Job Description
B.Sc/M.Sc. (computer science/IT)/ BCA /MCA/Engineering.
Certification.
CEH/SIEM Certification or any cybersecurity certifications
Following are the key responsibilities of L1 SOC Operator:
1. Monitor Dashboards & Rules triggered by Qradar to invoke incident handling process.
2. Monitor health of QRadar looking into respective administrative dashboards.
3. Acknowledge the Offenses and alerts generated by Qradar
4. Perform Initial analysis of the Offenses triggered, or anomalies observed on the dashboards before sending it to SOC Analyst and IS Security Team.
5. Gather necessary information from QRadar with respect to the case which would serve as evidence and aid SOC Analyst in further investigation of the case.
6. Report the Offenses triggered in the form of cases to SOC Analyst for incident validation.
7. Follow-up with on the case/incident to effectively resolve the case/incident in the ticketing tool.
8. Track the lifecycle of the entire case/ incident to effectively resolve the case/incident.
9. Assist SOC Analyst by providing necessary information in managing the case/incidents.
10. Consolidate the information gathered from the automatically generated reports from Netwitness and submit to SOC Analyst for review.
11. Ensure that daily reports, weekly reports and monthly reports are generated, prepared and sent to the concerned personnel within agreed timelines.
12. Take regular backup of QRadar and SOC/IS Security devices as per the defined schedule.
13. Follow shift handover process and maintain the incident database.
14. Track server shutdowns, blocked IPs and log sources not reporting to QRadar.
Job Classification
Industry: IT Services & Consulting
Functional Area / Department: Human Resources
Role Category: HR Operations
Role: HR Analyst
Employement Type: Full time
Contact Details:
Company: Inspira Enterprise
Location(s): Kochi
Keyskills:
Administration
Ticketing
SOC
SIEM
Database
SOC Analyst
Management
IPS
Monitoring