2 - 7 years

10 - 18 Lacs

Posted:None| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Job Position Title: Associate /Senior Associate- SOC

Location: Gurgaon

Years of experience required: 4-7 Years

  • • Responsible for initial or secondary triage of security incidents identified by internal controls or external SOC partners 
  • • Proficient in Threat Research and understands the latest malware trends, common attack TTPs, and the general threat landscape 
  • • Proficient in Incident Response and automation workflows as it relates to Security Operations 
  • • Demonstrates ability to author content using a variety of query languages, as well as scripting for event enrichment and investigation 
  • • Detects, identifies, and responds to cyber events, threats, security risks and vulnerabilities in line with cyber security policies and procedures 
  • • Conducts threat hunting and analysis using various toolsets based on intelligence gathered 
  • • Responsible for documenting the incident life cycle, conducting handoffs, escalation, and providing support during cyber incidents 
  • • Create detailed Incident Reports and contribute to lessons learned in collaboration with the team 
  • • Works with vulnerability management resources to uncover and prioritize potential risks and makes specific recommendations to reduce the threat landscape and minimize risk 
  • • Works with leadership and the engineering team to improve and expand available toolsets when warranted are critical for the role 

Required Qualifications Skills :

  • • Experience with one or more Security Information and Event Management (SIEM) solutions 
  • • Understanding of common Attack methods and their SIEM signatures 
  • • Experience in security monitoring, Incident Response (IR), security tools configuration and security remediation 
  • • Strong knowledge and experience in Security Event Analysis capability 
  • • Understanding of network protocols (TCP/IP stack, SSL/TLS, IPSEC, SMTP/IMAP, FTP, HTTP etc.) 
  • • Understanding of Operating System, Web Server, database, and Security devices (firewall/NIDS/NIPS) logs and log formats 
  • • Understanding of String Parsing and Regular Expressions 
  • • Strong analytical and problem-solving skills 
  • • High level of personal integrity, and the ability to professionally handle confidential matters and show an appropriate level of judgment and maturit
  •  • Ability to interact effectively at all levels with sensitivity to cultural diversit
  • • Ability to adapt as the external environment and organization evolves
  • • Passionate about Cybersecurity domain and has the inclination to learn current technologies / concepts / improvements
  • • Excellent in security incident handling, documentation, root cause analysis, troubleshooting and publishing post-Incident Reports.
  • • Strong experience with cyber security in the domains of cyber threat intelligence and analysis, security monitoring and incident response
  • • Experience of network and system vulnerabilities, malware, networking protocols and attack methods to exploit vulnerabilities
  • • Knowledge of cyber security frameworks and attack methodologies
  • • Experience working with EDRs, Proxies, and anti-virus
  • • Knowledge of intrusion detection methodologies and techniques for detecting host- and network-based intrusions via intrusion detection technologies
  • • Excellent verbal and written English communication skills Experience
  • • More than 4-6 years of experience in Enterprise Cybersecurity or with a reputed services/consulting firm offering Security Consulting, Implementation and Managed Security services
  • • More than 4 years of technical experience in Security Operations Center (SOC) and Information Security required
  • • Experience with one or more Security Information and Event Management (SIEM) solutions

Mandatory skill sets:

  • Email Security: Proofpoint, Abnormal Security, M365 Defender
  • • SOAR: Palo Alto XSOAR • SIEM: Splunk
  • • Firewall: Palo Alto
  • • EDR: Crowdstrike
  • • Other tools: Darktrace and M365 Defender

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
ERM Placement Services logo
ERM Placement Services

Staffing and Recruiting

Atlanta

RecommendedJobs for You

Pune, Maharashtra, India

Bengaluru, Karnataka, India

Bengaluru, Karnataka, India

Hyderabad, Telangana, India

Noida, Uttar Pradesh, India

Hyderabad, Telangana, India

Noida, Chennai, Bengaluru

noida, new delhi, gurugram