Security Specialist Analyst
KeySkills
-
xdr,
edr,
soar,
siem,
cybersecurity,
threat detection,
incident response,
alert triage,
itsm,
log analysis,
threat hunting,
soc operations,
usecase development,
log source integration,
dlp,
grc,
cloud security,
dam,
sop documentation,
red teaming,
purple teaming,
forensic investigation,
root cause analysis,
compliance,
rbi,
cert-in,
security monitoring,
security baselines,
policy enforcement,
threat intelligence,
security tools,
incident management,
automation workflows,
linux,
windows,
escalation handling,
platform hygiene,
reporting dashboards,
risk operations,
shell scripting,
communication skills.,
Job Description
- Job Description:
- We are inviting applications for the role of Security Specialist L2 Analyst.
Responsibilities:- Handling alerts and incident on XDR platform
- Alert & incident triage and analysis
- Proactively investigating suspicious activities
- Log all findings, actions taken, and escalations clearly in the XDR and ITSM platform
- Execute predefined actions such as isolating blocking IPs or disabling user accounts, based on set protocols.
- Adhere to established policies, procedures, and security practices.
- Follow-up with tech team for incident closure
- Participating in daily standup and review meeting
- L2 Analyst has responsibility to closely track the incidents and support for closure.
- Working with logsource and usecase management in integrating log sources and developing & testing usecase
- Work & support on multiple cybersecurity tool (DLP, GRC, Cloudsec tool, DAM)
- Developing SOP / instruction manual for L1 team
- Guiding L1 team for triage/analysis and assist in clousure of cybersecurity alert and incidents
- Handle XDR alerts and followup with customer team for agent updates
- Escalate more complex incidents to L3 SME for deeper analysis.
Preferred Qualifications/ Skills:- Security Monitoring & Incident Response Governance
- Define and maintain security monitoring, threat detection, and incident response policies and procedures.Establish and mature a threat intelligence program, incorporating tactical and strategic threat feeds.Align SOC operations with evolving business risk priorities and regulatory frameworks.Platform & Toolset Management
- Evaluate, implement, and enhance SIEM platforms, ensuring optimal log ingestion, correlation, and rule effectiveness.Assess and manage deployment of EDR, XDR, SOAR, and Threat Intelligence solutions.Maintain and update incident response playbooks and automation workflows.Ensure consistent platform hygiene and technology stack effectiveness across SOC tooling.SOC Operations & Threat Detection
- Oversee 24x7 monitoring of security events and alerts across enterprise assets.Lead and coordinate proactive threat hunting across networks, endpoints, and cloud.Manage and support forensic investigations to identify root cause and recovery paths.Govern use case development, log source onboarding, and alert/event triage processes.Regulatory Compliance & Incident Management
- Ensure timely and accurate incident reporting in compliance with RBI, CERT-In, and other authorities.Retain logs in accordance with regulatory data retention mandates.Enforce and monitor security baselines for endpoints, in line with internal and regulatory standards.Advanced Threat Management & Reporting
- Plan, conduct, and report on Red Teaming and Purple Teaming exercises to test detection and response capabilities.Participate in and contribute to the Risk Operations Committee (ROC) meetings and initiatives.Review and track SOC effectiveness through KPIs, metrics, and regular reporting dashboards.
Job Details
Experience :
3 To 5
Number Of
Vacancies :
10
Job Type :
Permanent
Industry Type : IT/Software
Salary
:
5 Lac - 10 Lac
P.A
Education Summary
UG :
BE/B.Tech
PG :
Any PG Degree
Contact Details
Contact
Person :
NA
Contact
Number :
8026788990
e-mailId :
response@in.ibm.com
Address :
IBM India Private Limited,
No. 1/124 DLF IT Park Tower 1A,
Ramapuram, Shivaji Garden,
Nandampakkam Post Near L&T,
Chennai.
Office Location
Central Jakarta No 1234, Jakarta, IndonesiaApplication Developer
Experience -
2 to 4
Senior Technologist
Experience -
0 to 2
Software Architect
Experience -
6 to 10
Key Skills -
software architecture,
application architecture,
cloud architecture,
hybrid cloud,
aws,
azure,
gcp,
ibm cloud,
docker,
kubernetes,
openshift,
microservices,
containers,
orchestration,
rest api,
api gateway,
swagger,
openapi,
oauth,
red hat,
ansible,
rh fuse,
rh sso,
devops,
infrastructure as code,
payments systems,
ach,
wires,
real time payments,
interac,
card payments,
banking,
financial services,
cloud native,
solution design,
system strategy,
data center strategy,
scalability,
availability,
performance,
site reliability engineering,
sre,
automation,
technical leadership,
compliance,
governance,
cloud certification,
collaboration.,
Data Engineer-Data Integration
Experience -
0 to 3
Key Skills -
data engineering,
data integration,
etl,
informatica powercenter,
data warehousing,
business intelligence,
data migration,
cloud,
ms-azure,
power bi,
big data,
sql,
relational databases,
unix,
shell scripting,
python,
data processing,
real-time processing,
batch processing,
data analysis,
data management systems,
unstructured data,
data pipelines,
data transformation,
information management.,