About the role
KEY RESPONSIBILITIES:
Strong experience in managing and administering SIEM Systems, like ArcSight & MS Sentinel
Hands on experience on security incident management
Technical experience in security products, technologies, and SOC processes
Strong technical understanding of networking, Internet protocols, and information security5. Good knowledge in Cloud Security.
Work on day-to-day SOC operation, such as security monitoring, SIEM health checks, investigate & analyze SIEM cases, and prepare required reports.
Perform analysis of security logs from various security controls such as FW, proxy, IPS, endpoints and applications
Identify threats & attacks and take the required actions.
Investigate, analyze, and mitigate security incidents as per the standard incident response process
Work in SOC environment "24/7", 3-shifts.
SOC Operation, Security Monitoring 24x7, shift base
Incident Response
SIEM Health Check4. Security reporting
Additional Skills
Digital Forensics tools
Professional certification in ArcSight and / or MS Sentinel
Other Security Certification, like CISSP, CISA, CISM
QUALIFICATIONS & EXPERIENCE
Bachelor of Information Security / Computer Science / Computer Engineering with 3 to 6 years of experience