T&T - Cyber : D&R - SIEM - Consultant

2 - 6 years

14 - 18 Lacs

Posted:3 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Advanced Security Monitoring

  • Monitor and analyse alerts from SIEM, EDR, NDR, Email Security, DLP, IAM, and Cloud Security tools.
  • Validate alerts escalated by L1 and identify true security incidents.
  • Correlate events across multiple data sources to identify attack patterns.

Alert Investigation & Triage

  • Perform deep-dive analysis of suspicious activities (login anomalies, malware alerts, lateral movement).
  • Distinguish between false positives, misconfigurations, and real threats.
  • Enrich alerts with context (asset criticality, user behaviour, threat intel).

Incident Escalation & Coordination

  • Escalate confirmed incidents to IR/L3 with complete investigation details.
  • Coordinate with IT, IAM, Network, and Endpoint teams for containment actions.
  • Ensure SLA adherence and proper ticket updates in ITSM/SOAR.

Threat Indicators & Monitoring Enhancements

  • Identify IOCs and behavioural indicators during investigations.
  • Recommend improvements to monitoring rules and alert thresholds.
  • Support continuous improvement of SOC dashboards and reports.

Documentation & Shift Handover

  • Maintain accurate case notes, investigation steps, and evidence.
  • Prepare shift handover notes and monitoring summaries.
  • Support audits and compliance reporting. 1. Advanced Security Monitoring
  • Monitor and analyse alerts from SIEM, EDR, NDR, Email Security, DLP, IAM, and Cloud Security tools.
  • Validate alerts escalated by L1 and identify true security incidents.
  • Correlate events across multiple data sources to identify attack patterns.

Alert Investigation & Triage

  • Perform deep-dive analysis of suspicious activities (login anomalies, malware alerts, lateral movement).
  • Distinguish between false positives, misconfigurations, and real threats.
  • Enrich alerts with context (asset criticality, user behaviour, threat intel).

Incident Escalation & Coordination

  • Escalate confirmed incidents to IR/L3 with complete investigation details.
  • Coordinate with IT, IAM, Network, and Endpoint teams for containment actions.
  • Ensure SLA adherence and proper ticket updates in ITSM/SOAR.

Threat Indicators & Monitoring Enhancements

  • Identify IOCs and behavioural indicators during investigations.
  • Recommend improvements to monitoring rules and alert thresholds.
  • Support continuous improvement of SOC dashboards and reports.

Documentation & Shift Handover

  • Maintain accurate case notes, investigation steps, and evidence.
  • Prepare shift handover notes and monitoring summaries.
  • Support audits and compliance reporting.

Desired qualifications

  • Education B. E / B.Tech (Tier 1/2) in Computer Science, Information Technology or related fields

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You

hyderabad, bengaluru, delhi / ncr