Professional Cybersecurity Analyst

Teknik, data och digitalt · IT-infrastruktur och säkerhet · Cybersäkerhet · DevOps

I korthet

We are seeking an experienced SOC Analyst in Bangalore to detect, analyze, and mitigate cybersecurity threats. You will lead incident response, collaborate with teams, and enhance the organization's security posture, leveraging SIEM/SOAR platforms and scripting skills.

Ansvarsområden

  • Conduct in-depth analysis of security events and alerts to identify potential security incidents and vulnerabilities.
  • Investigate and respond to security incidents in real-time, utilizing advanced analytical skills to determine the nature and impact of threats.
  • Handle complex security incidents, including malware analysis and incident investigations.
  • Assess and mitigate vulnerabilities within the IT environment.
  • Analyze network traffic, cloud environments, and host systems to uncover evidence of security breach.
  • Fine-tune alerts to reduce false positives and suggest new use case creations.
  • Collaborate with IT teams, external stakeholders, and vendors to coordinate incident response and remediation efforts.
  • Drive incident response activities, ensuring efficient resolution and comprehensive documentation.
  • Conduct incident response workshops and train less experienced team members.
  • Create, update, and standardize operational procedures and response playbooks.
  • Maintain detailed documentation of incidents, responses, and lessons learned to enhance future security measures.
  • Actively support in threat-hunting activities.
  • Perform quality reviews of investigations and provide actionable feedback for improvement.
  • Develop SOC monitoring rules, coordinate with digital forensics teams, and enhance incident response processes.
  • Contribute to Playbook automation initiatives by providing actionable suggestions aimed at minimizing manual tasks for analysts.

Krav

  • 3-5 years of experience in SIEM/SOAR platforms as a SOC analyst.
  • Strong technical expertise in incident response, and cybersecurity operations.
  • Experience with Splunk and SOAR tools (e.g., XSOAR) for log analysis and automated incident response.
  • Knowledge of scripting languages (e.g., Python, PowerShell) to automate tasks.
  • Proficient in network and security protocols, firewalls, server environments, LDAP, AD, Microsoft EntraID. and attack methodologies.
  • Strong written and verbal communication skills, with the ability to clearly document investigations and communicate findings to technical and non-technical stakeholders.

Önskade kvalifikationer

  • Certified SOC Analyst (CSA), Certified Ethical Hacker (CEH), or equivalent certifications (Preferred).
  • ITIL Skills (Preferred): Incident Management, Problem Management, and Audit/Assessment Experience.

Förmåner

  • Opportunity to work on cutting-edge cybersecurity initiatives.
  • Be part of a collaborative and forward-thinking team.
  • Continuous learning and career development opportunities in the cybersecurity domain.

Färdigheter

SplunkPythonPowerShellSOARSIEMNetwork SecurityActive DirectoryMicrosoft Entra ID
#cybersecurity#SOC Analyst#incident response#SIEM#SOAR#Splunk#Python#PowerShell#network security#ITIL
Volvo Group Logo

Om Volvo Group

The Volvo Group is one of the world’s leading manufacturers of trucks, buses, construction equipment and marine and industrial engines. The Group also provides complete solutions for financing and service. The Volvo Group, with its headquarters in Gothenburg, employs about 100,000 people, has production facilities in 18 countries and sells its products in more than 190 markets.\n\n

Volvo Group Logo

Företag

Volvo Group

Publicerade jobb

för 4 dagar sedan

Anställningstyp

Heltid

Arbetsform

På plats

Erfarenhetsnivå

Mellannivå

Platser

Bangalore, India

Sökande

Ansök tidigt