Job Overview:
This role is responsible for Security incident monitoring for Customers who have subscribed to our SOC Monitoring services and to convert it to incidents based on analysis and work towards remediation of the same through customers, Partners, Internal team etc. This team member also works on conducting VAPT for customers and will also be used for Security assessment at customer site as required. The L2 team member also assists in customer Security audits and in preparation of reports before they are sent to customers.
Responsibilities and Duties:
• Upkeep of SOC related infrastructure like monitoring platforms, SIEM etc.
• Involvement in Setup of SOC equipment’s and configuration of the same as required.
• Will be a part of 24X7X365 SOC operations and will need to work in assigned shifts
• Coordinating and adding customers to the Monitoring Systems
• Continuous Monitoring of Customers and ESDS setting and conversion of Security incidents into tickets by eliminating false positives.
• Working on tickets raised by customer on Security Incidents or change request and responding with a Security focused approach in coordination with departments internally and with Customers for timely resolution of Tickets as per defined SLA and to reduce risk from security incidents.
• Checking and monitoring archive and audit logs
• Creating and Testing recent policies as per Company/Customer requirement
• Patch implementation and General SOC Administration
• Generating reports by collating reports from various tools periodically as per SLA with Customer & sending the same to the Customer
• Participating in Customer and internal Security Audits and addressing issues raised.
• Creating & Testing recent policies as per company requirement and implementing the same
• Updating Knowledge and Skills on Security including being abreast with latest Security incidents and Threats
• Installation, configuration and troubleshooting of SIEM, IDS, IPS, IDAM, NAC, DLP tools
• Participatin