Skip to main content

Job Description

   Back

Cybersecurity Analyst

18-07-2024 12:20:03

---

  • Chennai, Tamil Nadu, India (CHN)

  • Use SIEM in the daily operational work which includes but not limited to Administer, operate, manage SIEM platform and regular activities of ensuring the health of log sources, parsers, alerts, reports etc. and enduring that the platform is operating as planned.
  • Monitor SIEM and other event sources, assess, prioritize, escalate, and manage security alerts.
  • Perform analysis of security, network database and application logs, correlate events, and activities to create threat scenarios in order to get ahead of threat actors and reduce the exposure
  • Lead the imminent threat/zero-day response function across the environment.
  • Translate threat intelligence into actionable security across tools such as firewall, IPS and malware detection across multiple security vendor platforms.
  • Track and resolve security incidents on regular frequencies and collaborate with other teams for resolution and suggest areas for improvement.
  • Must have some experience building custom connectors/parsers etc. to point devices or IT assets that are not supported out of the box.
  • Own and operate most important security solutions designed to protect the company from cyber threats and attacks.
  • Lead in deploying new solutions and technologies to improve the security posture of the company.
  • Continuous fine-tuning of our security solutions to reduce the occurrence of false positive and false negative alerts.
  • Working knowledge and experience with the MITRE framework for cyber adversary tactics and techniques.
  • Prior working experience in Healthcare providerenvironment (added advantage) Must have hands on working experience in thegiven Cybersecurity tools viz Azure Sentinel, ProofPoint, CrowdStrike, ImpervaWAF, Vulnerability Management – Rapid7