04 Oct
|
HCL Technologies
|
India
04 Oct
HCL Technologies
India
Job Summary
This role is accountable for leading advanced security event investigation and incident response operations, leveraging SOAR and SIEM solutions to optimize security monitoring and response processes. The individual drives operational excellence, implements technical improvements, and empowers teams to deliver high-impact security services that align with organizational and client objectives.
Key Responsibilities
1. Lead security event triage and investigation by applying advanced SOC Analyst and SOAR workflows, ensuring rapid detection, analysis, and remediation of security incidents across multiple clients.
2. Optimize and automate incident response processes using SOAR platforms, developing playbooks and orchestrating integrations with SIEM and other security tools to improve operational efficiency.
3. Oversee technical solution implementation for SIEM platforms, ensuring robust information flow, system integration, and compliance with organizational and client security policies.
4. Mentor and empower SOC team members by providing expert guidance, fostering skill development, and ensuring alignment with project and organizational objectives.
5. Collaborate with stakeholders to understand client security requirements,
translating them into actionable operational plans and ensuring the support team meets or exceeds client SLAs.
6. Drive continuous improvement initiatives by evaluating current SOC operations, introducing innovative automation strategies, and standardizing best practices for security event investigation.
7. Develop and maintain comprehensive management reports and dashboards leveraging SOC, SOAR, and SIEM data, supporting informed decision-making and transparent communication of progress and KPIs.
Skill Requirements
1. Advanced Knowledge Of SOAR Platforms (Such As Splunk SOAR, Palo Alto Cortex XSOAR, IBM Resilient, Or Similar) And Automation Playbook Development
2. Excellent Understanding Of SIEM Technologies (Such As Splunk, IBM QRADAR, ArcSight, Or Similar), Including Rule Configuration, Log Management, And Threat Detection
3. Advanced Skills In Security Monitoring, Threat Intelligence, And Vulnerability Management
4. Robust Leadership, Mentoring, And Team Management Abilities
5. Excellent Analytical, Problem-Solving, And Communication Skills
Other Requirements
1. Recommended: Certified SOC Analyst (CSA), GIAC Security Operations Certified (GSOC), or equivalent
2. Optional but valuable: SOAR-specific certifications (e.g., Splunk SOAR Certified Automation Specialist, Palo Alto XSOAR Certified Engineer)
📌 Track Manager - Security Investigations, SIEM (India)
🏢 HCL Technologies
📍 India