logo

JobNob

Your Career. Our Passion.

Technical Specialist


HCLTech


Location

Chennai | India


Job description

Job Description (Posting).

Job Description for SIEM Analyst/Incident Responder/Threat Hunter

HCL CSFC provides a superior foundation for building a professional career - a place for people to learn, to achieve and grow. A philosophy that balances personal lifestyles, perspectives and needs is an important part of our culture.

CSFC Noida is looking for an experienced SIEM Analyst professional candidate to join its team.

Candidate Persona

Ability to work with very large and complex network.

Self-motivated individual and creative thinker who will take ownership of tasks and projects, able to work with the team, and manages tasks effectively and has a proven track record of consist and organized outputs.

The ideal candidate will demonstrate an eagerness to understand complex problems and requirements, an aptitude for translating these problems into workable designs and solutions, and will possess a keen eye for detail.

This position is based in Noida, India

Skills Required 4+ years for L2 8+ years for L3: Hands-on experience in 2 or more of the SIEM Analysis and SIEM content management areas

Having knowledge/experience on any SIEM tools or Experience on IDS (Intrusion Detection systems) platform and Network Security roles.

Exposure to Mitre framework and equivalent, Hands on experience in EDR platforms and threat analysis, threat hunting/incident response experience.

Experience and knowledge in Network security/ System Security/ Endpoint Security.

Experience of Event Monitoring and analysis and escalations. Provide inputs for content management.

Experience on Monthly, Weekly and daily reporting.

Willing to work on 24/7 operations.

Review SIEM escalated incidents and qualify true positives

Provide a monthly trend and security analysis summary report

Provide SIEM event/Incident analytics support

Provide log analysis summary and recommendations on detection/protection of incidents

Perform advanced triages and work in collaboration with resolved groups, third party or with designated customer contacts

Liaise between cross functional teams and assist in formulating security incident response report

Advocate protection and mitigation strategies to be implemented from lessons learnt exercises

Soft skills

Shall have good verbal/written communication skills

Should be willing to work in 24x7 environments

From time to time travel opportunities may be assigned

Incumbent should carry continual system improvement mindset and able to demonstrate in work.

Client facing technical analysis report and presentation skills

  • To clearly understand the client's cybersecurity environment and respective product. (2.) To monitor, configure, and troubleshoot cybersecurity issues and related monitoring tools (3.) To analyse and validate cybersecurity incidents in-detail and help the L3 team with RCAordata or logs collection (4.) To enable knowledge transferortrainings through creationor maintenance of configuration documents, test plans, operational manuals and provide operational training to L1 team. (5.) To analyse and fine-tune cybersecurity policies, participate in cybersecurity review calls pertaining to change requests and recommendations on cybersecurity policy changes. (6.) To implement changes, monitor security device performance and implements performance tuning when necessary. (7.) To prepare analyses and reports to highlight the project progressorchallenges and ensure quality and accuracy to the client

Qualification

B.E., B.Sc (Hons), Bachelor of Science, BBA, BCA, BCom, BCS, B-Tech, M.E., M.Sc, M.TECH, Master of Computer Networks, Masters in Business Administration, MCA

No. of Positions

1

Skill (Primary)

Information Security-SIEM expert-SIEM expert

Auto req ID

1357691BR


Job tags



Salary

All rights reserved