Get alerts for new jobs matching your selected skills, preferred locations, and experience range. Manage Job Alerts
10.0 - 12.0 years
11 - 16 Lacs
pune
Work from Office
A UEBA (User and Entity Behavior Analytics) Administrator is a cybersecurity professional responsible for deploying, configuring, maintaining, and optimizing UEBA solutions to detect and respond to anomalous user and entity behavior within an organization's network. This role is crucial in identifying insider threats, compromised accounts, and sophisticated attacks that might bypass traditional security measures. Key ResponsibilitiesThe UEBA Administrator's responsibilities:*Deployment and Configuration:*Installing and setting up UEBA platforms and related components. *Integrating UEBA solutions with various data sources (e.g., SIEM, Active Directory, network devices, applications, cloud services, endpoint logs) to ensure comprehensive data ingestion. *Defining and configuring behavioral baselines for users and entities, utilizing machine learning algorithms.*Monitoring and Analysis:*Continuously monitoring UEBA dashboards and alerts for deviations from established baselines. *Analyzing anomalous activities to determine their risk level and potential impact. *Investigating security incidents triggered by UEBA alerts, collaborating with SOC teams and other security personnel. *Performing threat hunting activities using UEBA insights to proactively identify hidden threats.*Rule and Policy Management:*Developing, refining, and implementing correlation rules and policies within the UEBA platform to enhance threat detection accuracy. *Tuning the system to minimize false positives and ensure high-fidelity alerts. *Automating response actions where appropriate, such as locking accounts or blocking access.*System Maintenance and Optimization:*Performing regular health checks, upgrades, and patching of the UEBA infrastructure. *Optimizing the performance and efficiency of the UEBA solution. *Documenting configurations, procedures, and incident response playbooks related to UEBA.*Reporting and Compliance:*Generating reports on user and entity behavior, detected anomalies, and security posture. *Assisting with compliance requirements by providing data and insights from UEBA. * Staying updated with the latest threat landscape and UEBA capabilities.---- Required education Bachelor's Degree Preferred education Bachelor's Degree Required technical and professional expertise -Required Skills and Qualifications*Technical Expertise:*Strong understanding of UEBA conceptsHow machine learning and behavioral analytics are applied to security. *Proficiency with UEBA platformsExperience with leading UEBA solutions (e.g., Gurucul UEBA, Splunk UEBA, Exabeam, Fortra, Microsoft Sentinel UEBA, IBM QRadar UEBA). *Networking KnowledgeUnderstanding of network protocols, traffic analysis, and common attack vectors. *Operating SystemsFamiliarity with Windows, Linux, and other relevant operating systems. *Security Information and Event Management (SIEM)Experience with SIEM tools and their integration with UEBA. *Data AnalysisAbility to work with large datasets, perform data correlation, and extract meaningful insights. *Scripting/AutomationKnowledge of scripting languages (e.g., Python, PowerShell) for automation and data manipulation is a plus. *Cloud SecurityUnderstanding of cloud environments and their unique security challenges if applicable.*Analytical Skills: *Critical ThinkingAbility to analyze complex data and identify subtle behavioral anomalies. *Problem-SolvingAptitude for troubleshooting and resolving issues related to UEBA systems and security incidents. *Attention to DetailMeticulous approach to configuring systems and investigating alerts.*Soft Skills: *CommunicationExcellent written and verbal communication skills to articulate technical concepts and findings to both technical and non-technical stakeholders. *TeamworkAbility to collaborate effectively with SOC analysts, incident response teams, and other IT departments. *Continuous LearningEagerness to stay abreast of evolving cybersecurity threats and technologies.*Qualifications:*Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field. Preferred technical and professional experience 3-5 yrs exp in managing Gurucul UEBA Platform Administration & Ops Relevant industry certifications (e.g., CompTIA Security+, Certified Ethical Hacker (CEH), GSEC, vendor-specific UEBA certifications) are highly advantageous. Proven experience in a security operations center (SOC) or a similar cybersecurity role.
Posted Date not available
4.0 - 6.0 years
6 - 10 Lacs
navi mumbai
Work from Office
Experience :- 4 - 6 Yrs Location:- CBD Belapur Skills :- Hands on experience on UEBA such as Gurucul GRA, Rapid 7 Insight IDR, IBM QRadar, NBAD and PCAP solutions such as Vehere NDR and CISOC, Stealthwatch, RSA Pacets, etc. solutions (combination of any 2 at least) Should have strong knowledge on SIEM Solutions like IBM Qradar, RSA Netwitness, LogRythm, etc. Job Responsibilities:- Managing SIEM platform (H/W, OS & application) Device integrations, trouble shooting skills Use case creation, fine tuning & reviews Ability to investigate incidents Incident Management, response & handling escalations Good command over Linux Managing open tickets, discussing issues with OEM Should be good in communication skills to interact with different stake holders Creation of reports & dashboards Provide data related to various compliance requirements and audits. Certification if any :- CEH, EC-CSA, GIAC
Posted Date not available
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
Accenture
73564 Jobs | Dublin
Wipro
27625 Jobs | Bengaluru
Accenture in India
22690 Jobs | Dublin 2
EY
20638 Jobs | London
Uplers
15021 Jobs | Ahmedabad
Bajaj Finserv
14304 Jobs |
IBM
14148 Jobs | Armonk
Accenture services Pvt Ltd
13138 Jobs |
Capgemini
12942 Jobs | Paris,France
Amazon.com
12683 Jobs |