SOC Analyst Bangalore
Company
IBM
Location
IN Bangalore
Type
Full Time
Job Description
Information and Data are some of the most important organizational assets in today’s businesses. As a Security Consultant you will be a key advisor for IBM’s clients analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client’s organization with the cognitive solutions that are making IBM the fastest growing enterprise security business in the world.
Your Role and Responsibilities
- EDR alert monitoring.
- Performing TI based and hypothesis driven threat hunting oriented to SIEM logs.
- Support the incident response team during major security incident with advance investigation skills.
- Closely work with SOC team and be responsible for incident detection triage analysis and response.
- Handle L2 and above level technical escalations from L1 Operations team and resolve within SLA.
- Finetune of existing use case of SIEM to reduce false positive.
- Perform and reviews tasks as identified in a daily task list.
- Report Generation and Trend Analysis.
- Walkthrough of the daily weekly and monthly SOC reports to the customer/stake holders.
- Ready to work in 24×7 rotational shift model including night shift.
- Identify the process and technology gaps and drive for closure.
- Explore different technologies available in the security industry.
- Analyse and tune threat monitoring dashboards.
- Coordination with internal customers for their security related problems and providing solutions.
- Create and manage various KEDBs the SOPs runbooks asset inventory with risk classification critical application flow diagram network flow diagram privileged user list.
- Mentor and monitor L1 team members for their daily activities.
- Provide KT and required training to other team members.
Required Technical and Professional Expertise
- 2 to 3 + years of IT experience in security with at least 2+ Years in Security Operation centre with SIEMs and EDR.
- Good to have hands on experience with managing SIEM solutions on public/private clouds like Amazon AWS Microsoft Azure etc.
- Proven Experience on any of the Security information and event management (SIEM) tools like (Qradar Splunk McAfee ESM etc.)
- Data-driven threat hunting using SIEM and other threat hunting tools.
- Experience is SOAR tools such as Qradar Resilient PaloAlto XSOAR
- Identify quick defence techniques till permanent resolution.
- Recognize successful intrusions and compromises through review and analysis of relevant event detail information.
- Launch and track investigations to resolution. Recognize attacks based on their signatures differentiates false positives from true intrusion attempts.
- Actively investigates the latest security vulnerabilities advisories and incidents.
- Identify the gaps in security environment & suggest the gap closure.
- Drive & Support Change Management.
Preferred Technical and Professional Expertise
- Certifications: CEH or ECIH or CompTIA security analyst.
- Ambitious individual who can work under their own direction towards agreed targets/goals and with creative approach to work.
- Intuitive individual with an ability to manage change and proven time management.
- Proven interpersonal skills while contributing to team effort by accomplishing related results as needed.
- Up-to-date technical knowledge by attending educational workshops reviewing publications.
- Any entrant or Professional skill on shell scripting AIX Linux or Python.
Date Posted
06/05/2024
Views
5
Similar Jobs
Business Analyst - Elite Software Automation
Views in the last 30 days - 0
Elite Software Automation ESA is a boutique consulting firm that specializes in process optimization custom systems and automations for established hi...
View DetailsSenior Product Manager - Toggl
Views in the last 30 days - 0
Toggl is seeking a Senior Product Manager for a global team of 130 people working from over 40 countries The role involves defining product strategy d...
View DetailsGrowth Manager - Awesome Motive
Views in the last 30 days - 0
Awesome Motive the company behind popular web apps and business tools like All in One SEO OptinMonster MonsterInsights and WPForms is seeking a datadr...
View DetailsGrowth Manager - Awesome Motive
Views in the last 30 days - 0
Awesome Motive the company behind popular web apps and business tools like All in One SEO OptinMonster MonsterInsights and WPForms is seeking a datadr...
View DetailsProduct Analyst - Wordwall
Views in the last 30 days - 0
This job posting is for a Product Analyst position in the education field with a focus on user behavior analysis The role involves identifying product...
View DetailsSenior Principal Incident Response and Security Operations Engineer - Autodesk
Views in the last 30 days - 0
Autodesk is seeking a Senior Principal Incident Response and Security Operations Engineer for a hybrid role in Bengaluru India The ideal candidate wil...
View Details