Experience with - Network Detection and Response (NDR) is mandatory.
Atleast 2-3 years experience
Key Responsibilities
- Continuously observe alerts and events generated by the Network Detection and Response (NDR) platform.
- Partner with the Cyber Defence Center (CDC) team to perform first-level triage and validate whether detections represent genuine threats.
- Categorize each alert by severity level and potential business impact.
- Distinguish false positives from true positives and propose tuning or rule-adjustment actions to reduce noise.
- Escalate validated incidents to the customers security operations or incident response teams as per defined workflows.
- Monitor and update the status of alerts through to closure, ensuring timely resolution and accurate documentation.
- Support forensic investigations by gathering relevant logs, packet captures, and other evidence from the NDR system.
- Contribute to containment strategies by providing NDR-based insights and actionable recommendations.