Knowledge of technical infrastructure, networks, databases and systems in relation to IT Security and IT Risk.
Knowledge of Cyber security attacks investigations and can build attack scenario
Familiarity with security frameworks like ISO 27001, MITRE attack framework, RBI/NIST Cybersecurity framework and risk management methodologies.
Core Competencies:
Expertise on Cyber Security Operations
Good awareness of cybersecurity trends and hacking techniques
Cyber-attack scenario development and assessment
Functional Competencies:
An analytical mind with excellent problem-solving ability
Outstanding communication and organization skills
Ability to work under pressure in a fast-paced environment
Job Purpose:
A Cyber Security Analyst at L1 level responsible for managing Security operations and security monitoring solution and support 24* 7 Security monitoring for the organization.
Area of Operations Key Responsibility
Cyber Security Analyst
Analyzing information security alerts raised by Various Security Tools for the root cause.
Investigate security alerts, event logs in disparate systems and provide incident response.
Involve in Digital forensics of IT assets and ensure root cause analysis is identified for the incidents.
Liaise with stakeholders in relation to cyber security issues and provide future recommendations.
Generate security operation reports for both technical and non-technical staff.
Use advanced analytic tools to determine emerging threat patterns and vulnerabilities.
Perform Threat Hunting Activity using SOC team.
Administration of SIEM & DLP solution along monitoring of use-case alerts and Fine tuning policies in consultation with IT and business department SPOCs.
File Integrating Monitoring solution management.
Follow-up with the IT SPOCS for Implementation of cyber threat advisories and alerts.
WAF security
Administration and Management of Cloud Based Web Application Firewall.
Monitoring of open alerts and guide the IT SPOCs on WAF alerts.
Dark Web monitoring Deep & Dark Web platform management and monitoring of alerts with relevant remediation actions in a time bound manner