Job Title: SIEM Engineering L3
Location: Noida, Greater Noida
Shift & schedule : 5 days office (Rotational)
Summary:
Works to protect organizational systems, networks, and data from unauthorized access, theft, damage, or other malicious activities. Proactively engages in the threat hunting process, searching for advanced threats, attackers, and indicators of compromise (IOCs) that may have evaded existing security measures, to identify and mitigate security threats before they cause significant harm to an organization. Engages in endpoint detection and response (EDR) to detect and respond to security incidents at the endpoint level, such as on individual workstations, laptops, servers, and other devices. Participates in collecting, analyzing, and preserving digital data for use as evidence in investigating cybercrimes, security breaches, and other types of digital incidents for the purposes of forensics.
Utilizes the incident management process of managing and responding to cybersecurity incidents, which may include unauthorized access to systems, data breaches, malware infections, denial-of-service attacks, and other types of cyber threats.
Uses Network
Detection and Response (NDR) to monitor network traffic and identify and respond to unusual or suspicious activity. Gathers, analyzes, and interprets information to identify potential security threats and risks as part of security intelligence analysis.
Requirement Specification :
Exp : 5-8 Yrs
Skills required:
- Log Source Integration.
- Onboarding of Log Source.
- Migration.
- Upgrade.
- Detection Use Case.
- Finetuning Detection Use Case.
- Automation
- Need to have end to end integration exp in project. Should have mostly worked on integration part.
📌 SIEM Engineering (Noida)
🏢 Kyndryl
📍 Noida