Job Description
B.E/B. Tech/ MCA degree
Certified with: OEM Certification/ Certified SOC Analyst (CSA)- EC Council/ CompTIA CySA+
3+ years of overall experience with at least 1 years of relevant experience in all aspects of Incident monitoring in SOC
Responsibility:
Level 1 analyst will identify, categorize, prioritize, and investigate events rapidly utilizing triage and response guidelines for the enterprise using commonly available SOC log sources that include: Firewalls and network devices.
Infrastructure server and end-user systems.
Threat intelligence platforms.
Web proxies. Application logs and web-application firewalls.
Identity and access management systems.
Cloud and hybrid-IT provisioning, access, and infrastructure systems. Antivirus systems.
Intrusion detection and prevention systems. Monitor incoming event queues for potential security incidents.
Perform initial investigation and triage of potential incidents and escalate or close events as applicable. Monitor SOC ticket (or email) queue for potential event reporting from outside entities and individual users.
Maintain SOC shift logs with relevant activity from the shift. Document investigation results, ensuring relevant details are reported to level 2 analyst for final event analysis.
Update or refer SOC collaboration tool as necessary for changes to SOC process and procedure as well as ingest SOC daily intelligence reports and previous shift logs.
Conduct security research and intelligence gathering on emerging threats and exploits.
Perform additional auxiliary responsibilities as outlined in the console monitoring procedure. Communicating emergency alerts & warnings to designated stakeholder/ departments/ SOC.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
