Source description
About the role
Job Description Perform real time monitoring, incident handling, investigation, analysis, reporting, and escalations of security events. Integrate log sources with SIEM create use cases. Identify suspicious/malicious activities through logs. Preparation of Incident tracker and follow-up with client IT team for mitigation. Communicate with the clients to resolve the queries related to incidents. Prepare Review Daily, Weekly and Monthly Reports/Dashboard. Create Review advisories and ensure organization is protected from latest threats vulnerabilities. Skills Required Hands on experience in monitoring events and investigating incidents daily. Experience in identifying, analyzing, and responding to security incidents within defined SLA. Hands-on experience working on SIEM / EDR Tools like Crowdstrike, QRadar etc. Configuring use cases creating playbooks for security monitoring will be an added advantage. Experience of working in a 24 7 Security Operations Center (rotational shifts).