SOC Analyst

4 - 9 years

3 - 8 Lacs

hyderabad bengaluru mumbai (all areas)

Posted:-1 days ago| Platform: Naukri logo

Apply

Work Mode

Hybrid

Job Type

Full Time

Job Description

Role & responsibilities

The Security Operation Center (SOC) Analyst's daily duties include operational support of the Security Event and Information System and various other security services.

Primary Skills: -

SIEM (Exabeam Data Lake & Analytics, Fortisiem), Service Now, EDR (CrowdStrike), DLP(Forcepoint),

Secondary Skills: -

Microsoft Azure, Email Gateway (Avanan), Cisco Umbrella, Okta.

Responsibilities

The Security Operation Centre (SOC) Analyst will:

  • Monitor the Security Event and Information Systems (SIEM) by daily review and analysis of alerts generated. Perform incident response activities of anomalies, triage, and escalation of daily alerts, as necessary.
  • Monitor the Data Loss Prevention (DLP) by daily review of alerts generated. Perform initial investigation of anomalies, triage, and escalation of daily alerts, as necessary.
  • Monitor reported Spam and Phishing emails, perform basic investigation, quarantine, and escalate incidents, as necessary.
  • Meet USI defined SLA for security incident: Mean Time To Detect (MTTD) and Mean Time To Respond (MTTR).
  • Monitor, Configure, Develop, Design, Architect, Implement, Acquire, Operate systems in accordance with:
  • USI Policies for the Information Security Program (PISP)
  • Standards for the Information Security Program (SISP)
  • Keep up to date with security updates and improvements to safeguard information system assets by identifying and solving potential and actual security problems.
  • Protect systems against damage, changes, or illegal access by defining access privileges, control structures, and resources.
  • Recognize problems by identifying abnormalities and reporting violations.
  • Implement security improvements by assessing current situation; evaluating trends; anticipating requirements.
  • Determine security violations and inefficiencies by conducting periodic audits.
  • Other security duties, as assigned.

Knowledge, Skills And Abilities

  • Ability to understand and correlate data from multiple sources, not limited to user authentication events, windows security event logs, syslog, NetFlow/PCAP data, DHCP logs, DNS logs, intrusion detections alerts, proxy logs, packet captures, and firewall events.
  • Knowledge of various security methodologies and processes, and technical security solutions is a plus.
  • Understanding of how both Windows, Linux and network platforms are compromised is a plus.
  • Technical IT experience as a Help Desk Analyst or Security/Network Administrator or equivalent knowledge.
  • Knowledge of Microsoft Active Directory, Group Policy, DNS, Certificate Services, DHCP.
  • Previous Security Operations Center (SOC) experience is a plus.
  • Experience with Security Information and Event Management (SIEM) tools is a plus.
  • Solid understanding of IP networking fundamentals, including IPv4, TCP/IP, LAN/WAN design theory, static and dynamic routing protocols, NAT, ACLs, etc.
  • Knowledge of scripting languages such as Python or PowerShell is a plus.
  • Solid understanding of cyber forensics concepts including malware, hunt, etc. is a plus.
  • Associates Degree in Computer Information Systems, Cyber Security, Computer Science or related.
  • Security Certifications Preferred: CompTIA: Security+, Network+; GSEC: GIAC Security Essentials, GISG: GIAC Information Security Fundamentals
  • Familiar with governance and compliance concepts, practices, and procedures, which includes but is not limited to HIPAA, PCI-DSS, ISO, NIST, SOX, GDPR, CCPA, NAIC.

Skills

  • Reading Comprehension - Understanding written sentences and paragraphs in work related documents.
  • Critical Thinking - Using logic and reasoning with attention to details, to identify the strengths and weaknesses of alternative solutions, conclusions or approaches to problems.
  • Complex Problem Solving - Identifying complex problems and reviewing related information to develop and evaluate options and implement solutions.
  • Speaking - Talking to others to convey information effectively.
  • Writing - Communicating effectively in writing as appropriate for the needs of the audience.
  • Judgment and Decision Making - Considering the relative costs and benefits of potential actions to choose the most appropriate one.
  • Time Management - Managing one's own time and the time of others in a deadline driven environment.
  • Service Orientation - Actively looking for ways to help people.

Experience

  • 1+ years' experience as an analyst in Information Security in a corporate IT department/NOC/SOC

  • 1+ years of experience with security products, such as SEIM, DLP, NGAV, Vulnerability Scanners, URL Filters, Email security tools.

  • Previous experience monitoring, analysing, and escalating, security incidents from multiple sources.

  • Ability to effectively communicate in a technical team environment.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
Capgemini logo
Capgemini

IT Services and IT Consulting

Paris France

RecommendedJobs for You

hyderabad, bengaluru, mumbai (all areas)

mumbai, maharashtra