06 Aug
|
Sigma Allied Services
|
Mumbai
06 Aug
Sigma Allied Services
Mumbai
- Monitor and analyze security alerts and events using Splunk SIEM.
- Perform incident triage, investigation, and escalation in line with SOC procedures.
- Respond to security incidents such as phishing attacks, malware infections, unauthorized access, and suspicious activities.
- Conduct log analysis across multiple systems including endpoints, servers, network devices, and cloud environments.
- Develop and fine-tune Splunk searches, dashboards, alerts, and correlation rules.
- Participate in threat hunting activities to proactively identify hidden threats.
- Support the incident response lifecycle (Detection, Analysis, Containment, Eradication, Recovery).
- Document incidents, findings, and remediation actions in detail.
- Collaborate with internal teams (IT, Network, Security Engineering) for issue resolution.
- Stay updated with the latest cybersecurity threats, vulnerabilities,
and attack techniques.
- Hands-on experience with Splunk (log analysis, dashboards, alerting, SPL queries).
- Robust understanding of SOC operations and SIEM tools.
Preferred Skills:
- Experience with threat hunting techniques.
- Knowledge of MITRE ATTCK framework.
- Exposure to EDR/XDR tools (e.g., Microsoft Defender, CrowdStrike).
- Basic scripting knowledge (Python / PowerShell) is a plus.
- Familiarity with SOAR tools and automation.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Splunk Professional (Mumbai)
🏢 Sigma Allied Services
📍 Mumbai