Flag job

Report

SOC Analyst - Detection Engineering

Min Experience

5 years

Location

Mumbai

JobType

full-time

About the job

Info This job is sourced from a job board

About the role

As a SOC Analyst - Detection Engineering in the bank's security operations center (SOC), the individual will be responsible to strengthen the creation and optimization of Analytical rules and alerts configured in the bank's SIEM platform. Key Responsibilities Business Understanding Accountable to ensure all security anomalous activities are detected by the bank's SIEM platform and false positives are kept to a minimum. Collaborate Will be responsible to build analytical correlational rules in the bank's SIEM platform covering network, systems and endpoints, cloud (SAAS, IAAS and PAAS) and applications (both COTS and internally developed). Verify the ingested logs and ensure log parsing to normalize the events. Implement a testing methodology to test the alerts configured and obtain sign off before releasing into production. Reduce false positives. Provide expert guidance and support to the security operations team in the use of for threat hunting and incident investigation. Analysing the detected Incidents to identify lessons learned to improve response processes and make recommendations for enhancing security posture. Reporting Develop and maintain documentation for Analytical rules processes and procedures. Stay Up to date with the latest trends and developments in cybersecurity and SIEM technologies and recommend improvements to the organization security posture.

About the company

ICICI Bank's Technology Risk Management Group believes in providing services to its customers in the safest and secure manner keeping in mind that data protection and secure Technology for its customers is as important as providing quality banking services across the spectrum. The CIA triad of Confidentiality, Integrity, and Availability is at the heart of building a comprehensive information security framework. The Bank also lays emphasis on customer elements like protection from phishing, adaptive authentication, awareness initiatives, and provide easy to use protection and risk configuration ability in the hands of customers. The Bank also undertakes campaigns to create awareness among customers on security aspects while banking through digital channels

Skills

SIEM
cybersecurity
security operations
incident response
cloud security
networking
systems
endpoints
log parsing
analytics
threat hunting