KPMG Global Services - Managed Services - SOC Analyst

0 years

0 Lacs

Posted:2 days ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Contractual

Job Description

The Consulting business at KPMG Global Services (KGS) is a diverse team of more than 6400 professionals. We work with KPMG Firms worldwide to transform the businesses of clients across industries through the latest technology and innovation. Our technology professionals combine deep industry knowledge with strong technical experience to navigate through complex challenges and deliver real value for our clients.


Through your work, you’ll build a global network and unlock opportunities that you may not have thought possible with access to great support, vast resources, and an inclusive, supportive environment to help you reach your full potential.



Roles and Responsibilities:


Security Operations Center


We are currently seeking Security Associate for our KPMG Managed Services (Spectrum) practice to join us in our Bangalore office.



Note : Candidate must be willing to Work from Office only (Bangalore Location) & willing to do 24x7 rotational shift (Mandatory requirement for this role)


Job details:


Proposed designation :


Role type :


Reporting to :


Work timings :


This role is for you if you have the below


Work experience:


Specifically, Security Analysts (L1) will:


Rapidly identify, categorize, prioritize and investigate events as the initial cyber event detection group for the enterprise using all available security logs and intelligence sources to include but not limited to:

a. Firewalls

b. Systems and Network Devices

c. Web Proxies

d. Intrusion Detection/Prevention Systems

e. Data Loss Prevention

f. EDR / Antivirus Systems

g. Knowledgebase Framework (Confluence)


  1. Continuously monitor SIEM and logging environments for security events and alerts to threats, intrusions, and/or compromises, including:
  2. SIEM alert queue
  3. Security email inbox
  4. Intel feeds via email and other sources (e.g. NH-ISAC)
  5. Incident Ticketing queue (IT Security group)
  6. Validate alerts as they come in to eliminate false positives and use other internal and external data sources to enrich alerts with additional context
  7. Perform triage of service requests from customers and internal teams
  8. Use playbook procedures to carry out standard plays for routine event types and escalate alerts to Level 2 Analysts for further triage and remediation
  9. Assist with containment of threats and remediation of environment during or after an incident
  10. Act as a participant during Threat Hunting activities at the direction of one or more Incident Response Handlers
  11. Document event analysis and write comprehensive reports of incident investigations
  12. Proactively improve security-related operational processes and procedures
  13. Use available security tools for historical analysis purposes as necessary for detected events; for example, historical searches using SIEM tools
  14. Maintain operational shift logs with relevant activity from the Analyst’s shift. Document investigation results, ensuring relevant details are passed to Level 2 or MDR Analysts for final event analysis
  15. Update/reference knowledgebase tool (e.g. Confluence) as necessary for changes to processes and procedures, and ingest of daily intelligence reports and previous shift logs
  16. Conduct research and document events of interest within the scope of IT Security


This role is for you if you have the below:


Educational qualifications :


  • Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field
  • Minimum of 0-1 years of prior MDR/SOC/Incident response experience

  • Basic understanding of network protocols, security principles, and security technologies (e.g., firewalls, IDS/IPS, antivirus, etc.).
  • Act as a workstream participant to support tier-1, tier-2, or tier-3 SOC environments
  • Demonstrated strong oral and written communication and client facing skills
  • Demonstrated strong analytical and communications skills
  • Flexibility to adapt to different types of engagement, working hours, work environments, and locations
  • Proven ability to work creatively, analytically in a problem-solving environment
  • Ability to work nights, weekends, and/or holidays in the event of an incident response emergency
  • Be comfortable working against deadlines in a fast-paced environment
  • Identify issues, opportunities for improvement, and communicate them to an appropriate senior member


Required skills:


  • Excellent written and verbal communication skills.
  • Experience with SIEM tools (Qradar, Splunk, Logrhythm, Solarwinds, etc.)
  • Experience in Microsoft Sentinel
  • Familiarity with common IDS/IPS and Firewalls (Snort, Cisco, Fortigate, Sourcefire)
  • Familiarity with incident response process and activities
  • Familiarity with TCP/IP protocol, OSI Seven Layer Model
  • Knowledge of Windows, Unix-based systems, architectures, and network security devices
  • Intermediate level of knowledge of LAN and WAN technologies
  • Must have a solid understanding of information technology, information security domains
  • Knowledge of security best practices and concepts
  • Desired certifications: Security+, C|EH, Network+, Certified Information Systems Security Professional (CISSP), GIAC Certified Intrusion Analyst, GIAC Certified Incident Handler, or GIAC Reverse Engineering Malware
  • Familiarity with ticketing tool / ITSM tool
  • Personal drive, positive work ethic to deliver results within tight deadlines and in demanding situations

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
KPMG India logo
KPMG India

Professional Services

Pune

RecommendedJobs for You