01 Sep
|
Tata Consultancy Services
|
Chennai
01 Sep
Tata Consultancy Services
Chennai
Greeting From TCS!!! Role: Cybersecurity Admin Sec - SIEM Administrator Experience: 8 to 12 Location: Chennai SN Responsibility of / Expectations from the Role 1 Conduct proactive threat hunting activities across endpoints, networks, cloud environments, and identity platforms. - Develop and execute threat hunting hypotheses based on threat intelligence, emerging attack trends, and organizational risks. - Identify Indicators of Compromise (IoCs), Indicators of Attack (IoAs), and suspicious behaviors.
2 Analyze security events to detect stealthy, persistent, and advanced threats. - Consume and operationalize cyber threat intelligence feeds.
3 Map adversary tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK; framework. - Track emerging threats, vulnerabilities, and attack campaigns. - Document hunting findings, attack patterns, and remediation recommendations.
- Present threat hunt outcomes to security leadership and stakeholders.
4 Collaborate with SOC, Incident Response, Vulnerability Management, Red Team, and Security Engineering teams. Develop scripts and automation to improve threat hunting and investigation efficiency. 5 Continuously evaluate and improve security monitoring and detection coverage. Contribute to purple team exercises and detection validation activities.
6 Enhance threat detection capabilities within SIEM, EDR, NDR, and XDR platforms. 7 Develop hunt queries using KQL, SPL, SQL, Sigma, YARA, or similar technologies. 8 Support incident response activities for malware infections, ransomware, insider threats, credential compromise, and APT attacks.
📌 Cybersecurity Admin Sec - SIEM Administrator (Chennai)
🏢 Tata Consultancy Services
📍 Chennai