ECIH, CCIE, Splunk, QRadar, ArcSight, SentinelRSA etc.
Skills Required:
- Minimum 4 years of experience in monitoring SIEM and incident management inSOC and handling tickets
- Knowledge and experience of working with OS, Applications, Network securitytools
- Competency in Network/ Apps/ OS/ DB with some forensics
- CCNA/ SANS GSEC/ GCIH
- Must be an Engineering graduate
- The experience should include security log analysis and correlation
- ArcSight product knowledge and certification
- Positive knowledge in networking concepts and experience in information securityoperations
- Excellent analytical and logical analysis skill
- Knowledge base management
Responsibilities:
- Monitors and manages SIEM and point tools
- Handles incident management and change management process
- Analyses incident nature in detail and maps solution with knowledge base
- Maintains knowledge base database
- Ensures quality in call handling
- Ensures call escalation as per escalation chart by adhering to SLA
Key Operational Activities
- Monitors and manages SIEM and other point tools
- Handles incident management and change management processAnalyses incident nature in detail and maps solution with knowledge base
- Maintains knowledge base database
- Ensures quality in call handling
- Ensures call escalation as per escalation chart by adhering to SLA