Security Operations Center Analyst
20 hours ago
Job Summary:
The Security Operations Center (SOC) Security Analyst serves in a SOC team, is responsible for conducting information security investigations as a result of security incidents identified by the Level-1 security analysts who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone).
The SOC Security Analyst is expected to have a solid understanding of information security and computer systems concepts and should be ready to work in shifts.
An engineer in this position act as a point of escalation for Level-1 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques.
Job Description
:
- Responsible for conducting information security investigations as a result of security incidents identified by the Level 1 security analyst who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone),
- Act as a point of escalation for Level-1 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques.
- Should have experience in Developing new correlation rules & Parser writing
- Experience in Log source integration
- Act as the lead coordinator to individual information security incidents.
- Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks (tools, techniques, Procedures) in support of technologies managed by the Security Operations Center.
- Document incidents from initial detection through final resolution.
- Participate in security incident management and vulnerability management processes.
- Coordinate with IT teams on escalations, tracking, performance issues, and outages.
- Works as part of a team to ensure that corporate data and technology platform components are safeguarded from known threats.
- Communicate effectively with customers, teammates, and management.
- Prepare Monthly Executive Summary Reports for managed clients and continuously improve their content and presentation.
- Provide recommendations in tuning and optimization of security systems, SOC security process, procedures and policies.
- Define, create and maintain SIEM correlation rules, customer build documents, security process and procedures.
- Follow ITIL practices regarding incident, problem and change management.
- Staying up-to-date with emerging security threats including applicable regulatory security requirements.
- Maintain an inventory of the procedures used by the SOC and regularly evaluate the SOC procedures and add, remove, and update the procedures as appropriate
- Publish weekly reports to applicable teams
- Generate monthly reports on SOC activity
- Secondary skills like AV, HIPS, DCS, VA/ PT desirable
Required Technical Expertise
- Must have experience in SIEM Management tool (QRADAR, SECEON)
- Should have certifications like, ITIL, CCNA, CEH, VA (Product) Certification, CISM
- Process and Procedure adherence
- General network knowledge and TCP/IP Troubleshooting
- Ability to trace down an endpoint on the network, based on ticket information
- Familiarity with system log information and what it means
- Understanding of common network services (web, mail, DNS, authentication)
- Knowledge of host based firewalls, Anti-Malware, HIDS
- General Desktop OS and Server OS knowledge
- TCP/IP, Internet Routing, UNIX / LINUX & Windows NT
-
Security Operations Center Analyst
6 days ago
Delhi, Delhi, India Bhumi iTech Full time ₹ 6,00,000 - ₹ 12,00,000 per yearHiring Now: Security Operations Center (SOC) AnalystLocation:Delhi / HyderabadCompany:Bhumi Itech Pvt. Ltd.Employment Type:Full-timeExperience:1–3 years (Freshers with strong fundamentals may apply)About the RoleWe are seeking a passionate and skilledSOC Analystto join our cybersecurity defence team. You will be part of a high-impact group responsible...
-
Delhi, Delhi, India Rohde & Schwarz Full time ₹ 15,00,000 - ₹ 25,00,000 per yearYour tasksImplementation of monitoring use cases and alarm / detection rulesAdaptation and expansion of the toolset to include all necessary information (e.g. logs, context data and threat Intel enrichment) for our analystsSupport in continuous improvement processes our SOC/Cyber Detection & Response Center (e.g. handling false positives, automation,...
-
Delhi, Delhi, India Rohde & Schwarz Full time ₹ 6,00,000 - ₹ 18,00,000 per yearYour tasksReal-time monitoring, analysis, triage of security events and alarms based on relevant security threats and risksPerform in-depth analyzes of security incidents to understand root cause as well as impact to derive recommendations for handling and eliminationSupport of our cybersecurity engineers for continuous improvement in the CDRC (e.g. through...
-
Cyber Security Instructor
2 weeks ago
Delhi, Delhi, India Cryptus Cyber Security Private Limited. Full time ₹ 9,00,000 - ₹ 12,00,000 per yearCompany DescriptionDAV Institute of Engineering & Technology, established in 2001, operates under the esteemed DAV College Managing Committee. Located in Jalandhar, the institute is approved by the All India Council for Technical Education (AICTE) and affiliated with I.K. Gujral Punjab Technical University. DAV Institute is dedicated to providing quality...
-
Data Center Operations Manager
2 weeks ago
Delhi, Delhi, India Vultr Full time ₹ 43,20,000 - ₹ 86,40,000 per yearWho We AreVultr is on a mission to make high-performance cloud infrastructure easy to use, affordable, and locally accessible for enterprises and AI innovators around the world. With 32 global cloud data center locations, Vultr is trusted by hundreds of thousands of active customers across 185 countries for its flexible, scalable, global Cloud Compute,...
-
Training Manager-Security Industry
1 week ago
Delhi, Delhi, India NG7 Security & surveillance Private Limited Full time ₹ 3,60,000 - ₹ 6,00,000 per yearJob Description – Training Manager (Security Industry)Position: Training ManagerReporting To: Operations Head / HR Head / Director1. Job SummaryThe Training Manager is responsible for planning, organizing, and implementing comprehensive training programs for security personnel. This role ensures that all guards, supervisors, and officers are trained as per...
-
Data Center Operations Manager
1 week ago
Delhi, Delhi, India Vultr Full time ₹ 6,00,000 - ₹ 18,00,000 per yearWho We AreVultr is on a mission to make high-performance cloud infrastructure easy to use, affordable, and locally accessible for enterprises and AI innovators around the world. With 32 cloud data center locations around the world, Vultr is trusted by hundreds of thousands of active customers across 185 countries for its flexible, scalable, global Cloud...
-
Data Center Engineer
1 week ago
Delhi, Delhi, India Sauce Labs Full time ₹ 3,00,000 - ₹ 6,00,000 per yearLocation: NCR Region, New DelhiAbout Us:At Sauce Labs, we empower the world's top enterprises - like Walmart, Bank of America, and Indeed - to deliver quality web and mobile applications at speed. Our industry-leading platform ensures continuous quality across the SDLC, using AI-powered analytics to identify key quality signals from development through...
-
Security supervisor
3 days ago
Delhi, Delhi, India Indion Oil Corporation Limited. Full time ₹ 8,00,000 - ₹ 12,00,000 per yearCompany DescriptionIndion Oil Corporation Limited is a consumer services provider headquartered in Noida, Uttar Pradesh, India. The company operates from its office at IOCL Nagar Site-2 and is dedicated to delivering high-quality services to its customers. As an established organization, Indion Oil Corporation Limited emphasizes operational efficiency and...
-
Junior Soc Analyst
3 days ago
Delhi, Delhi, India Airtel Full time ₹ 9,00,000 - ₹ 12,00,000 per yearSOC Analyst | JOB Description | Airtel1-3 Years of ExperienceRole SOC Analyst – A1Roles and RequirementsThe Level 1 SOC Security Analyst is responsible for conducting information security investigations due to security incidents identified from various SOC entry channels (SIEM, Tickets, Email and Phone).Experience with Seceon/Threat Hunting/ Dark Web...