Padmi

SOC Analyst

IndiaPosted 3 months ago
CybersecurityJuniorFull Time; Regular
Apply at Antal International Network

Opens the source posting on shine.com

Source description

About the role

View original

As an OT Security Operations Center (SOC) Analyst / Engineer, your role will involve deploying, configuring, maintaining, and optimizing Nozomi Networks platforms across multiple OT environments. You will be responsible for monitoring and investigating alerts and anomalies across OT networks, providing detailed incident analysis and response actions. Additionally, you will correlate OT and IT security events to identify threats, vulnerabilities, and misconfigurations. Your coordination with OT engineers, IT security teams, and third-party vendors for threat hunting and response efforts will be crucial. You may lead or support forensic investigations and root cause analysis in OT/ICS incidents. Ensuring compliance with internal policies and industry standards such as IEC 62443, NIST CSF, and others will also be part of your responsibilities. Moreover, you will provide detailed reports, dashboards, and threat intelligence insights to stakeholders. Key Responsibilities: - Deploy, configure, maintain, and optimize Nozomi Networks platforms across multiple OT environments. - Monitor and investigate alerts and anomalies across OT networks, providing detailed incident analysis and response actions. - Correlate OT and IT security events to identify threats, vulnerabilities, and misconfigurations. - Develop and fine-tune detection use cases, signatures, and alerts within Nozomi and SIEM platforms. - Coordinate with OT engineers, IT security teams, and third-party vendors for threat hunting and response efforts. - Lead or support forensic investigations and root cause analysis in OT/ICS incidents. - Ensure compliance with internal policies and industry standards such as IEC 62443, NIST CSF, and others. - Provide detailed reports, dashboards, and threat intelligence insights to stakeholders. Qualifications Required: - Minimum 2 years direct hands-on experience with Nozomi Networks tools and services. - Proven experience in OT/ICS cybersecurity, especially within critical infrastructure environment. - Experience with virtualization platforms (VMware, Proxmox, etc.). - Hands-on experiences with SIEM tools - configuring data sources, filtering, parsing. - Strong understanding of industrial protocols (Modbus, DNP3, IEC 104, OPC, etc.). - Demonstrated experience with network traffic analysis, anomaly detection, and alert tuning in OT environments. - Knowledge of SOC operations, SIEM tools, and incident response workflows. - Excellent communication and documentation skills with the ability to explain technical issues to non-technical stakeholders. - Experience working with cross-functional teams in IT/OT converged environments. Nice to Have: - Certifications such as Nozomi Certified Engineer. - Experience with other OT security platforms (Claroty, Dragos, SCADAfence, etc.). - Basic knowledge about Linux, Familiarity with SIEM tools such as Splunk, QRadar, or LogRhythm. - Exposure to threat intelligence frameworks, MITRE ATT&CK for ICS, or threat hunting techniques in OT. - Experience with firewalls, NAC, or asset management tools in industrial environments and operational technology (OT) environments. As an OT Security Operations Center (SOC) Analyst / Engineer, your role will involve deploying, configuring, maintaining, and optimizing Nozomi Networks platforms across multiple OT environments. You will be responsible for monitoring and investigating alerts and anomalies across OT networks, providing detailed incident analysis and response actions. Additionally, you will correlate OT and IT security events to identify threats, vulnerabilities, and misconfigurations. Your coordination with OT engineers, IT security teams, and third-party vendors for threat hunting and response efforts will be crucial. You may lead or support forensic investigations and root cause analysis in OT/ICS incidents. Ensuring compliance with internal policies and industry standards such as IEC 62443, NIST CSF, and others will also be part of your responsibilities. Moreover, you will provide detailed reports, dashboards, and threat intelligence insights to stakeholders. Key Responsibilities: - Deploy, configure, maintain, and optimize Nozomi Networks platforms across multiple OT environments. - Monitor and investigate alerts and anomalies across OT networks, providing detailed incident analysis and response actions. - Correlate OT and IT security events to identify threats, vulnerabilities, and misconfigurations. - Develop and fine-tune detection use cases, signatures, and alerts within Nozomi and SIEM platforms. - Coordinate with OT engineers, IT security teams, and third-party vendors for threat hunting and response efforts. - Lead or support forensic investigations and root cause analysis in OT/ICS incidents. - Ensure compliance with internal policies and industry standards such as IEC 62443, NIST CSF, and others. - Provide detailed reports, dashboards, and threat intelligence insights to stakeholders. Qualifications Required: - Minimum 2 year

One address, no account. We’ll tell you when matching roles go live.

More at Antal International Network

Related open roles

View all roles