- Investigate escalated SentinelOne MDR incidents thoroughly and perform detailed Root Cause Analysis (RCA).
- Manage Trend Micro Server Security configuration policies, exclusions, and anti-malware modules.
- Configure, optimize, and tune content rules for Netskope DLP, SWG, and corporate Proxy instances.
- Administer CyberArk PAM including target onboarding, password rotation scheduling, and privileged session audits.
- Administer Skillmine IDAM identity lifecycle processes, Role-Based Access Controls (RBAC), and user access reviews.
- Perform systematic Indicators of Compromise (IOC) / Indicators of Attack (IOA) mappings using the MITRE ATTCK framework.
- Conduct proactive Threat Hunting across endpoints and network segments using EDR and SIEM threat queries.
- Manage technical Vulnerability Assessments utilizing toolsets like Qualys, Tenable, or Rapid7.
- Coordinate and follow up on remediation paths and patch updates with IT Infrastructure teams.
- Tune SIEM detection rules and correlation logic continuously to eliminate chronic false-positive noise.
- Deeply review and extract intelligence from firewall, VPN, and secure web proxy logs during investigations.
- Support Vulnerability Assessment and Penetration Testing (VAPT) remediation actions and track external audit observations.
- Prepare and submit the Weekly Security Dashboard, Metrics, and comprehensive RCA Reports.
Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.