Talent.com
SOC Tools Engg & Operations

SOC Tools Engg & Operations

ConfidentialChennai
5 days ago
Job description

The SOC Engineering and Operational Lead Engineer is responsible for the engineering and administration activities of SOC tools, such as SIEM, SOAR, and deception technology. Continuously focus on enabling Automations to Support SOC Tools Administrations & Security Incident Detections and response activities.

Job Description :

  • Daily Operational management of SOC Tools. (Including SIEM, SOAR..etc Components Infra Maintenance).
  • Log, Alert & Enrichment sources integrations with SOC Tools.
  • Co-ordinate with different stakeholders to understand the Integration sources to ensure appropriate baseline created and maintained as per industry standards.
  • Ensure appropriate correlation rules are in place against the log source types for threat / anomaly detections.
  • Ensure proper Incident types, fields, playbooks are defined for Automations in SOAR.
  • Continuous touch base with Incident Detection and Response team to fine tune the rules with adequate threshold based on their feedback.
  • Evaluate New SOAR / SIEM / Log analytics / big data forensic technologies products to maintain our tools base per industry standard and Olam requirements. (including Open source)
  • Interface with stakeholders in different parts of the globe to ensure systems are deployed to the appropriate configuration.
  • Develop metrics dashboard to identify trends, anomalies, and opportunities for improvement.
  • Ensure adequate change management and documents maintained for SIEM related Changes.
  • Periodical review of SOC Tools Architecture, Log Baseline, Rules, Assets health, Automations, Playbooks..etc.
  • Ensure high quality of Industry standards and brand consistency in all IT projects.
  • Ensure to work with technology stakeholders to enable the deception decoys.

Profile Description :

  • Must have 4+ years of experience in Splunk On Prem & Cloud SIEM Engineering and Administration.
  • Should have hands on experience in Implementation, configuration, and management of SIEM & SOAR technologies. (Prefer Splunk, Elk, Qradar,Securonix, Demisto, google secops, servicenow secops)
  • Should have hands on experience in creating custom correlation rules / alerts, searches, and data analytics in Splunk or similar Log analytics tool.
  • Should have hands on experience in creating custom playbooks, automation scripts in SOAR.
  • Must have strong working knowledge of Linux-flavored OS environments.
  • Strong knowledge in Broad infrastructure and technology background including demonstrable understanding of security operations in critical environment.
  • Have sound analytical and problem-solving skills.
  • Should have some experience with cloud infrastructure like Microsoft Azure, AWS & GCP.
  • Prefer Splunk or Similar log analytics certified Professional.
  • Must have strong scripting & Programming language knowledge. (Python,Powershell Vbscript,cc++,.net..etc)
  • Skills Required

    Cybersecurity, Soc, Siem, SOAR, Splunk

    Create a job alert for this search

    Engg • Chennai

    Related jobs
    • Promoted
    ERP Systems Database Manager

    ERP Systems Database Manager

    GeoDataTek India Pvt LtdChingleput, Republic Of India, IN
    Microsoft ERP Database Administrator (DBA).Microsoft Dynamics NAV, Business Central, or Dynamics 365 Finance & Operations. You’ll be responsible for ensuring database uptime, performance, security, ...Show moreLast updated: 12 days ago
    • Promoted
    Senior SOC Analyst

    Senior SOC Analyst

    ConfidentialChennai, India
    Customer Analytics, LLC has spent over 20 years developing customized software solutions to help clients succeed by solving their business problems. We excel in delivering high-quality solutions on ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer, SOC

    Senior Security Engineer, SOC

    ConfidentialChennai, India
    Monitor and analyze security event logs and alerts to detect potential incidents, and lead investigations for containment, eradication, and recovery. Lead security incident investigation, containmen...Show moreLast updated: 5 days ago
    • Promoted
    Engineer - Tool Room

    Engineer - Tool Room

    Johnson ElectricSriperumbudur, Tamil Nadu, India
    Engineer – CAM Program CNC Milling.The ideal should have hands-on experience in 5 axis machine operation in Makino or DMG, programing in power mill. Responsibilities include developing and optimizin...Show moreLast updated: 2 days ago
    • Promoted
    Solution Engineer

    Solution Engineer

    HexnodeChennai, Tamil Nadu, India
    Mitsogo is a global organization that highly values the contributions of each employee.Our ability to attract top talent is a testament to our commitment to fostering a sense of belonging for every...Show moreLast updated: 30+ days ago
    • Promoted
    UPS Service Engineer

    UPS Service Engineer

    SREE NANDHEES TECHNOLOGIES PVT LTDAmbattur, Tamil Nadu, India
    Sree Nandhees Technologies Pvt Ltd (www.E EEE professionals with 1 - 3 years of experience, to join our company immediately. Service Engineer - UPS / Inverter / Solar.Ambattur Industrial Estate, Chennai...Show moreLast updated: 2 days ago
    • Promoted
    Sr. SOC Engineer

    Sr. SOC Engineer

    ConfidentialChennai, India
    Configure, deploy, and maintain the organization's SIEM platform to ensure optimal performance and functionality.Develop and customize SIEM rules, filters, and alerts to meet specific security moni...Show moreLast updated: 5 days ago
    • Promoted
    Lead - SOC Analyst

    Lead - SOC Analyst

    ConfidentialChennai, India
    Organizations everywhere struggle under the crushing costs and complexities of 'solutions' that promise to simplify their lives. To create a better experience for their customers and employees.Softw...Show moreLast updated: 30+ days ago
    • Promoted
    IP / SOC Verification Engineer

    IP / SOC Verification Engineer

    ACL DigitalChennai, IN
    IP / SS / SoC Verification Engineer (Hybrid – Bangalore / Hyderabad).The role involves hands-on contribution to.IP, Sub-system, and SoC-level verification. SystemVerilog / UVM-based verification environme...Show moreLast updated: 2 days ago
    • Promoted
    Microsoft ERP Database Engineer

    Microsoft ERP Database Engineer

    GeoDataTek India Pvt LtdChingleput, Republic Of India, IN
    Microsoft ERP Database Administrator (DBA).Microsoft Dynamics NAV, Business Central, or Dynamics 365 Finance & Operations. You’ll be responsible for ensuring database uptime, performance, security, ...Show moreLast updated: 12 days ago
    • Promoted
    Capgemini - SOC Operations Analyst - SIEM

    Capgemini - SOC Operations Analyst - SIEM

    Capgemini Technology Services India LimitedChennai
    SOC Operations : Mumbai, Pune, Hyderabad, Chennai, Noida, Gurgaon, Bangalore, Gandhinagar Choosing Capgemini means choosing a company where you will be empow...Show moreLast updated: 30+ days ago
    • Promoted
    ERP Database Administrator (DBA)

    ERP Database Administrator (DBA)

    GeoDataTek India Pvt LtdChengalpattu, Tamil Nadu, India
    Microsoft ERP Database Administrator (DBA).Microsoft Dynamics NAV, Business Central, or Dynamics 365 Finance & Operations. You’ll be responsible for ensuring database uptime, performance, security, ...Show moreLast updated: 13 days ago
    • Promoted
    Senior Solution Consultant

    Senior Solution Consultant

    ComplianceQuestChennai, IN
    Solution Consultant plays a critical role in the success of the Implementation Services team.Solution Consultant is to provide product recommendations and configurations, ensuring proactive communi...Show moreLast updated: 30+ days ago
    • Promoted
    MEP Coordinator

    MEP Coordinator

    Mata Amritanandamayi Mandir TrustThiruporur, Tamil Nadu, India
    MEP Engineer (Service Utilities Management & Supervision).Mata Amritanandamayi Mandir Trust (MAMAT) is developing one of India’s largest Cultural & Heritage Theme Parks at Mahabalipuram, Tamil Nadu...Show moreLast updated: 21 days ago
    • Promoted
    Lead

    Lead

    MindsprintChennai, Tamil Nadu, India
    SOC Tools Engineering and Operation lead at Mindsprint, Chennai.Qualification : BE / BTech / MSC / or equivalent degree.How to apply : Please send your updated resume to palani. The SOC Engineering and Ope...Show moreLast updated: 2 days ago
    • Promoted
    Structural Engineer

    Structural Engineer

    SB AssociatesTambaram, Tamil Nadu, India
    SB Associates, a leading Chennai-based consultancy organization, has been offering highly professional services in the Civil and Structural Engineering fields since 2011. Our expertise spans Residen...Show moreLast updated: 15 days ago
    • Promoted
    Microsoft Business Central Functional

    Microsoft Business Central Functional

    GeoDataTek India Pvt LtdChengalpattu, Tamil Nadu, India
    GeoDataTek India Private Limited, formerly known as GSMDATA Tech Pvt Ltd, is a leading technology company specializing in innovative solutions for businesses. As a Microsoft Silver Partner, we imple...Show moreLast updated: 2 days ago
    • Promoted
    Advanced Solutions Engineer

    Advanced Solutions Engineer

    Chargebeechennai, tamil nadu, in
    Chargebee is the leading Revenue Growth Management (RGM) platform for subscription businesses.Thousands of companies at every stage of development — from startups to enterprises — use Chargebee to ...Show moreLast updated: 2 days ago