10 Aug
|
Tata Consultancy Services
|
Chennai
10 Aug
Tata Consultancy Services
Chennai
Greeting From TCS!!!
Role: Cybersecurity Admin Sec - SIEM Administrator
Experience: 8 to 12
Location: Chennai
SN
Responsibility of / Expectations from the Role
1
Conduct proactive threat hunting activities across endpoints, networks, cloud environments, and identity platforms. - Develop and execute threat hunting hypotheses based on threat intelligence, emerging attack trends, and organizational risks.
- Identify Indicators of Compromise (IoCs), Indicators of Attack (IoAs), and suspicious behaviors.
2 Analyze security events to detect stealthy, persistent, and advanced threats.
- Consume and operationalize cyber threat intelligence feeds.
3 Map adversary tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK; framework.
- Track emerging threats, vulnerabilities, and attack campaigns.
- Document hunting findings, attack patterns, and remediation recommendations.
- Present threat hunt outcomes to security leadership and stakeholders.
4 Collaborate with SOC, Incident Response, Vulnerability Management, Red Team, and Security Engineering teams.
Develop scripts and automation to improve threat hunting and investigation efficiency.
5
Continuously evaluate and improve security monitoring and detection coverage.
Contribute to purple team exercises and detection validation activities.
6
Enhance threat detection capabilities within SIEM, EDR, NDR, and XDR platforms.
7
Develop hunt queries using KQL, SPL, SQL, Sigma, YARA, or similar technologies.
8
Support incident response activities for malware infections, ransomware, insider threats, credential compromise, and APT attacks.
📌 Cybersecurity Admin Sec - SIEM Administrator (Chennai)
🏢 Tata Consultancy Services
📍 Chennai