SOC Analyst: Level 2

EGYANAM TECHNOLOGIES PRIVATE LIMITED
Posted on

Experience
1 - 7 yrs
Job Location
Mumbai, India
Vacancy
1
Designation
Soc Analyst 2
Job Type
Not specified

Job Description

Were looking for a dynamic and experienced Security Analyst to be part of our leading clients SOC. Working with the Security Team the SOC will deliver strong Incident response capabilities, oversight of technical controls and assist with continual service improvement.

Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities.

Isolate and remove malware.

Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings).

Provide daily summary reports of network events and activity relevant to cyber defence practices.

Receive and analyse network alerts from various sources and determine possible causes of such alerts.

Notify designated managers, cyber incident responders and articulate the events history, status, and potential impact for further action in accordance with the organizations incident response plan.

Analyse and report system security posture trends.

Assess adequate access controls based on principles of least privilege and need-to-know.Work with stakeholders to resolve computer security incidents and vulnerability compliance.

Required Knowledge :

Computer networking concepts and protocols, and network security methodologies.

Cyber threats and vulnerabilities.

Authentication, authorization, and access control methods.

Incident response and handling methodologies.

Network traffic analysis methods.

Key concepts in security management (e.g., Release Management, Patch Management).

Network tools (e.g., ping, traceroute, nslookup)

Network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.

Windows/Unix ports and services.

Systems security testing and evaluation methods.

Network mapping and recreating network topologies.

Packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump).

Operating system command-line tools.

Required Skills and Experience:

Skill in using incident handling methodologies.

Skill in collecting data from a variety of cyber defence resources.

Skill in recognizing and categorizing types of vulnerabilities and associated attacks.

Skill in performing packet-level analysis.

Skill in recognizing vulnerabilities in security systems. (e.g., vulnerability and compliance scanning).

Experience in conducting trend analysis.

Experience analysing malware.

Experience conducting vulnerability scans and recognize vulnerabilities in security systems.

Experience detecting host and network-based intrusions using intrusion detection technologies.

Experience to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).

Experience with SIEM (e.g. RSA Netwitness, IBM QRadar, Splunk, Arcsight)

Security Certifications Preferred:

- Certified Ethical hacker (CEH) - Certified Incident Handler(GCIH)

Candidate profile

Experience/ Qualifications:

Bachelors degree in Computer Science, Information Technology, Systems Engineering, or a related field. Good oral and written communication skills to collaborate with the team. Minimum 1+ years of Security engineering or Security IT experience required Understanding of how operating systems work and how exploitation works for different Operation Systems and applications.

Understanding of network traffic and be able to analyse network traffic introduced by the malware. Thorough understanding of Windows and Linux Internals . Knowledge of common hacking tools and techniques Experience in understanding and analysing various log formats from various sources. Experience in analysing reports generated of SIM/SEM tools.

No Referrers Available

There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.