Administrator (Support & Operations)
Technology, Data & Digital · IT Infrastructure & Security · Cybersecurity · IT Support · DevOps
In short
The L2 Security Analyst in Madurai, India, will monitor, investigate, and respond to identity-based and endpoint security threats using Microsoft Defender for Endpoint. This role requires 24x7 support and collaboration with global teams for threat detection, containment, and remediation.
Responsibilities
- Monitor, investigate, and respond to identity-based and endpoint security threats using Microsoft Defender for Endpoint (MDE).
- Collaborate with global security teams for threat detection, containment, and remediation.
- Work with very large and complex networks.
- Monitor events, analyze them, and escalate as needed.
- Provide inputs for content management.
- Generate monthly, weekly, and daily reports.
- Review SIEM escalated incidents and qualify true positives.
- Provide monthly trend and security analysis summary reports.
- Support SIEM event/incident analytics.
- Provide log analysis summaries and recommendations for detection/protection.
- Perform advanced triages and collaborate with resolution groups or third parties.
- Liaise between cross-functional teams and assist in formulating security incident response reports.
- Advocate for protection and mitigation strategies based on lessons learned.
Requirements
- Ability to work with very large and complex networks.
- Self-motivated, creative thinker, takes ownership of tasks and projects.
- Ability to work effectively in a team and manage tasks.
- Proven track record of consistent and organized outputs.
- Eagerness to understand complex problems and requirements.
- Aptitude for translating problems into workable designs and solutions.
- Keen eye for detail.
- Knowledge/experience on any SIEM tools.
- Experience on IDS (Intrusion Detection systems) platform.
- Experience in Network Security roles.
- Exposure to Mitre framework and equivalents.
- Hands-on experience in EDR platforms and threat analysis.
- Threat hunting/incident response experience.
- Experience and knowledge in Network security/ System Security/ Endpoint Security.
- Experience of Event Monitoring and analysis and escalations.
- Good verbal/written communication skills.
- Willingness to work in 24x7 environments.
- Continual system improvement mindset.
- Client-facing technical analysis report and presentation skills.
Desired Qualifications
- Willing to work on 24/7 operations.
- Shall have good verbal/written communication skills.
- Should be willing to work in 24x7 environments.
- Incumbent should carry continual system improvement mindset and able to demonstrate in work.
- Client facing technical analysis report and presentation skills.
Benefits
- 24x7 operations support.
- Potential for travel opportunities.
#Security#IT#Operations#Support#Analysis#Monitoring#Incident Response