Roles & Responsibilities:
- Monitor SIEM Alerts on 24 x 7 x 365 basis including Night Shifts on a rotational roster.
- Investigate Alerts Detected and carryout Incident Response.
- Document & report appropriate Incidents to the concerned Resolver Groups using Ticketing Tools.
- Monitor Network Traffic, perform Threat Hunting to identify compromised systems, negate denial of service attacks, and highlight resource abuse / exploitation.
- Escalate the Incident in the event the SLA leads to breach in resolution time.
- Monitor the health & performance of the SIEM & other Security Tools.
- Follow the Incident Response Management workflow.
- Collaborate with other SOC Analysts within the team to improve SOC Tools, Processes & Procedures to increase SOC efficiency.
Education Qualification:
Graduation: Bachelor's in Engineering / Technology / Computer Science / Information Security, or related field.
Post-graduation: PGDM / MBA / M Tech / MCA
Skilled Qualification/Certification: CISSP, CISA, or CISM are preferred