Work in 24x7 shift
Continuous eyes on the glass to view all logs and alerts
Detect Incidents by monitoring the SIEM console, Rules, Reports and Dashboards.
To Monitor the SIEM console resources to identify any anomalies.
To report the incident to the concerned team along with the SOC.
To escalate the incident whenever the SLAs are not met.
To monitor the health of the SIEM tool.
Triage events related to EDR tool and M365
To assist SOC Analyst in incident workflow.
To assist SOC team in incident detection and resolving.
To communicate with external teams in proper incident resolution.
Documentation and MIS reports
TECHNICAL/FUNCTIONAL SKILLS REQUIRED
Understanding of Cybersecurity Fundamentals Security Fundamentals
Log Analysis
Threat Intelligence
Networking/Operating Systems
Communication Skills
SOFT SKILLS REQUIRED
Problem Solving
Time Management
Critical Thinking
Team Work
ADDITIONAL CERTIFICATIONS REQUIRED
SIEM Certifications
Other Cybersecurity Certifications