TechdefenceLabs is looking for a Security Operations Centre Analyst. The successful candidate will combine their natural curiosity with hands-on experience to support all TechdefenceLabs security operation center (SOC) activities including incident response, threat hunting and remediation. It is preferred that the Security Operations Analyst has hands-on experience in enterprise technologies such as Windows, Mac OSX and Linux operating systems, Identity and Access Management (IAM), Vulnerability Scanners, Endpoint Detection and Response (EDR) tools, Data Loss Prevention (DLP) tools, Intrusion Detection and Prevention Systems (IDS/IPS), Next Generation Firewalls (NGFW), packet capture tools, log correlation and analysis tools (SIEM), antivirus technologies, Security Orchestration Automation and Response (SOAR) and malicious code analysis tools.
Essential Responsibilities:
- Splunk / Securonix SIEM Deployment after understanding client environment
- Integration of different types of data sources on Splunk / Securonix.
- Monitors SIEM / Log Management & alerting tools and also handles escalated incidents from L1 team.
- Triages alerts as they come in and action appropriately.
- Respond to common alerts in a consistent and repeatable manner from multiple alerting sources.
- Responsible for triage of a variety of alerts stemming from multi-tenant environment for SIEM.
- Provide support for escalations of unknown threats given to Level 2.
- Identify abnormal security events and trigger the call list / distribution list.
- SIEM Usecases creation and dashboards creation depending upon client requirements
- Performance Optimization / Performance Tuning
- Providing knowledge transfer to L1 team and new joiners
- Defining SOPs for Incident management process for different clients
- Checking health of client's different data sources and provide support to client team for any troubleshooting
- Manage SIEM licenses and ensure to finetune logs in case of any license breach.
Qualifications/Requirements:
- Minimum IT Degree Holder or equivalent.
- Ability to work in rotating shifts and also be on-call outside of shift hours on a regular and recurring basis.
- Possess personal and professional integrity. Individuals will be required to submit to a background examination.
- Good oral and written communication skills.
- Possess desire to solve problems logically.
Desired Characteristics:
- Ability to perform logical problem solving.
About TechdefenceLabs
We, at TechdefenceLabs, an Award-winning, Innovative, Visionary IT security company having customers in three different continents, help many organizations ( Not Limited to any Industry Vertical / Domain) including Fortune 100 Companies in the World, to secure their basic security infrastructure using latest scanning technologies, methodologies and deep expertise provide end to end information Security Services Solutions Management with customer-concentric objectives such as getting access to:
- Cyber Security Framework Implementation as per 19+ Cyber Security Compliance Standards.
- Cyber Security Policies formulation for Stockbrokers / Banks / Corporate Organizations / SMEs and Startups.
- Security Assessment (VAPT) of Business-Critical IT Assets of Organization.
- Achieving Security Controls as per Cyber Security Guidelines.
- Providing Training to the internal team on maintaining compliance.
- Security Monitoring for Threat Intelligence.
Some of our differentiators are as follows:
- Highly Passionate Info-sec team (MSRC Top 100 hackers in world, TOP 5 in all popular responsible disclosure programs/platforms).
- Worked with clients like Adani, Indian Oil, HPCL, Swiggy, and many well-renowned brands.
- Certified Professionals - All our experts are certified as Certified ethical hackers and offensive security certified professionals.
- 80% manual testing/assessment for excellent security assessment results.
Some of our recent past's Achievements:
- Awarded Multiple times as India's Best IT Security Organization.
- Sunny Vaghela (Founder & CEO) has been appointed as Indian Brand Ambassador of Cyber Security 2018.
- Sunny Vaghela (Founder & CEO) has been awarded as Times Man of the year - Cyber Security 2018.
- Leading IT Security Organization by Govt of Telangana at Indywood IT excellent Award for 2018.
- India's Most Admired IT Security Company 2018 award by Entrepreneur Council of India and Cloud Security Alliance.
- ET Industry Leaders 2021 by Economic Times into Cyber Security Category.