GENERIC ACCOUNTABILITIES:
- Governance, Audit Work fully within risk policies and procedures and ensure compliance with regulatory guidelines & closure of internal & external audit findings /comments.
ACCOUNTABILITIES
- 24 x 7 x 365 Monitoring of security events and Log Sources availability
- Security incidents Triage and Escalation
- Reporting False positives and recommend Use Cases
- Provide SOC Infrastructure tuning feedback.
- Monitoring brand protection reports and portals.
- Monitor Dashboards & Rules triggered by SOC monitoring tools to invoke incident-handling process.
- Monitor health of the SOC monitoring tools by considering respective administrative dashboards.
- Acknowledge the alerts generated by SOC monitoring tools.
- Perform Initial analysis of the alerts triggered, or anomalies observed on the dashboards before sending it to SOC Analyst.
- Gather necessary information from SOC monitoring tools with respect to the case, which would serve as evidence and aid SOC Analyst in further investigation of the case.
- Track the lifecycle of the entire case/ incident to effectively resolve the case/ incident.
- Generate daily reports and sent to the concerned personnel within agreed timelines.
- Monitoring and Performing Level 1 triage of security events received through alerts from SIEM or other security tools.
- Escalating issues to SOC Tier 2 (Senior SOC analyst) or management when necessary.
- Follow up Incident resolutions for various offenses/incidents.
- Conduct cyber security threat intelligence activities.
- Continually assess the overall effectiveness of Security Monitoring solutions
Threat Hunting
- Conduct Threat Hunting process, the investigation of possible anomalies to find any yet-to-be-discovered malicious activities that could lead to a full-blown breach
- Managing the proactively searching for cyber threats that are lurking undetected in the network
Education
- Bachelor's degree in computer science or Equivalent
- Mandatory: CCNA Cyber Ops., CCNA Security.
- Recommended: Ethical Hacking
- Knowledge: IT security operations / Threat Intelligence
Experience
- 1 - 3 year's professional IT experience
- Knowledge of Information Security Standard IS0 27xx, PCI
- Incident Management and Response
- Experience in security device management and SIEM
- Good Analytical skills, Problem solving and Interpersonal skills.
- Knowledge of security concepts such as cyber-attacks and techniques, threat vectors.