Job Description : Security Operations Centre Incident Response and Governance Specialist
Reporting Structure :
Reports to Manager Security Operations Centre
Location Navi Mumbai
Education :
- Bachelors degree in information technology, or a related field, Cybersecurity (preferred).
Experience / Qualifications :
5 years of technology or other relevant industry experience. Emphasis on security operations, incident management, intrusion detection, and security event analysis.3+ years of working experience with UEBA security technologies / vendors (such as Qradar, and Gurucul)Ability to isolate problems between hardware and software and provide information to appropriate support team(s)Excellent communication and collaboration skillsAbility to handle pressure and work effectively in a fast-paced environmentIndustry :
IT, ITES, Banking (Preferred)Responsibilities :
Incident Detection and Triage :
Experience with security tools and technologies (e.g., UEBA, SOAR, TIP)Responsible for lifecycle support in the areas of UEBA strategy, UEBA service delivery, and UEBA infrastructure support.Responsible for tuning out false positives and creating actionable reports.Monitor the impact of deploying new content on the health and performance of the UEBA, SOAR & TIP solutions.Knowledge of legal and regulatory requirements related to data breaches a plus.Good understanding of Incident life cycle and Triage process.Good experience in OS logs, WAF, IPS, firewall etc. log analysis.Knowledge of Threat Intelligence and Security Advisories research and analysis would be added advantage.Communication and Collaboration :
Communicate effectively with internal stakeholders, including system administrators, IT operations, and business unitsCollaborate with external vendors and law enforcement as neededPrepare and deliver incident reports and updates to senior managementThreat Intelligence :
Stay up to date on the latest cyber threats and vulnerabilitiesShare threat intelligence with other security professionals within the organizationContribute to the development and improvement of the organization's security postureIndustry Certifications :
Technical certifications : CompTIA security+ \ CEH or relevantSecurity Standard frameworks : Incident Handling and relevant certificationref : hirist.tech)