Bangalore
2 days ago
L2 SOC Analyst (Incident Response)

UST is looking for Analyst with the below requirements, The Analyst is a position within Cyber Operations Department, whose mission is to safeguard the digital assets and integrity of the organization. In this role, the Analyst understands how security measures align with the overall organizational strategy and will contribute to the development and implementation of security controls that adhere to regulatory requirements and best practices. The Analyst will monitor, analyze and respond to potential security incidents and threats, analyze their urgency and impact, as well as implement necessary responsive measures to protect the organization's digital assets, data, and infrastructure. The Analyst Security Operations role has multiple disciplines include Security Monitoring, Incident Detection & Analysis, and more advanced disciplines in Threat Intelligence, Vulnerability Management and Pro-Active Security Testing. Team members may spend a percentage of time across all disciplines or all of their time in a specific one. Security Monitoring & Incident Detection and Response & Analysis

Strong knowledge of Splunk (or other SIEM tools),CrowdStrike, Windows Defender, Other AV/EDR tool configuration, Cyberhaven (or other DLP tools) Knowledge of Vulnerability & Attack Surface Management toolsets, Threat Intelligence and Analysis tools, Vendor technical Risk Scoring tools, Deception technologies Knowledge of ticketing, triage and forensics capabilities and toolsets General Skills Good communication skills, with the ability to document and explain technical information clearly. Analytical mindset, with a focus on learning and problem-solving. Ability to work independently and well in a team, showing strong interpersonal skills. Eagerness to learn and adapt to new challenges in cybersecurity. Entrepreneurial spirit, open to trying new approaches and learning from them. Experience with Information Security technologies (Firewall, IPS, IDS, SIEM, EDR, CASB, AV, DLP, etc.) Experience with common information security controls frameworks (i.e. ISO, NIST, CIS, or CSA) Experience deploying systems or applications Ability to work independently and with teams on complex problems Complex problem solving Ability to work in a fast paced, dynamic environment. Attention to detail and priority/time management. Strong customer service, analytic, communication (oral and written) and troubleshooting/problem solving skills. Experience with endpoint security control design having implemented controls such as EDR or AV Experience with automation of Information Security controls Experience with automating tasks via scripting, Experience with common cloud security control frameworks, for example NIST CSF or CSA 

Confirm your E-mail: Send Email