Job Description
Job Summary
The Information Security team at Arcesium is a global team responsible for managing the overall cyber security risk posture of the company. The current role is for the Security Operations and Monitoring team within the Information Security umbrella. The team is responsible for ongoing monitoring, analyzing, and responding to the security alerts in the organization. The team's primary objective is to detect and respond to security alerts or potential security incidents, in a timely and effective manner.
The team ensures the security of an organization's assets, systems, and data by leveraging a variety of tools and technologies, including security information and event management (SIEM) systems, EDR, Firewall, DLP, and other security tools to monitor & analyze network traffic & system logs, identify suspicious activity and respond to various security alerts.
The person in this role should not just be doing Security Monitoring tasks, they will be involved in Security Monitoring related engineering tasks as well.
What Youll Do
- Manage day-to-day SOC operations, including triaging, investigating, and resolving security incidents across endpoints, network, and cloud environments.
- Collaborate with cross-functional security teams to develop and refine security monitoring policies, detection rules, and response procedures.
- Develop and maintain a comprehensive understanding of the organizations infrastructure, applications, and security controls.
- Ensure security incidents are thoroughly documented, tracked, and reported in a timely manner.
- Manage relationships with external vendors and service providers that support SOC operations.
What Youll Need
- 3-5 years of overall experience, with at least 2 years in a security engineering or security operations role.
- B.E./B.Tech or M.Tech/M.S. in Computer Science, Information Security, or a related field.
- Hands-on experience in a Security Operations Center (SOC), with a focus on security monitoring across EDR, Zscaler (ZPA/ZIA/ZDX), Palo Alto firewalls, and related technologies.
- Strong understanding of EDR and WAF solutions, including detection tuning and alert triage.
- Good understanding of managing and fine-tuning DLP policies across endpoint and network channels.
- Experience analyzing and triaging phishing emails, including header analysis and indicator extraction.
- Good understanding of implementing and managing SIEM solutions, including log ingestion, correlation rules, and dashboard development.
- Solid knowledge of network protocols, infrastructure, and common attack patterns.
- Basic proficiency in Python scripting or automation for security workflows.
- Excellent analytical and problem-solving skills.
- Ability to communicate complex technical issues clearly to non-technical stakeholders.
- Strong interpersonal, written, and verbal communication skills.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
