Required Qualifications Skills :
- Experience with one or more Security Information and Event Management (SIEM) solutions
- Understanding of common Attack methods and their SIEM signatures
- Experience in security monitoring, Incident Response (IR), security tools configuration and security remediation
- Strong knowledge and experience in Security Event Analysis capability
- Understanding of network protocols (TCP / IP stack, SSL / TLS, IPSEC, SMTP / IMAP, FTP, HTTP etc.)
- Understanding of Operating System, Web Server, database, and Security devices (firewall / NIDS / NIPS) logs and log formats
- Understanding of String Parsing and Regular Expressions
- Strong analytical and problem-solving skills
- High level of personal integrity, and the ability to professionally handle confidential matters and show an appropriate level of judgment and maturity
- Ability to interact effectively at all levels with sensitivity to cultural diversity
- Ability to adapt as the external environment and organization evolves
- Passionate about Cybersecurity domain and has the inclination to learn current technologies / concepts / improvements
- Excellent in security incident handling, documentation, root cause analysis, troubleshooting and publishing post-Incident Reports.
- Strong experience with cyber security in the domains of cyber threat intelligence and analysis, security monitoring and incident response
- Experience of network and system vulnerabilities, malware, networking protocols and attack methods to exploit vulnerabilities
- Knowledge of cyber security frameworks and attack methodologies
- Experience working with EDRs, Proxies, and anti-virus
- Knowledge of intrusion detection methodologies and techniques for detecting host- and network-based intrusions via intrusion detection technologies
- Excellent verbal and written English communication skills Experience
- More than 4-6 years of experience in Enterprise Cybersecurity or with a reputed services / consulting firm offering Security Consulting, Implementation and Managed Security services
- More than 4 years of technical experience in Security Operations Center (SOC) and Information Security required
- Experience with one or more Security Information and Event Management (SIEM) solutions
Skills Required
Cybersecurity, Siem, English Communication Skills, Operating System, Web Server, Database