Your browser does not support javascript! Please enable it, otherwise web will not work for you.

SOC Specialist I - Cyber Security @ UST

Home > IT Security

 SOC Specialist I - Cyber Security

Job Description

Role Proficiency:

Serve as the first point of contact for cyber security incidents escalations and investigation. Work with different teams to improve service provided by SOC to clients around the globe.

Outcomes:

  1. React on cyber security incident escalation from L1 or customer on defined SLA and with proper investigation
  2. Analyze the L1 processes and create a new relevant process for service
  3. Analyzing the L1 requests for SIEM rule tuning and suggest relevant changes
  4. Perform trends analysis on collected data (s and incidents) and detection rules coverage
  5. Providing trainings for L1 on new technologies and tools
  6. Work with different teams (SIEM L1 TAM and etc) to provide required service to customers
  7. Perform review on handled s

Measures of Outcomes:

  1. Accurate review on all handled s by L1 daily
  2. Reply to escalation on time based on defined SLA
  3. Number of False Positive detections reduced
  4. Percentage of threats that are blocked detected and reported

Outputs Expected:

Incident Advance investigations :

  1. Investigate an incident escalated from previous layer
  2. Include investigation in customer's security tools


Review and improve work and processes in L1 team:

  1. Performing daily review on L1 activity (closed and escalated s/incidents) to validate that the investigation is in required quality and the decisions are correct


Improve SOC detection and monitoring service :

  1. Analysis the triggered detection rules in SIEM solution to reduce a false positive rate and improve detection quality

Skill Examples:

SIEM IPS WAF etcFast self-learningGood analytic skillsGood soft skills (Verbal and writing)Presentation skill (Verbal)Programming languages such as C C# Python Perl Java PHP and Ruby on Rails

Knowledge Examples:

Knowledge Examples

  1. Experience as SOC analyst or parallel role in cyber security
  2. Good knowledge in cyber security area: Understanding attack methods and tools understanding the attack vectors be familiar with defence methodology be updated on current trends in cyber
  3. Have experience in incident guideline definitions

Additional Comments:

L3 SOC Analyst Experience :13 years (out of this, minimum 7 years' experience on proposed CSOC solution) - Experience with SIEM vendors such as QRadar, Sentinel, Splunk - Incident response and threat hunting expertise - Strong knowledge of attack patterns, Tools, Techniques, and Procedures (TTPs) - Experience in writing procedures, runbooks, and playbooks - Strong analytical and problem-solving skills - Hands-on experience with system logs, network traffic analysis, and security tools - Proficiency in identifying Indicators of Compromise (IOCs) and Advanced Persistent Threats (APTs) Good-to-Have Skills: - Experience setting up SIEM solutions and troubleshooting connectivity issues - Familiarity with security frameworks and best practices - Ability to collaborate with IT and security teams effectively Responsibilities: - Act as an escalation point for high and critical severity security incidents - Conduct in-depth investigations to assess impact and understand the extent of compromise - Analyze attack patterns and provide recommendations for security improvements - Perform proactive threat hunting and log analysis to detect potential threats - Provide guidance on mitigating risks and improving security hygiene - Identify gaps in security processes and propose enhancements - Ensure end-to-end management of security incidents - Document and update incident response processes and define future outcomes - Participate in war room discussions, team meetings, and executive briefings - Train team members on security tools and incident resolution procedures


Required Skills

Soc,Network Security,Cyber Security

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Cyber Security
Employement Type: Full time

Contact Details:

Company: UST
Location(s): Kochi

+ View Contactajax loader


Keyskills:   c# sentinel python analytical cyber security network security soc ip verbal communication presentation skills information security vulnerability management siem vulnerability assessment incident response qradar cyber security java ruby rails threat hunting splunk php perl

 Job seems aged, it may have been expired!
 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Sales Director IT

  • Evangelist Technology
  • 10 - 18 years
  • Noida, Gurugram
  • 3 days ago
₹ 9.6-15.6 Lacs P.A.

Devops Engineer

  • Infogrowth
  • 5 - 10 years
  • Chennai
  • 3 days ago
₹ 10-20 Lacs P.A.

Security Advisor

  • Accenture
  • 2 - 7 years
  • Hyderabad
  • 3 days ago
₹ Not Disclosed

Security Delivery Lead

  • Accenture
  • 7 - 11 years
  • Noida, Gurugram
  • 3 days ago
₹ Not Disclosed

UST

OIL&GAS Industry