Key Responsibilities
- Monitor and analyze security alerts using SIEM tools (Splunk, QRadar, Sentinel, etc.)
- Perform incident triage, investigation, and escalation
- Analyze logs from various sources (firewalls, endpoints, servers)
- Support incident response and remediation activities
- Work with threat intelligence (IOC/TTP) for proactive detection
- Maintain incident documentation and ticketing
- Ensure compliance with ISMS policies, controls, and audit requirements
Required Skills
- Hands-on experience with SIEM & EDR/XDR tools
- Solid understanding of networking (TCP/IP, DNS, HTTP)
- Knowledge of security concepts: SOC operations, threat detection, incident response
- Familiarity with ISMS frameworks (ISO 27001)
- Experience with Windows/Linux environments
- Basic scripting (Python/PowerShell)
📌 SOC ISO Certified (Delhi)
🏢 Coforge
📍 Delhi