19 Aug
|
MYCPE ONE
|
Ahmedabad
19 Aug
MYCPE ONE
Ahmedabad
We are looking for a motivated Cybersecurity Professional to join our cybersecurity team with a focus on both Security Operations Center (SOC) and Information Security Compliance.
The ideal candidate will be responsible for monitoring security events, supporting incident response, maintaining security documentation, and assisting with compliance initiatives such as ISO/IEC 27001, GDPR, PCI DSS, HIPAA, and SOC 2.
This role is ideal for candidates who are passionate about defensive security, continuous monitoring, and helping organizations strengthen their security posture through operational excellence and compliance.
Key Responsibilities
1. Security Operations Center (SOC)
- Monitor and triage security alerts generated from SIEM, EDR, firewalls, email security, and other security tools.
- Investigate security incidents, analyze logs, and perform initial incident response activities.
- Escalate security events based on severity and follow established incident response procedures.
- Perform log analysis to identify suspicious activities, indicators of compromise (IOCs), and potential threats.
- Assist in threat hunting and continuous monitoring activities.
- Support vulnerability management by tracking remediation status and validating fixes
2. Incident Response & Security Monitoring
- Assist in investigating phishing emails, malware infections, unauthorized access attempts,
and other security incidents.
- Collect and preserve security evidence for investigations.
- Maintain incident records and ensure proper documentation throughout the incident lifecycle.
- Coordinate with internal IT teams for containment, eradication, and recovery activities.
- Prepare incident reports and post-incident documentation.
3.
Compliance & Governance
- Support implementation and maintenance of Information Security Management Systems
(ISMS).
- Assist with compliance activities related to:
o ISO/IEC 27001
o GDPR o PCI DSS o HIPAA o SOC 2
- Participate in internal and external security audits.
- Assist in risk assessments and compliance gap assessments.
- Support vendor security assessments and third-party risk management activities.
4. Documentation & Audit Support
- Prepare and maintain security reports, dashboards, and compliance documentation.
- Assist in policy, procedure, and standard development and periodic reviews.
- Collect and organize audit evidence for compliance assessments.
- Maintain risk registers, asset inventories, and compliance trackers.
- Coordinate with stakeholders during certification and audit activities.
5. Security Awareness & Continuous Improvement
- Stay updated with the latest cybersecurity threats, attack techniques, and defensive security practices.
- Support security awareness initiatives across the organization.
- Recommend improvements to monitoring, detection, and compliance processes.
- Assist in developing security documentation and operational procedures.
Qualifications & Skills
Education & Certifications
- Bachelor's/Master's degree in Cybersecurity, Computer Science,
Information Technology,
or related field (or equivalent technical knowledge).
Preferred Certifications
- ISO/IEC 27001 Lead Auditor / Lead Implementer
- CompTIA Security+
- CEH (Certified Ethical Hacker)
- SC-200 (Microsoft Security Operations Analyst)
- CySA+
- Splunk Core Certified User (Preferred)
Hands-on Knowledge
Experience or familiarity with
Security Operations
- SIEM platforms (Microsoft Sentinel, Wazuh, Splunk, QRadar, FortiSIEM, ELK, etc.)
- Endpoint Detection & Response (Microsoft Defender, CrowdStrike, SentinelOne, etc.)
- Firewall log monitoring (Fortinet, Sophos, SonicWall, Palo Alto)
- Windows Event Logs, Syslog, Linux Logs
- Email Security Monitoring
- Threat Intelligence Platforms
Compliance
- ISO/IEC 27001
- GDPR
- PCI DSS
- HIPAA
- SOC 2
- Risk Assessment
- Security Policies & Procedures
- Audit Evidence Collection
- Documentation & Reporting
Nice-to-Have
- Basic scripting knowledge (PowerShell, Python, Bash).
- Experience with cloud security monitoring (AWS, Azure, Microsoft 365).
- Familiarity with Microsoft Entra ID, Microsoft Defender XDR, or Microsoft Sentinel.
- Understanding of MITRE ATT&CK; Framework and Cyber Kill Chain.
- Exposure to SOAR platforms and automation.
Soft Skills
- Strong analytical and problem-solving abilities.
- Good communication and documentation skills.
- Ability to investigate security incidents methodically.
- Strong attention to detail.
- Ability to work in a collaborative team setting.
- Willingness to learn new technologies and security frameworks.
- Ability to explain technical security issues to non-technical stakeholders.
📌 Cybersecurity – SOC & Compliance (Ahmedabad)
🏢 MYCPE ONE
📍 Ahmedabad