20 Aug
|
Soffit Infrastructure Services (P
|
Gurugram
20 Aug
Soffit Infrastructure Services (P
Gurugram
MSS Analyst – EDR/DLP (L1 [2 +yrs]&L2;[3+yrs])
Job Summary
We are looking for a proactive and technically skilled Cyber Security Analyst with hands-on exposure to Data Loss Prevention (DLP), Endpoint Detection & Response (EDR)/Antivirus (AV), and Network Access Control (NAC) technologies.
The candidate will be responsible for monitoring security alerts, performing initial investigations, handling endpoint and policy-related incidents, and supporting day-to-day security operations.
Key Responsibilities:
EDR / Antivirus Operations
- Monitor EDR/AV consoles for malware, suspicious activities, IOC detections and endpoint threats.
- Perform basic threat investigation and endpoint analysis.
- Isolate/quarantine endpoints when required as per standard procedures.
- Validate malware alerts, suspicious files and endpoint behavior.
- Assist with IOC blocking, endpoint remediation and policy management.
- Monitor endpoint agent health and AV signature updates.
DLP Operations
- Monitor and analyze DLP incidents related to email, endpoint, web, USB and cloud channels.
- Perform initial triage and validation of DLP incidents.
- Investigate policy violations and escalate genuine incidents as per SOP.
- Assist with DLP policy tuning, whitelisting and false-positive reduction.
- Coordinate with users/business teams for incident validation and closure.
- Maintain incident documentation and reporting.
Required Skills:
- Hands-on experience with DLP and/or EDR/AV security tools.
- DLP tools such as Forcepoint, Trellix DLP or similar.
- EDR/AV tools such as Trellix, CrowdStrike, Microsoft Defender, SentinelOne, Cortex XDR or similar.
- Basic understanding of Windows OS and Active Directory.
- Knowledge of TCP/IP, DNS, DHCP, VPN and proxy fundamentals.
- Understanding of security incidents, malware behavior and phishing analysis.
- Basic knowledge of SIEM tools and log analysis is preferred.
- Solid analytical and troubleshooting skills.
- Good communication skills.
- Willingness to work in rotational shifts.
- Ability to manage multiple incidents/tasks simultaneously.
Experience Level: L1/L2
Location: Gurgaon
Pay: ₹350,000.00 - ₹650,000.00 per year
Application Question(s)
- How many years of hands-on experience do you have in Cyber Security / SOC / MSS operations?
- Do you have hands-on experience with any EDR/Antivirus solution?
- Which EDR/AV tools have you worked with?
- Do you have hands-on experience with DLP solutions? Which DLP channels have you monitored/investigated?
- Have you handled DLP incidents, including policy violations, false positives, whitelisting, or policy tuning?
- Do you have knowledge of Windows, Active Directory, TCP/IP, DNS, DHCP, VPN and Proxy fundamentals?
- Are you an immediate joiner? Are you comfortable working in rotational shifts?
- what is your current CTC &expected; CTC?
Work Location: In person
📌 MSS Analyst (Gurugram)
🏢 Soffit Infrastructure Services (P
📍 Gurugram