Cyber Security Specialist/SOC Analyst IT Support Desk
IT Support Desk
Office Location
Full Time
Experience: 4 - 4 years required
Pay:
Salary Information not included
Type: Full Time
Location: Karnataka
Skills: Security, CEH, CISSP, OSCP, CHFI, ECSA, GCIH, GCIA, GSEC, Malware Analysis, Troubleshooting, Security Incident Response, WireShark, Splunk, QRadar, Arcsight, Information security, Security Operations Centre SOC, Incident Response, GCFA, Cisco Cyber OPS certification, coordinating incident response, email security threats, Threat Intel, Network Fundamentals, internet protocols, System, application logs, cloud infrastructure, SIEM tools, AlienVault, creating new detection rules, correlation rules, use cases for playbooks, Runbooks, Log parsing, CIS requirements
About IT Support Desk
Job Description
Eligibility Criteria: Qualifications: Diploma / Bachelors / Masters Degree Minimum of 4-5 years of experience in a Security Operations Centre (SOC) or incident response team Security+ , CEH, CISSP, OSCP, CHFI, ECSA, GCIH, GCIA, GSEC, GCFA , Cisco Cyber OPS certification (At least one valid certification) Flexible to work in 24/7 shifts Job Description: Roles and Responsibilities Responsible for 24/7 monitor, triage, analyzing security events and alerts. Including Malware analysis (including reverse engineering) Experience coordinating incident response, troubleshooting, or other complex issues across a global organization Familiarity with core concepts of security incident response, e.g., the typical phases of response, vulnerabilities vs threats vs actors, Indicators of Compromise (IoCs), etc Strong knowledge of email security threats and security controls, including experience analyzing email headers Good understanding of Threat Intel and Hunting Strong technical understanding of network fundamentals and common Internet protocols, specifically DNS, HTTP, HTTPS / TLS, and SMTP Experience analyzing network traffic using tools such as Wireshark, to investigate either security issues or complex operational issues Experience reviewing system and application logs (e.g., web or mail server logs), either to investigate security issues or complex operational issues Strong knowledge in investigating security issues within Cloud infrastructure such as AWS, GCP, Azure. Good knowledge and hands-on experience with SIEM tools such as Splunk, AlienVault, QRadar, ArcSight or similar in creating new detection rules, correlation rules etc Experience In defining use cases for playbooks and runbooks. Experience in understanding log types and log parsing Strong passion in information security, including awareness of current threats and security best practices. Good understanding of CIS requirements,