Padmi

L2 CSOC Specialist

IndiaPosted 3 months ago
CybersecuritySeniorFull Time; Regular

Source description

About the role

View original

As a C-SOC Level 2 Analyst with 5-8 years of experience, you will be responsible for the following key responsibilities: - Conduct advanced incident response activities, including comprehensive log analysis and detailed incident reporting. - Demonstrate proficiency in Malware Analysis and Threat Hunting. - Utilize tools effectively to enhance the efficiency of Incident Response within a SOC. - Utilize THOR Scanner, VMRay, and Recorded Future Sandbox for incident analysis. - Demonstrate expertise in Microsoft Security Products, such as MS Defender for Endpoint, Cloud, Identity, AV, and MS Sentinel. - Possess knowledge in Application, Cloud, and Infrastructure security, including Firewalls, Proxies, and Web Application Firewalls (WAF). - Be willing to provide support and work in 24/7 rotational shifts, including weekends. Your technical knowledge should include: - Proficiency in using advanced tools for detecting and analyzing sophisticated threats. - Capability to conduct in-depth technical analyses of incidents and provide detailed technical information. - Experience in documenting and analyzing incident timelines and events. - Skill in reviewing and analyzing user access logs to identify unauthorized or suspicious activities. - Proficiency in analyzing email logs to trace phishing attacks, spoofed messages, and other email-related threats. - Expertise in using SIEM systems, IDS/IPS, and other security monitoring tools. - Experience in using sandbox environments to analyze malware behavior safely. - Ability to provide technical feedback to internal security teams. - Strong analytical skills to interpret complex datasets and identify security threat patterns. - Collaboration with L3-Mail-Security and Mail Teams to support mail security during incidents. - Skill in refining and tuning alerting systems based on incident insights to enhance detection capabilities. - Responsibility for maintaining and managing the SOC Knowledgebase, including playbooks, processes, and contacts. - Collaboration with the Cyber Incident Response (CIR) Service for activation and incident management. Please note that the additional details of the company were not included in the provided job description. As a C-SOC Level 2 Analyst with 5-8 years of experience, you will be responsible for the following key responsibilities: - Conduct advanced incident response activities, including comprehensive log analysis and detailed incident reporting. - Demonstrate proficiency in Malware Analysis and Threat Hunting. - Utilize tools effectively to enhance the efficiency of Incident Response within a SOC. - Utilize THOR Scanner, VMRay, and Recorded Future Sandbox for incident analysis. - Demonstrate expertise in Microsoft Security Products, such as MS Defender for Endpoint, Cloud, Identity, AV, and MS Sentinel. - Possess knowledge in Application, Cloud, and Infrastructure security, including Firewalls, Proxies, and Web Application Firewalls (WAF). - Be willing to provide support and work in 24/7 rotational shifts, including weekends. Your technical knowledge should include: - Proficiency in using advanced tools for detecting and analyzing sophisticated threats. - Capability to conduct in-depth technical analyses of incidents and provide detailed technical information. - Experience in documenting and analyzing incident timelines and events. - Skill in reviewing and analyzing user access logs to identify unauthorized or suspicious activities. - Proficiency in analyzing email logs to trace phishing attacks, spoofed messages, and other email-related threats. - Expertise in using SIEM systems, IDS/IPS, and other security monitoring tools. - Experience in using sandbox environments to analyze malware behavior safely. - Ability to provide technical feedback to internal security teams. - Strong analytical skills to interpret complex datasets and identify security threat patterns. - Collaboration with L3-Mail-Security and Mail Teams to support mail security during incidents. - Skill in refining and tuning alerting systems based on incident insights to enhance detection capabilities. - Responsibility for maintaining and managing the SOC Knowledgebase, including playbooks, processes, and contacts. - Collaboration with the Cyber Incident Response (CIR) Service for activation and incident management. Please note that the additional details of the company were not included in the provided job description.

One address, no account. We’ll tell you when matching roles go live.

L2 CSOC Specialist at STRATLINK IT CONSULTING AND SOLUTIONS PRIVATE LIMI · Padmi