Summary:
Responsible to manage and develop security observaibility technologies tower to ensure technology operations of SOC solutions such as SIEM, SOAR, UEBA, NBAD. Responsible for seamless integrations, optimization and enahncements to ensure optimum security, performance, availability and SLAs.
Experience: Candidate should have 10+ years of experience preferably in Banking and Technology organization
Knowledge:
1.Sound experience in managing SOC technologies and operations in a large and complex environment and public cloud such as AWS, GCP, Azure.
2.Should have sound understanding & knowledge of various SOC technologies & techniques like SIEM, SOAR, UEBA, NBAD, Threat Intel, Deception etc. 3. Should have hands on experience on SOC platform administration, Log Source integration with Cloud workload, Secuirty Orchestration and Automated Response, Playbook, Usecase engineering, incident response techniques and technologies. Finetune, configuring and thresholds for SIEM and vulnerability tools. 4.Should have knowledge & understanding of IT infrastructure & networking technologies, operations and security principles. Ability to analyze endpoint, network, and application logs. Knowledge of various security methodologies and technical security solutions. 5. Should prepare and implement the use cases for SOC monitoring team able to provide proactive threat hunting to detect incidents. 6.Should have sound understanding about Threat Hunting, Mitigation and Response. 7.Strong understanding of Regulatory security guildelines & master directions and security frameworks such as ISO 27001, NIST, or CIS. 8. Should be well versed with ITIL and ITSM practices.
Skills:
1. Exceptional analytical, conceptual thinking, Troubleshooting and problem-solving skills.
2. Strong leadership, negotiation, and conflict resolution skills. 3. Detail-oriented with a focus on quality and accuracy in project/service deliverables 4. Should have strong written, verbal and presentation skills. 5. Ability to perform under pressure, influence stakeholders and work closely with them to determine acceptable solutions.
1. Manage SOC technologies like Log management, SIEM, SOAR, UEBA, NBAD, Attack Surface Management, Deception etc. for IFTAS cloud.
2. Responsible for Cyber Security Posture Mangement by ensuring coverage and effectiveness of various cyber sceurity controls deployed across organization. 3. Ensure the day-to-day operations, maintenance, configuration, availability and SLA management of the SOC solutions and its infrastructure. 4.Ensure & maintain up-to-date documentation - SOPs, Architecture digrams etc. to remove dependency on people 5. Manage configuration changes and deployments according to established change management processes, ensuring minimal disruption and adherence to best practices. 6. Ensure hardening,secuirty patches and upgardation to latest stable version of SOC solutions and its infrastructure. 7. Track EOL/EOS and ensure that there no technology obsolescence. 8. Ensure resolution of technology incidents and operational issues by providing technical inputs. 9. Collboarte and coordinate with internal teams and external stake holders to restore service within agreed-upon SLAs. 10.Manage escalations and run the smooth operations of SOC security solutions. 11.Ensure relevant processes are followed for change, incident & daily operations 12.Identify & analyse pain areas in existing security operations & implement improvements. 13. Ensure compliance with regulatory requirements, security policies, and security frameworks such as ISO 27001, NIST, or CIS 14. Publish the relevant dashboards and status updates. 15.Escalate deviations and violations in a timely manner. 16.Budgeting - CAPEX & OPEX 17.Remain current with latest Technology trends, emerging threats, industry best-practices and developments in cyber security.