05 Aug
|
HCL Technologies
|
Bengaluru
05 Aug
HCL Technologies
Bengaluru
Senior Administrator - Security Analysis, SIEM
Experience: 4 to Not Available years
Location: Bengaluru, India
Skills: SIEM Analysis, SIEM content management, SIEM tools, Intrusion Detection systems, Network Security, Mitre framework, EDR platforms, threat analysis, threat hunting, incident response, Network security, System Security, Endpoint Security, log analysis, Security Event Analysis, SOAR platforms, analytical skills, problem-solving skills
Job Summary
HCL CSFC provides a superior foundation for building a professional career - a place for people to learn, to achieve and grow. A philosophy that balances personal lifestyles, perspectives and needs is an important part of our culture.
CSFC Noida is looking for an experienced SIEM Analyst qualified candidate to join its team.
The Sr. Security Administrator plays a critical role in ensuring the operational integrity and security of the organization's systems. This position is responsible for advanced technical support, troubleshooting complex incidents, and performing root cause analysis to enhance customer satisfaction and maintain a robust security posture.
Key Responsibilities
Skills Required 4+ years’ for L2 8+ years for L3: Hands-on experience in 2 or more of the SIEM Analysis and SIEM content management areas
• Having knowledge/experience on any SIEM tools or Experience on IDS (Intrusion Detection systems) platform and Network Security roles.
• Exposure to Mitre framework and equivalent, Hands on experience in EDR platforms and threat analysis, threat hunting/incident response experience.
• Experience and knowledge in Network security/ System Security/ Endpoint Security.
• Experience of Event Monitoring and analysis and escalations. Provide inputs for content management.
• Experience on Monthly, Weekly and daily reporting.
• Willing to work on 24/7 operations.
• Review SIEM escalated incidents and qualify true positives
• Provide a monthly trend and security analysis summary report
• Provide SIEM event/Incident analytics support
• Provide log analysis summary and recommendations on detection/protection of incidents
• Perform advanced triages and work in collaboration with resolved groups, third party or with designated customer contacts
• Liaise between cross functional teams and assist in formulating security incident response report
• Advocate protection and mitigation strategies to be implemented from lessons learnt exercises
Perform Security Event Analysis Using Siem Tools To Monitor,
Detect, And Respond To Security Threats, Ensuring Adherence To Quality Standards And Regulatory Requirements.
2. Provide Technical Support For Complex Incidents Escalated By Analysts, Conducting Thorough Root Cause Analysis And Implementing Effective Solutions For Technical And Security Challenges.
3. Lead Value-Adding Initiatives Such As Updating And Managing The Knowledge Base, Providing Training For New Team Members, And Coaching Analysts To Enhance Team Performance.
4. Resolve Complex Support Tickets Within Agreed Slas, Collaborating With Cross-Functional Teams To Ensure Seamless Operations And A Robust Security Posture.
5. Enhance Customer Experience And Csat By Achieving First Call Resolution, Minimizing Rejected Resolutions, Reducing Case Reopenings, And Proactively Mitigating Security Threats.
Skill Requirements
Skills Required 4+ years’ for L2 8+ years for L3: Hands-on experience in 2 or more of the SIEM Analysis and SIEM content management areas
• Having knowledge/experience on any SIEM tools or Experience on IDS (Intrusion Detection systems) platform and Network Security roles.
• Exposure to Mitre framework and equivalent, Hands on experience in EDR platforms and threat analysis, threat hunting/incident response experience.
• Experience and knowledge in Network security/ System Security/ Endpoint Security.
• Experience of Event Monitoring and analysis and escalations. Provide inputs for content management.
• Experience on Monthly, Weekly and daily reporting.
• Willing to work on 24/7 operations.
• Review SIEM escalated incidents and qualify true positives
• Provide a monthly trend and security analysis summary report
• Provide SIEM event/Incident analytics support
• Provide log analysis summary and recommendations on detection/protection of incidents
• Perform advanced triages and work in collaboration with resolved groups, third party or with designated customer contacts
• Liaise between cross functional teams and assist in formulating security incident response report
• Advocate protection and mitigation strategies to be implemented from lessons learnt exercises
Other Requirements
• Ability to work with very large and complex network.
• Self-motivated individual and creative thinker who will take ownership of tasks and projects, able to work with the team, and manages tasks effectively and has a proven track record of consist and organized outputs.
• The ideal candidate will demonstrate an eagerness to understand complex problems and requirements, an aptitude for translating these problems into workable designs and solutions, and will possess a keen eye for detail.
Skill Requirement
Skills Required 4+ years’ for L2 8+ years for L3: Hands-on experience in 2 or more of the SIEM Analysis and SIEM content management areas
• Having knowledge/experience on any SIEM tools or Experience on IDS (Intrusion Detection systems) platform and Network Security roles.
• Exposure to Mitre framework and equivalent, Hands on experience in EDR platforms and threat analysis, threat hunting/incident response experience.
• Experience and knowledge in Network security/ System Security/ Endpoint Security.
• Experience of Event Monitoring and analysis and escalations. Provide inputs for content management.
• Experience on Monthly, Weekly and daily reporting.
• Willing to work on 24/7 operations.
• Review SIEM escalated incidents and qualify true positives
• Provide a monthly trend and security analysis summary report
• Provide SIEM event/Incident analytics support
• Provide log analysis summary and recommendations on detection/protection of incidents
• Perform advanced triages and work in collaboration with resolved groups, third party or with designated customer contacts
• Liaise between cross functional teams and assist in formulating security incident response report
• Advocate protection and mitigation strategies to be implemented from lessons learnt exercises
Other Requirement
• Shall have good verbal/written communication skills
• Should be willing to work in 24x7 environments
• From time to time travel opportunities may be assigned
• Incumbent should carry continual system improvement mindset and able to demonstrate in work.
• Client facing technical analysis report and presentation skills
Key Sourcing Information
1. Optional But Valuable Certifications: Certified Information Systems Security Professional (Cissp), Certified Information Security Manager (Cism), Or Security+ Certification
📌 Senior Administrator Security Analysis, SIEM (Bengaluru)
🏢 HCL Technologies
📍 Bengaluru