
EDR Analyst
3 days ago
Continue to make an impact with a company that is pushing the boundaries of what is possible. At NTT DATA, we are renowned for our technical excellence, leading innovations, and making a difference for our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can continue to grow, belong, and thrive.
Your career here is about believing in yourself and seizing new opportunities and challenges. It's about expanding your skills and expertise in your current role and preparing yourself for future advancements. That's why we encourage you to take every opportunity to further your career within our great global team.
Grow Your Career with NTT DATA
The Security Managed Services Engineer (L1) is an entry level engineering role, responsible for providing a managed service to clients to ensure that their Firewall infrastructure remain operational through proactively identifying, investigating, and routing the incidents to correct resolver group.The primary objective of this role is to ensure zero missed service level agreement (SLA) conditions and focuses on first-line support for standard and low complexity incidents and service requests.
The Security Managed Services Engineer (L1) may also contribute to / support on project work as and when required.
What you'll be doing
Key Responsibilities:
- Min 3 Years exp in EDR and Trend Micro.
- The vendor should assess the existing endpoint security infrastructure and identify any gaps or vulnerabilities.
- The vendor should deploy EDR agents on endpoints, servers, and critical systems within the organization's network.
- The vendor should configure EDR agents to collect and analyze security events and activities on endpoints.
- The solution should monitor endpoints for suspicious activities, such as malware infections, unauthorized access attempts, and unusual user behavior.
- The solution should use behavioral analysis and machine learning to detect advanced threats and zero-day attacks.
- The solution should generate real-time alerts for potential security incidents and provide guidance for incident response and remediation.
- The vendor should enable endpoint forensics capabilities to investigate security incidents and identify the root cause of attacks.
- The solution should capture and store detailed endpoint activity logs and artifacts for further analysis.
- The vendor should integrate the tool with vulnerability management systems to assess the endpoint's security posture.
- The EDR solution should be able to rollout patches or upgrades from the EDR management console for agents onboarded on the platforms.
- The solution should alert and remediate endpoints with outdated or vulnerable software configurations.
- The solution should provide real-time alerts for anomalies that could indicate potential threats.
- The vendor should ensure the compatibility with other security systems, such as (but not limited to) SIEM, incident response tools, etc.
- The solution should correlate network anomalies with potential threats, aiding in early threat detection.
- The vendor is expected to deliver reports at periodic intervals as per Client's requirements.
- The vendor should re-deploy the agent as and when there is a change in the infrastructure or the operating systems.
Knowledge and Attributes:
- Ability to communicate and work across different cultures and social groups.
- Ability to plan activities and projects well in advance, and takes into account possible changing circumstances.
- Ability to maintain a positive outlook at work.
- Ability to work well in a pressurized environment.
- Ability to work hard and put in longer hours when it is necessary.
- Ability to apply active listening techniques such as paraphrasing the message to confirm understanding, probing for further relevant information, and refraining from interrupting.
- Ability to adapt to changing circumstances.
- Ability to place clients at the forefront of all interactions, understanding their requirements, and creating a positive client experience throughout the total client journey.
Academic Qualifications and Certifications:
- Bachelor's degree or equivalent qualification in IT/Computing (or demonstrated equivalent work experience).
- CEH certification is must.
Required Experience:
- Entry-level experience with troubleshooting and providing the support required in security / network/ data center/ systems/ storage administration and monitoring Services within a medium to large ICT organization.
- Basic knowledge of management agents, redundancy concepts, and products within the supported technical domain (such as Security, Network, Data Centre, Telephony, etc.).
- Working knowledge of ITIL processes.
Workplace type:
On-site WorkingEqual Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Accelerate your career with us. Apply today
-
Edr-l1
3 days ago
Mumbai, Maharashtra, India Locuz Enterprise Solutions Full timeSecurity Analyst - EDR ProxyLevel- L1Work Location - Mumbai
-
L1 Endpoint Security Professional
5 days ago
Mumbai, Maharashtra, India beBeeCybersecurity Full time ₹ 1,04,000 - ₹ 1,30,878Job DescriptionOur team is seeking a skilled and vigilant L1 professional for handling EDR operations. The ideal candidate will play a key role in monitoring, analyzing, and responding to security incidents using Carbon Black EDR while ensuring SLAs are met.Responsibilities:Monitor Carbon Black EDR alerts and maintain SLAs.Research and analyze Carbon Black...
-
Mumbai, Maharashtra, India beBeeSecurity Full time US$ 80,000 - US$ 1,10,000Senior Program Analyst OpportunityWe are seeking a seasoned professional to play a key role in delivering high-quality services to clients across various industries.Key Responsibilities:Active Directory Management and Group Policy AdministrationEndpoint Detection and Response (EDR) Solutions such as CS Falcon, Sentinel One, and MS Defender for EndpointCloud...
-
Cybersecurity Analyst
2 days ago
Mumbai, Maharashtra, India Infocus Technologies Full time US$ 90,000 - US$ 1,20,000 per yearKey Responsibilities:Monitor and respond to security alerts from EDR/XDR platforms such as SentinelOne.Perform in-depth threat analysis and triage incidents to determine severity and impact.Implement and maintain endpoint security solutions across the organization.Conduct proactive threat hunting and behavioral analysis using EDR and XDR tools.Collaborate...
-
Security Operations Center Analyst
7 days ago
Mumbai, Maharashtra, India CyberProof Full timeOverview:The SOC Engineer L2 must have prior experience configuring, managing, operating, and administrating various SIEM & EDR managed platforms. You will play a pivotal role in advising our clients on the implementation, optimization, and maintenance of SIEM tool Qradar. You will leverage your expertise to design and implement tailored solutions that meet...
-
Security Analyst
2 days ago
Mumbai, Maharashtra, India BharatHire Private Limited Full time ₹ 9,00,000 - ₹ 12,00,000 per yearResponsible for endpoint security ops, threat hunting & mitigation. Skilled in EDR, DLP, APT, MDM, cloud security, ISO 27001/NIST, ITIL. Strong in troubleshooting, leadership & collaboration, ensuring control effectiveness.
-
Security Operations Center Analyst
5 days ago
Mumbai, Maharashtra, India CyberProof Full timeOverview: The SOC Engineer L2 must have prior experience configuring, managing, operating, and administrating various SIEM & EDR managed platforms. You will play a pivotal role in advising our clients on the implementation, optimization, and maintenance of SIEM tool Qradar. You will leverage your expertise to design and implement tailored solutions that...
-
Security Operations Center Analyst
24 hours ago
Mumbai, Maharashtra, India CyberProof Full timeOverview:The SOC Engineer L2 must have prior experience configuring, managing, operating, and administrating various SIEM & EDR managed platforms. You will play a pivotal role in advising our clients on the implementation, optimization, and maintenance of SIEM tool Qradar. You will leverage your expertise to design and implement tailored solutions that meet...
-
Security Analyst L1
2 days ago
Mumbai, Maharashtra, India NMS Consultant Full time ₹ 8,00,000 - ₹ 12,00,000 per yearJob Purpose/Summary:Experience with SIEM tool like PaloAlto XDRExperience with SOAR tool like PaloAlto XSOARExperience with EDR tool like CrowdstrikeKnowledge of Splunk queriesKnowledge of assessing Incident severity, classifying them and performing initial investigations to determine the scope and impact.Good experience and exposure of Incident handling by...
-
Chief Information Security Officer
4 days ago
Mumbai, Maharashtra, India beBeeCybersecurity Full time ₹ 15,00,000 - ₹ 25,00,000Security Operations Center AnalystWe are seeking a highly skilled professional to join our team in the Security Operations Center (SOC). The successful candidate will have prior experience configuring, managing, operating, and administering various SIEM & EDR managed platforms.The SOC Engineer L2 plays a pivotal role in advising clients on the...