24 Sep
|
Rail Tel Corporation Of India
|
Thiruvananthapuram
24 Sep
Rail Tel Corporation Of India
Thiruvananthapuram
For L3 Analyst
- Monitor, manage, and maintain SOC security tools, SIEM platforms, and other security monitoring technologies to ensure effective detection and response.
- Coordinate and oversee security incident monitoring, triage, investigation, analysis, containment, eradication, and recovery activities.
- Analyze security alerts, incidents, and risks to identify potential threats, determine impact, and prioritize appropriate response actions.
- Lead incident response activities, including root-cause analysis, threat investigation, problem resolution, and implementation of corrective and preventive measures.
- Coordinate incident communication and escalation with relevant stakeholders, ensuring timely and accurate reporting of security events.
- Proactively identify security risks, vulnerabilities, and emerging threats and recommend appropriate mitigation measures.
- Ensure effective operation, optimization, and continuous improvement of SIEM, UEBA, EDR, SOAR, NDR, vulnerability management, and other security technologies.
- Develop and maintain incident response procedures, playbooks, use cases, dashboards, and security monitoring processes.
- Coordinate with IT, infrastructure, network, application, and other teams to support timely incident containment and resolution.
- Demonstrate proficiency in advanced cybersecurity tools, technologies, threat detection techniques, and security operations best practices.
- For SOC L3 responsibilities, provide operational leadership, assign and prioritize SOC activities, mentor analysts, monitor team performance, and drive continuous improvement of SOC processes and capabilities.
For L2 Analyst
- Monitor, manage, and maintain SOC security tools,
SIEM platforms, and other security monitoring technologies to ensure effective detection and response.
- Analyze security logs, network traffic, and SIEM alerts to identify, investigate, and validate potential security incidents.
- Perform malware analysis and basic reverse engineering to understand malicious behavior, indicators of compromise (IOCs), and attack vectors.
- Develop and use scripts and automation with tools such as Python and PowerShell to improve threat detection, investigation, and SOC processes.
- Apply robust analytical and problem-solving skills to conduct incident investigations, correlate security events, determine root causes, and support effective remediation.
- Communicate security findings clearly and maintain accurate incident documentation, investigation reports, and knowledge-base records for effective collaboration and knowledge sharing.
For L1 Analyst
- Monitor security alerts and events using SIEM and other security monitoring tools to identify potential threats and incidents.
- Apply fundamental networking and cybersecurity concepts to analyze and understand security events and suspicious activities.
- Identify and assess common cyber threats, attack vectors, and indicators of compromise (IOCs).
- Investigate, validate, and prioritize security alerts, escalating confirmed or suspicious incidents according to established procedures.
- Maintain accurate incident documentation and communicate findings clearly to relevant teams and senior SOC analysts.
- Follow established security procedures, incident response protocols, and operational best practices to support effective threat detection and response.
📌 L-III, L-II, L-I SOC Analyst- 05 Post - Kerala Govt. SOC Project (Thiruvananthapuram)
🏢 Rail Tel Corporation Of India
📍 Thiruvananthapuram