07 Aug
|
KPMG Assurance and Consulting Services
|
Navi Mumbai
07 Aug
KPMG Assurance and Consulting Services
Navi Mumbai
Job Summary
We are looking for an experienced Operations Lead to lead and manage Security Operations Center (SOC) functions, Threat Hunting (TH), Cyber Threat Intelligence (CTI), Data Security operations, and SIEM platforms, particularly ELK Stack. The ideal candidate will drive security monitoring, incident response, threat detection, operational excellence, and team leadership while ensuring proactive defense against cyber threats.
Key Responsibilities
Security Operations Center (SOC)
- Lead and manage 24x7 SOC operations and security monitoring activities.
- Oversee incident detection, analysis, triage, containment, and remediation processes.
- Define and enhance SOC processes, workflows, and operational procedures.
- Monitor SLAs, KPIs, MTTR, MTTD, and service delivery metrics.
- Conduct incident reviews and root cause analysis.
Threat Hunting & Detection Engineering
- Develop and execute proactive threat hunting programs.
- Create and optimize detection use cases based on MITRE ATT&CK; framework.
- Identify advanced threats, insider risks, and suspicious activities.
- Improve detection coverage through behavioral analytics and threat intelligence.
Cyber Threat Intelligence (CTI)
- Collect, analyze,
and operationalize threat intelligence from multiple sources.
- Track emerging cyber threats, APT groups, and attack campaigns.
- Develop actionable threat intelligence reports and recommendations.
- Integrate CTI feeds with SIEM and security monitoring platforms.
SIEM & ELK Stack Management
- Design, implement, and manage ELK Stack (Elasticsearch, Logstash, Kibana).
- Create dashboards, reports, alerts, and correlation rules.
- Perform log onboarding, parsing, normalization, and retention management.
- Optimize SIEM performance and detection capabilities.
Data Security & Compliance
- Lead data protection initiatives and monitoring programs.
- Implement Data Loss Prevention (DLP) controls and policies.
- Monitor sensitive data access and security events.
- Ensure compliance with regulatory standards and security frameworks.
Team Leadership
- Lead, mentor, and develop SOC analysts and threat hunters.
- Conduct training, performance reviews, and capability development.
- Coordinate with incident response, infrastructure, cloud, and application teams.
- Manage stakeholder communications and executive reporting
📌 SOC Operation Lead - SIEM / ELK / Data Security (Navi Mumbai)
🏢 KPMG Assurance and Consulting Services
📍 Navi Mumbai