Security Specialist Analyst


Company Name


Job Description

  • Job Description:
    • We are inviting applications for the role of Security Specialist  L2 Analyst.
    Responsibilities:
    • Handling alerts and incident on XDR platform
    • Alert & incident triage and analysis
    • Proactively investigating suspicious activities
    • Log all findings, actions taken, and escalations clearly in the XDR and ITSM platform
    • Execute predefined actions such as isolating blocking IPs or disabling user accounts, based on set protocols.
    • Adhere to established policies, procedures, and security practices.
    • Follow-up with tech team for incident closure
    • Participating in daily standup and review meeting
    • L2 Analyst has responsibility to closely track the incidents and support for closure.
    • Working with logsource and usecase management in integrating log sources and developing & testing usecase
    • Work & support on multiple cybersecurity tool (DLP, GRC, Cloudsec tool, DAM)
    • Developing SOP / instruction manual for L1 team
    • Guiding L1 team for triage/analysis and assist in clousure of cybersecurity alert and incidents
    • Handle XDR alerts and followup with customer team for agent updates
    • Escalate more complex incidents to L3 SME for deeper analysis.
    Preferred Qualifications/ Skills:
    1. Security Monitoring & Incident Response Governance
    2. Define and maintain security monitoring, threat detection, and incident response policies and procedures.Establish and mature a threat intelligence program, incorporating tactical and strategic threat feeds.Align SOC operations with evolving business risk priorities and regulatory frameworks.Platform & Toolset Management
    3. Evaluate, implement, and enhance SIEM platforms, ensuring optimal log ingestion, correlation, and rule effectiveness.Assess and manage deployment of EDR, XDR, SOAR, and Threat Intelligence solutions.Maintain and update incident response playbooks and automation workflows.Ensure consistent platform hygiene and technology stack effectiveness across SOC tooling.SOC Operations & Threat Detection
    4. Oversee 24x7 monitoring of security events and alerts across enterprise assets.Lead and coordinate proactive threat hunting across networks, endpoints, and cloud.Manage and support forensic investigations to identify root cause and recovery paths.Govern use case development, log source onboarding, and alert/event triage processes.Regulatory Compliance & Incident Management
    5. Ensure timely and accurate incident reporting in compliance with RBI, CERT-In, and other authorities.Retain logs in accordance with regulatory data retention mandates.Enforce and monitor security baselines for endpoints, in line with internal and regulatory standards.Advanced Threat Management & Reporting
    6. Plan, conduct, and report on Red Teaming and Purple Teaming exercises to test detection and response capabilities.Participate in and contribute to the Risk Operations Committee (ROC) meetings and initiatives.Review and track SOC effectiveness through KPIs, metrics, and regular reporting dashboards.

Job Details

Experience : 3 To 5
Number Of Vacancies : 10
Job Type : Permanent
Industry Type : IT/Software
Salary : 5 Lac - 10 Lac P.A

Education Summary

UG : BE/B.Tech PG : Any PG Degree

Contact Details

Contact Person : NA
Contact Number : 8026788990
e-mailId : response@in.ibm.com
Address : IBM India Private Limited, 
No. 1/124 DLF IT Park Tower 1A, 
Ramapuram, Shivaji Garden, 
Nandampakkam Post Near L&T, 
Chennai.

Back

Office Location

Central Jakarta No 1234, Jakarta, Indonesia

Similar Jobs