Description : The ideal candidate should have prior experience working in security monitoring and incident response environments, particularly with DLP and EDR solutions.
Hands-on experience with Netskope and SentinelOne will be an added advantage. The analyst will work alongside internal security teams in day-to-day threat detection, analysis, and mitigation activities.
Key Responsibilities :
- Monitor, analyze, and respond to security incidents using SIEM, EDR, and DLP tools.
- Assist in configuring and fine-tuning DLP & EDR policies.
- Perform investigation and response for endpoint alerts and suspicious activity.
- Collaborate with internal teams to ensure timely resolution of security issues.
- Participate in vulnerability management and patch validation activities.
- Contribute to continuous improvement of security processes and controls.
- Investigate and respond to security breaches and incidents, documenting the findings and actions taken.
Required Skills & Experience :
Strong understanding of incident management, DLP and EDR concepts.Familiarity with policy tuning, alert triage, and incident handling.Basic knowledge of MITRE ATTACK, common threat vectors, and malware behavior.Good understanding of operating system internals (Windows, macOS, Linux).Clear verbal and written communication skills for documentation and reporting.(ref : hirist.tech)