For International Trade And Development Company
8 - 12 Years
Full Time
Up to 30 Days
Up to 25 LPA
1 Position(s)
Hyderabad, Pune
8 - 12 Years
Full Time
Up to 30 Days
Up to 25 LPA
1 Position(s)
Hyderabad, Pune
Posted By : Rarr Technologies Pvt Ltd
Experience in Creating, managing, and dispatching incident tickets for Security alerts
Mandatory Soft Skills•Excellent Communication Skills
•Good Project management Skills
•Good In Stakeholder Management
•Should be able to handle critical call that includes Sr. Leadership team.
•Good In reporting using PPT, Power BI, Smartsheet etc.,
Ideal Candidate Profile (Experience)•Advise customers the factual method in executing ServiceNow Solutions.
•Experience in leading full life cycle of Security Incident journey.
•Conducting security assessments through vulnerability testing and risk analysis.
•Performing both internal and external security audits
•Analyzing security breaches to identify the root cause
•Continuously updating the incident response and disaster recovery plans.
•Define IT Strategy, Vision, Roadmaps for organizations adoption of the ITIL best practices
•Define multiple operating models and frameworks not limited to Service Desk functions and ITSM processes
•Define architectural and design level detail, technical solutions aligned with client’s business challenges and Security Monitoring Best Practices
•Represent the SOC team in NIST assessment audits.
•24x7 Active monitoring of Security events using SIEM (based on standard operating procedure).
•Monitoring network security events and take appropriate action based on security policy.
•Creating new rules, Dashboards, reports on different SIEM tools to detect new threats.
•Understand cyber - attack methods, perform analysis of security logs in an attempt to detect unauthorized behavior.
•Experience in performing Root Cause Analysis for data from SIEM.
•Provide guidance to the team for Incident Validation, Incident Analysis, Solution Recommendation.
•Review Process, Compliance, Reports, KPIs.
•Experience on Phishing email analysis. Understanding on Security devices like Firewall, IPS/IDS, Proxy, Email Gateway, WAF, Antivirus.
•Experience in Cloud security, Threat Hunting, Threat Intelligence, Malware Analysis, Incident Response, Trend and ; Pattern Analysis, Machine Learning would be added advantage.
•Assist with the development, revision, and maintenance of Run books, Standard Operating Procedures/ Knowledge base and Working Instructions related to IT Security.
•Monitors health of data sources, check for all the tools and report any shortcomings immediately to the concerned team.
•Understanding of vulnerabilities in OS, Applications, Network devices and perform vulnerability assessments
•SIEM report analysis and prepare the daily/weekly/monthly and ad-hoc reports.
•Follow Incident Management for SLA Matrix, Escalation matrix to resolver groups.
•Document all activities during an incident and providing leadership with status updates during the life cycle of the incident.
•Experience dealing with senior leadership, both in leading calls and also in writing documentation."