SOC L3 Engineer

3 - 5 years

5 - 7 Lacs

Posted:1 day ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Role Overview:

  • SOC Engineering L3 position will be responsible for analyzing, designing, and developing commercially viable end-to-end technical solutions based on business needs. In support of these, the role will include developing advanced correlation rules, reports, and dashboards to detect emerging threats in SIEM Cloud platforms. You will help design solutions for security problems, partner with service teams and other security stakeholders to ensure rapid adoption of solutions and mitigation of threats from beginning to end.

Key Responsibilities:

  • Sentinel SIEM, EDR, EDR, Email Security administration and operation management
  • Custom/unsupported devices integrate with Sentinel SIEM and use cases creation.
  • Content creation on SIEM to cover all stages of MITRE.
  • EDR, MDO and E5 security policy fine-tuning.
  • DNS Management
  • Design, develop, monitor, adhere to various SLAs/KPIs/KRIs applicable to Security Operations Centre.
  • Creation of customized reports and dashboards for presentation to various stakeholders.
  • Identify and address technical or operational risks.
  • SIEM and other security platform performance and capacity management
  • Develop and maintain technology architecture cost and return on investment (ROI) models to assess architecture change.
  • Should be able to perform analysis of logs from various devices and develop use cases considering evolving threat landscape for anomaly detection.
  • Lead any module within Security Operations Center like Threat Hunting, Threat Intelligence,
  • Content Management etc. to improve overall detection response capabilities.
  • Well versed with logging standard development and device onboarding/log source integration of diversified devices including the ones not supported by SIEM OEM.
  • Should have clear understanding of MITRE framework and how to operationalize the same across multiple functions of SOC.
  • Handle 24*7 operations and support various SOC activities
  • Good Communication Skill and stakeholder management is imperative.

Education Qualifications:

  • Bachelor s degree relevant to Information Technology, Computer Science/Engineering (or equivalent).
  • Advanced certification desirable RHEL certified, Sentinel Admin, AZ-900, CISP, CCSP, AWS Certified Solution Architect Associate, Google Cloud Professional Security Engineer, Microsoft Certified: Azure Security Engineer Associate.

Experience:

  • 3 to 5 years of experience in Engineering Admin in Cyber Security. Overall 5+ Years of experience
  • Strong experience in Sentinel SIEM architecture, administration.
  • Proven experience in assessing, designing, deploying, and operating SIEM platforms.
  • Expertise in SIEM use cases creation.
  • Expertise in CSPM policy creation and fine-tuning.
  • Experience in defining best practices for optimized application and platform performance.
  • Demonstrated expertise in modifying configurations that improve SIEM performance.
  • Proficient in Kusto query language (KQL) and experienced in developing use cases.
  • Strong technical knowledge of Linux, Firewalls and Load Balancing principles.
  • Deep IT industry knowledge in specific areas related to Security like VM, AVM etc, Managed Security Services etc.
  • Can validate/evaluate if an information system or operational architecture meets technical requirements and specifications.
  • Familiar with multiple architectural, development and operational methodologies.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
Tech Defence Labs logo
Tech Defence Labs

Cybersecurity

San Francisco

RecommendedJobs for You

navi mumbai, maharashtra, india

gurgaon, haryana, india

Mumbai Metropolitan Region