Sr Analyst
Technology, Data & Digital · IT Infrastructure & Security · Cybersecurity · IT Support
In short
The L2 Security Analyst will monitor, investigate, and respond to identity-based and endpoint security threats using Microsoft Defender for Endpoint. This role requires 24x7 support and collaboration with global security teams for threat detection, containment, and remediation.
Responsibilities
- Real-time monitoring, investigation, and response to identity-based and endpoint security threats using Microsoft Defender for Endpoint (MDE).
- 24x7 support coverage and collaboration with global security teams.
- Ensure threat detection, containment, and remediation in a fast-paced environment.
- Work with very large and complex networks.
- Experience on SIEM tools or Intrusion Detection Systems (IDS) platform and Network Security roles.
- Exposure to Mitre framework and equivalent, hands-on experience in EDR platforms and threat analysis, threat hunting/incident response experience.
- Experience and knowledge in Network security/ System Security/ Endpoint Security.
- Experience of Event Monitoring and analysis and escalations.
- Provide inputs for content management.
- Experience on Monthly, Weekly and daily reporting.
- Review SIEM escalated incidents and qualify true positives.
- Provide a monthly trend and security analysis summary report.
- Provide SIEM event/Incident analytics support.
- Provide log analysis summary and recommendations on detection/protection of incidents.
- Perform advanced triages and work in collaboration with resolved groups, third party or with designated customer contacts.
- Liaise between cross functional teams and assist in formulating security incident response report.
- Advocate protection and mitigation strategies to be implemented from lessons learnt exercises.
Requirements
- Self-motivated individual and creative thinker who will take ownership of tasks and projects, able to work with the team, and manages tasks effectively and has a proven track record of consist and organized outputs.
- Eagerness to understand complex problems and requirements, aptitude for translating these problems into workable designs and solutions and a keen eye for detail.
- Willing to work on 24/7 operations.
- Good verbal/written communication skills.
- Client facing technical analysis report and presentation skills.
- Continual system improvement mindset.
Desired Qualifications
- Experience and knowledge in Network security/ System Security/ Endpoint Security.
- Experience of Event Monitoring and analysis and escalations.
- Exposure to Mitre framework and equivalent, Hands-on experience in EDR platforms and threat analysis, threat hunting/incident response experience.
- Knowledge/experience on any SIEM tools or Experience on IDS (Intrusion Detection systems) platform and Network Security roles.
Benefits
- From time-to-time travel opportunities may be assigned.
#security#threat detection#incident response#SIEM#EDR