Cyber_MS_MDR_DLP - Consultant
6 hours ago
This role is for you if you have the below
Educational qualifications
- 5+ years of experience in information security preferably in the areas of incident response, investigations
- Bachelor's degree from an accredited college/university or equivalent professional experience
- Act as an L3/SME for the pillar Data Loss Prevention with experience working with SIEM solutions (Sentinel, Splunk, LogRhythm, QRadar, etc.)
- Familiarity performing packet analysis
- Hands on experience & working knowledge of DLP tools such as ZScaler tools
Work experience
- We are looking for a of DLP resource with 3.5+ years of relevant experience in DLP alert monitoring/triaging. The resource must work from our Bangalore office and willing to work on shifts
- Candidate must be willing to Work from Office only (Bangalore Location) & willing to do 24x7 rotational shift.
The ideal candidate will:
- At least 60 months of overall experience in information security preferably in the areas of incident response, investigations
- Monitor and respond to alerts generated from the DLP systems and other technologies
- Understand and follow the incident response process through event escalations
- Respond to escalations by the Incident Response Team
- Follow processes to maintain the DLP system
- Utilize Sentinel/Splunk and multiple DLP solutions such as Symantec DLP, Proofpoint DLP etc. to respond to, investigate, triage and prevent client data loss via email and web
- Implement DLP fine-tuning rules/policies in the relevant DLP solution.
- Escalate issues or obstacles that may prevent the execution of daily DLP activities
- Track and present DLP metrics and findings on a monthly basis to senior management
- Recommend process enhancements to improve operational inefficiencies regarding DLP
- A quick learner and adaptable to changing environments
- Have strong analytical skills and communication skills
- Build strong professional working relationships with client personnel
- Working in rotational shifts supporting client environment.
- Deliver timely and high-quality work diligently
- Identify issues and opportunities, and communicate them to appropriate senior member
Mandatory Certification Required:
- Strong knowledge base in operations, enterprise networking, systems evaluation and architecture
- Certifications (e.g., GCIH, CISSP, CCSP) are preferred
- Detailed, control oriented, and thorough
- Previous experience as a member of an Incident Response team is a plus.
This role is for you if you have the below
Collaboration and Leadership:
- Work closely with cross-functional teams, including IT, security, and compliance, to ensure a cohesive approach to security and privileged access management.
- Participate in project planning and execution for initiatives related to DLP, providing expert insights and technical expertise.
- Follow processes to maintain the DLP system.
- Implement DLP fine-tuning rules/policies via Symantec DLP, ZScaler etc.
- Provide mentorship and advanced training to junior support specialists and other team members on best practices and emerging technologies.
Documentation and Reporting:
- Monitor and respond to alerts generated from the DLP systems and other technologies
- Understand and follow the incident response process through event escalations
- Respond to escalations by the Incident Response Team
- Follow processes to maintain the DLP system
Behavioral / Team skills
- Excellent communication (written and verbal) and interpersonal skills
- Ready to work in Shifts (on 3 shift rotation pattern)
- Flexibility to adapt to a variety of engagement types, working hours and work environments and locations
- Proven ability to work creatively and analytically in a problemsolving environment
- Desire to learn and contribute
- Focused and self-motivated approach to work
- Personal drive and positive work ethic to deliver results within tight deadlines and in demanding situations
This role is for you if you have the below
Educational qualifications
- 5+ years of experience in information security preferably in the areas of incident response, investigations
- Bachelor's degree from an accredited college/university or equivalent professional experience
- Act as an L3/SME for the pillar Data Loss Prevention with experience working with SIEM solutions (Sentinel, Splunk, LogRhythm, QRadar, etc.)
- Familiarity performing packet analysis
- Hands on experience & working knowledge of DLP tools such as ZScaler tools
Work experience
- We are looking for a of DLP resource with 3.5+ years of relevant experience in DLP alert monitoring/triaging. The resource must work from our Bangalore office and willing to work on shifts
- Candidate must be willing to Work from Office only (Bangalore Location) & willing to do 24x7 rotational shift.
The ideal candidate will:
- At least 60 months of overall experience in information security preferably in the areas of incident response, investigations
- Monitor and respond to alerts generated from the DLP systems and other technologies
- Understand and follow the incident response process through event escalations
- Respond to escalations by the Incident Response Team
- Follow processes to maintain the DLP system
- Utilize Sentinel/Splunk and multiple DLP solutions such as Symantec DLP, Proofpoint DLP etc. to respond to, investigate, triage and prevent client data loss via email and web
- Implement DLP fine-tuning rules/policies in the relevant DLP solution.
- Escalate issues or obstacles that may prevent the execution of daily DLP activities
- Track and present DLP metrics and findings on a monthly basis to senior management
- Recommend process enhancements to improve operational inefficiencies regarding DLP
- A quick learner and adaptable to changing environments
- Have strong analytical skills and communication skills
- Build strong professional working relationships with client personnel
- Working in rotational shifts supporting client environment.
- Deliver timely and high-quality work diligently
- Identify issues and opportunities, and communicate them to appropriate senior member
Mandatory Certification Required:
- Strong knowledge base in operations, enterprise networking, systems evaluation and architecture
- Certifications (e.g., GCIH, CISSP, CCSP) are preferred
- Detailed, control oriented, and thorough
- Previous experience as a member of an Incident Response team is a plus.
This role is for you if you have the below
Collaboration and Leadership:
- Work closely with cross-functional teams, including IT, security, and compliance, to ensure a cohesive approach to security and privileged access management.
- Participate in project planning and execution for initiatives related to DLP, providing expert insights and technical expertise.
- Follow processes to maintain the DLP system.
- Implement DLP fine-tuning rules/policies via Symantec DLP, ZScaler etc.
- Provide mentorship and advanced training to junior support specialists and other team members on best practices and emerging technologies.
Documentation and Reporting:
- Monitor and respond to alerts generated from the DLP systems and other technologies
- Understand and follow the incident response process through event escalations
- Respond to escalations by the Incident Response Team
- Follow processes to maintain the DLP system
Behavioral / Team skills
- Excellent communication (written and verbal) and interpersonal skills
- Ready to work in Shifts (on 3 shift rotation pattern)
- Flexibility to adapt to a variety of engagement types, working hours and work environments and locations
- Proven ability to work creatively and analytically in a problemsolving environment
- Desire to learn and contribute
- Focused and self-motivated approach to work
- Personal drive and positive work ethic to deliver results within tight deadlines and in demanding situations
This role is for you if you have the below
Educational qualifications
- 5+ years of experience in information security preferably in the areas of incident response, investigations
- Bachelor's degree from an accredited college/university or equivalent professional experience
- Act as an L3/SME for the pillar Data Loss Prevention with experience working with SIEM solutions (Sentinel, Splunk, LogRhythm, QRadar, etc.)
- Familiarity performing packet analysis
- Hands on experience & working knowledge of DLP tools such as ZScaler tools
Work experience
- We are looking for a of DLP resource with 3.5+ years of relevant experience in DLP alert monitoring/triaging. The resource must work from our Bangalore office and willing to work on shifts
- Candidate must be willing to Work from Office only (Bangalore Location) & willing to do 24x7 rotational shift.
The ideal candidate will:
- At least 60 months of overall experience in information security preferably in the areas of incident response, investigations
- Monitor and respond to alerts generated from the DLP systems and other technologies
- Understand and follow the incident response process through event escalations
- Respond to escalations by the Incident Response Team
- Follow processes to maintain the DLP system
- Utilize Sentinel/Splunk and multiple DLP solutions such as Symantec DLP, Proofpoint DLP etc. to respond to, investigate, triage and prevent client data loss via email and web
- Implement DLP fine-tuning rules/policies in the relevant DLP solution.
- Escalate issues or obstacles that may prevent the execution of daily DLP activities
- Track and present DLP metrics and findings on a monthly basis to senior management
- Recommend process enhancements to improve operational inefficiencies regarding DLP
- A quick learner and adaptable to changing environments
- Have strong analytical skills and communication skills
- Build strong professional working relationships with client personnel
- Working in rotational shifts supporting client environment.
- Deliver timely and high-quality work diligently
- Identify issues and opportunities, and communicate them to appropriate senior member
Mandatory Certification Required:
- Strong knowledge base in operations, enterprise networking, systems evaluation and architecture
- Certifications (e.g., GCIH, CISSP, CCSP) are preferred
- Detailed, control oriented, and thorough
- Previous experience as a member of an Incident Response team is a plus.
This role is for you if you have the below
Collaboration and Leadership:
- Work closely with cross-functional teams, including IT, security, and compliance, to ensure a cohesive approach to security and privileged access management.
- Participate in project planning and execution for initiatives related to DLP, providing expert insights and technical expertise.
- Follow processes to maintain the DLP system.
- Implement DLP fine-tuning rules/policies via Symantec DLP, ZScaler etc.
- Provide mentorship and advanced training to junior support specialists and other team members on best practices and emerging technologies.
Documentation and Reporting:
- Monitor and respond to alerts generated from the DLP systems and other technologies
- Understand and follow the incident response process through event escalations
- Respond to escalations by the Incident Response Team
- Follow processes to maintain the DLP system
Behavioral / Team skills
- Excellent communication (written and verbal) and interpersonal skills
- Ready to work in Shifts (on 3 shift rotation pattern)
- Flexibility to adapt to a variety of engagement types, working hours and work environments and locations
- Proven ability to work creatively and analytically in a problemsolving environment
- Desire to learn and contribute
- Focused and self-motivated approach to work
- Personal drive and positive work ethic to deliver results within tight deadlines and in demanding situations