21 Aug
|
Newgen Software
|
Noida
21 Aug
Newgen Software
Noida
Endpoint Security, SOC & Security Operations Role Summary Will be responsible for managing enterprise endpoint security solutions, SOC operations, vulner
Endpoint Security, SOC & Security Operations Role Summary Will be responsible for managing enterprise endpoint security solutions, SOC operations, vulnerability management, security monitoring, compliance reporting, and end-user security support. The role involves administration of CrowdStrike, Sophos, ManageEngine solutions, SIEM integrations, incident response, and ensuring adherence to organizational security policies and compliance requirements. Key Responsibilities • Administration and manage enterprise Endpoint Security solutions including CrowdStrike Falcon and Sophos Central, ensuring endpoint protection, policy enforcement, threat prevention, and security compliance. • Manage the complete lifecycle of CrowdStrike Falcon, including sensor deployment, policy configuration, Real-Time Response (RTR), Host Isolation, Detection & Response, IOC investigation, Custom IOA management, Falcon Fusion workflows, Identity Protection, and endpoint health monitoring. • Perform Sophos Endpoint Administration, including policy creation, device encryption, web control, application control, peripheral/device control, tamper protection, antivirus management, and threat remediation. • Integration of endpoint security platforms with SIEM solutions for centralized log collection, security event correlation, incident monitoring, and threat visibility. • Manage daily Security Operations (SOC) activities, including monitoring security alerts, incident triage, investigation, containment, remediation,
and closure of security incidents within defined SLAs. • Handle security tickets through ITSM platforms, ensuring timely investigation, user communication, documentation, and resolution. • Administration of ManageEngine Endpoint Central (Desktop Central) for endpoint management, software deployment, asset inventory, remote troubleshooting, configuration management, compliance monitoring, and patch deployment. • Plan, deploy, and monitor enterprise-wide Patch Management activities for Windows, Linux and MAC operating systems and third-party applications to maintain security compliance. • Manage BitLocker Drive Encryption, including deployment, recovery key management, encryption compliance monitoring, policy enforcement, and troubleshooting. • Perform enterprise Vulnerability Management, including vulnerability assessment, risk analysis, remediation coordination, validation, compliance reporting, and closure tracking. • Manage enterprise Data Loss Prevention (DLP) policies to prevent unauthorized data movement through USB devices, removable media, printing, clipboard, email, and file transfer channels. • Generate and present Daily, Weekly, and Monthly Security Compliance Reports, including Antivirus Compliance, Encryption Compliance, Vulnerability Compliance, Patch Compliance, Endpoint Health,
Security Incident Metrics, and Executive Dashboards for management review. • Provide L1/L2 Remote Technical Support for endpoint security incidents, malware infections, encryption issues, policy conflicts, application whitelisting, endpoint performance, and security-related user issues. • Coordinate with internal IT teams, Infrastructure teams, SOC analysts, and external vendors to resolve complex security incidents and implement security enhancements. • Assist in implementing security best practices aligned with ISO 27001, NIST Cybersecurity Framework, CIS Controls, and organizational information security policies. • Maintain endpoint security documentation, SOPs, security runbooks, knowledge base articles, audit evidence, and operational reports. • Supported internal and external audits by providing endpoint security evidence, compliance reports, configuration details, and security documentation. Experience • 6-8 Years of IT Infrastructure / Cyber Security Experience • Minimum 3+ Years of Hands-on Experience in Endpoint Security & SOC Operations Required Skills • CrowdStrike Falcon EDR/XDR Administration • Sophos Central Administration • SOC Operations & Incident Response • Vulnerability Management • SIEM Integration & Log Analysis • ManageEngine Endpoint Central/UEM • BitLocker Administration • Patch Management • Device Control & Application Control • Data Loss Prevention (DLP) • Endpoint Security Management • Security Compliance Reporting • Remote Support Operations • Windows & Server Administration • API Integration & Security Automation
📌 Sr Engineer - Cyber Security (Noida)
🏢 Newgen Software
📍 Noida