi Mumbai, Maharashtra, India Reserve Bank Information Technology Private Limited (ReBIT) Full time ₹ 12,00,000 - ₹ 36,00,000 per yearReporting StructureReports to Chief Manager - Security Operations • Cyber SecurityDesignationArchitect – Threat huntingEducation:University degree in the field of computer science Or IT is preferable. However, any graduate with relevant experience and technical certifications in the domain can be considered for the Vacancy.Desired...
-
Threat Hunting Specialist
7 days ago
Mumbai, India 2coms Full timeAbout the Company:Theclient is the captive technology arm of a leading German-headquartered global insurance group. With a substantial international footprint, this financial services giant operates across more than 50 countries and employs a workforce exceeding 50,000 professionals. To deliver seamless IT solutions and support its extensive worldwide...
-
Threat Hunting(2)
1 week ago
Mumbai, Maharashtra, India Locuz Enterprise Solutions Full timeJD: Threat Hunting capabilities: >Perform quality threat hunting in identifying and analysing advanced persistent threats (APTs). >Develop and execute threat hunting based on threat intelligence, behavioural analytics. >Ability to form hypothesis and execute the same to identify the threats in the environment. >Understanding (working experience) of...
-
L2 Security Operations Center Analyst
4 weeks ago
Mumbai, India Digihelic Solutions Private Limited Full timeDescription :Location : Mumbai, IndiaExperience : 5+ YearsMode of Work : 5 Days Office (Full-time On-site)Reporting To : SOC Manager / Security Operations LeadAbout the Role :We are seeking an experienced and dedicated L2 Security Operations Center (SOC) Analyst to join our team in Mumbai. This is a full-time, 5-day on-site position. The ideal candidate will...
-
SOC Ops and Threat Hunting
1 week ago
Mumbai, India CoreIT Services Pvt. Ltd. Full timeLooking for an L3 resource with the following - L3 threat hunter profile - Can work remotely - Should have experience of approx 7 to 9 yrs. in SOC Ops and Threat Hunting - JD as below - 8+ years of experience in a technical role in the areas of Security Operations, Threat Intelligence & Cyber Incident Response - Conduct "Hunts" using threat intelligence,...
-
Edr 6 to 9 Years Bengaluru
1 hour ago
Navi Mumbai, Maharashtra, India Capgemini Full timeChoosing Capgemini means choosing a company where you will be empowered to shape your career in the way you’d like, where you’ll be supported and inspired by a collaborative community of colleagues around the world, and where you’ll be able to reimagine what’s possible. Join us and help the world’s leading organizations unlock the value of...
-
Cyber Threat Intelligence
3 days ago
Mumbai, Maharashtra, India Stratlink It Consulting And Solutions Private Limi Full time ₹ 9,00,000 - ₹ 12,00,000 per yearCollect, analyze and exploit customized outputs from our Cyber Threat Intelligence partner and open-source intelligence to anticipate emerging cyber threats and get knowledge on threat actors, tactics, techniques and procedures:Performs cyber threat hunting on Indicators of Compromise (IoCs) through our security tools (EDR, SIEM, SOAR, etc.) to detect prior...
-
Security analyst
2 weeks ago
Mumbai, India SHI | Locuz - An SHI Company Full timeHi,We have an immediate requirement for Threat Hunting with our organizationSHI Locuz Enterprise Solutions Pvt Ltd.Job Details:Work Experience - 3+years(relevant)Work Location - MumbaiLooking for immediate joiners.J ob Description:JD:Work Location – Mumbai (Aeroli)Experience – 3-4yearsInstall, configure, and manage Fleet DM and OSQuery across the bank's...
-
Cyber Threat Intelligence Lead
18 hours ago
mumbai, India NMS Consultant Full timeKey Responsibilities:Lead will be hierarchically attached to the IT Manager responsible of the CyberSOC team based in India and will daily refer to the Identify Service Line Manager based in France. You will be the Identify Service Line Team Leader (3-4 person team) in India. The Cyber Threat Intelligence Analyst (Team Leader) will be in charge of ensuring...