Security Operations Center Analyst
12 hours ago
Job Summary:
The Security Operations Center (SOC) Security Analyst serves in a SOC team, is responsible for conducting information security investigations as a result of security incidents identified by the Level-1 security analysts who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone).
The SOC Security Analyst is expected to have a solid understanding of information security and computer systems concepts and should be ready to work in shifts.
An engineer in this position act as a point of escalation for Level-1 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques.
Job Description
:
- Responsible for conducting information security investigations as a result of security incidents identified by the Level 1 security analyst who are monitoring the security consoles from various SOC entry channels (SIEM, Tickets, Email and Phone),
- Act as a point of escalation for Level-1 SOC security analysts in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques.
- Should have experience in Developing new correlation rules & Parser writing
- Experience in Log source integration
- Act as the lead coordinator to individual information security incidents.
- Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks (tools, techniques, Procedures) in support of technologies managed by the Security Operations Center.
- Document incidents from initial detection through final resolution.
- Participate in security incident management and vulnerability management processes.
- Coordinate with IT teams on escalations, tracking, performance issues, and outages.
- Works as part of a team to ensure that corporate data and technology platform components are safeguarded from known threats.
- Communicate effectively with customers, teammates, and management.
- Prepare Monthly Executive Summary Reports for managed clients and continuously improve their content and presentation.
- Provide recommendations in tuning and optimization of security systems, SOC security process, procedures and policies.
- Define, create and maintain SIEM correlation rules, customer build documents, security process and procedures.
- Follow ITIL practices regarding incident, problem and change management.
- Staying up-to-date with emerging security threats including applicable regulatory security requirements.
- Maintain an inventory of the procedures used by the SOC and regularly evaluate the SOC procedures and add, remove, and update the procedures as appropriate
- Publish weekly reports to applicable teams
- Generate monthly reports on SOC activity
- Secondary skills like AV, HIPS, DCS, VA/ PT desirable
Required Technical Expertise
- Must have experience in SIEM Management tool (QRADAR)
- Should have certifications like, ITIL, CCNA, CEH, VA (Product) Certification, CISM, CISSP/CISM/OSCP/OSCE.
- Process and Procedure adherence
- General network knowledge and TCP/IP Troubleshooting
- Ability to trace down an endpoint on the network, based on ticket information
- Familiarity with system log information and what it means
- Understanding of common network services (web, mail, DNS, authentication)
- Knowledge of host based firewalls, Anti-Malware, HIDS
- General Desktop OS and Server OS knowledge
- TCP/IP, Internet Routing, UNIX / LINUX & Windows NT
-
Security Operations Center Lead
1 week ago
Gurgaon, Haryana, India Rexoreo Consulting Full time ₹ 15,00,000 - ₹ 25,00,000 per year____________________________________________________________________________- PLEASE SAVE WHATSAPP # Ashima)/ Nishant)- Ashima/ Nishant/Shreedevi is your POC from RexOreo Pvt Ltd.-Queries : All emails will come from id : , so please keep an eye._____________________________________________________________________________Top Selection & Auto Elimination...
-
Security Operations Center Analyst
1 week ago
Gurgaon, Haryana, India Rexoreo Consulting Full time ₹ 12,00,000 - ₹ 36,00,000 per year___________________________________________________________________________- PLEASE SAVE WHATSAPP # Ashima)/ Nishant)- Ashima/ Nishant/Shreedevi is your POC from RexOreo Pvt Ltd.-Queries : All emails will come from id : , so please keep an eye._____________________________________________________________________________Top Selection & Auto Elimination...
-
Tech Process Team Lead
2 weeks ago
Gurgaon, Haryana, India Google Operations Center Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJoin UsAt Google Operations Center we help Google users and customers solve problems and achieve their goals—all while enjoying a culture focused on improving continuously and being better together. We work hard, we play hard, and we want you to join usAs a Tech Process Team Lead, you will serve as a strategic leader and resource for the email production...
-
Security Analyst
2 days ago
Gurgaon, Haryana, India Incedo Full time ₹ 5,00,000 - ₹ 12,00,000 per yearPOSITION SUMMARY:The SOC Analyst (Level 1) will use a variety of tools to investigate incidents and take immediate action or recommend a course of action to safeguard Incedos Managed Services Clients.The SOC Analyst (Level 1) is responsible for monitoring and responding to security related alerts triggered in the SIEM tool within Incedos Technology Partners...
-
Analytics & Insights Specialist - Analytics
7 days ago
Gurgaon, Haryana, India Google Operations Center Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJoin UsAt Google Operations Center we help Google users and customers solve problems and achieve their goals—all while enjoying a culture focused on improving continuously and being better together. We work hard, we play hard, and we want you to join usAs an Analytics and Insights Specialist, you will leverage your expertise in SQL and data visualization...
-
Security Analyst
2 days ago
Gurgaon, Haryana, India Datacultr Full time ₹ 12,00,000 - ₹ 24,00,000 per yearABOUT USDatacultr is a global Digital Operating System for Risk Management and Debt Recovery, we drive Collection Efficiencies, Reduce Delinquencies and Non-Performing Loans (NPL's). Datacultr is a Digital-Only provider of Consumer Engagement, Recovery and Collection Solutions, helping Consumer Lending, Retail, Telecom and Fintech Organizations to expand and...
-
Cyber Security Analyst
5 hours ago
Gurgaon, Haryana, India Capgemini Full time ₹ 15,00,000 - ₹ 25,00,000 per yearCyber Security Analyst Capgemini is Looking for passionate \"Cyber Security Analyst\" resource to join our team. Experience: 6 to 12 Years Skills :-Experience with Splunk for log analysis and KNIME for reporting. Cisco CyberOps Professional / CCNP Security Splunk Certified Admin / Power User GCIH / GCIA / GCFA / CEH CompTIA CySA+ /...
-
Security Analyst/Cyber Security
1 week ago
Gurgaon, Haryana, India Amor Management Consultants Full time ₹ 1,00,000 - ₹ 3,00,000 per yearSecurity Analyst IT & OT Cyber SecurityLevel – Assistant/Deputy ManagerBudget – 15 LPA (Max 30% Hike on current ctc)Location – Gurgaon, Sec-355 Days working , 17 Saturday working in a yearJob Summary:The Security Analyst is responsible for ensuring the security and compliance of IT and OT environments. This includes managing cyber security operations,...
-
Security Analyst – SIEM
1 week ago
Gurgaon, Haryana, India Innova ESI Full time ₹ 8,00,000 - ₹ 24,00,000 per yearRole: Security Analyst – SIEM (Splunk Administrator)Experience: 5+ YearsLocation: Gurugram / Delhi NCRNotice: Immediate Joiners OnlyJob ResponsibilitiesUnderstand business security requirements and develop accurate and realistic design plan along with risk mitigation solutions for the project.Have a broad technical and deep security-based background.Able...
-
Coralogix- Cloud Security Analyst-VAPT
1 week ago
Gurgaon, Haryana, India Nexthire Full time ₹ 80,00,000 - ₹ 1,50,00,000 per yearTitle: Cloud Security Analyst (SOC/SIEM)Experience Level: 3- 6+ years Location: GurgaonWe work 5 days a week from the office.24*7 rotational shift env. (morning and afternoon shift are work from office),Night shift and weekend is work from homePreferred Cloud Platforms: AWS, Azure, or GCPKey Responsibilities:Cloud Security essentials- Focus on incident...