https://bayt.page.link/t6eWVwjqSShKjvDp7
Create a job alert for similar positions

Job Description

Job Description:Job Description SummaryProvide tier two operational support, leading team efforts in resolution of incidents and outages for information security technology and its dependencies on Public and Private Cloud computing environments, shared platforms, and operating systems for more than three of the following technologies:Ensuring team's adherence to SOPs, training and performance monitoring for team members, and continuous process improvement for efficiency, including automation, wherever applicable and conduct recurring assessments of all the key SOC workflows to highlight process deficiencies as well as improvement opportunities for staff.o Malware Analysiso SIEM (Splunk)o Software-defined (Cloud) Network Securityo Endpoint Security Protectiono Data Loss PreventionPartner with other technology teams in handling and responding to internal customer issues, conducting problem analysis and providing solutions for service level improvements, and ensuring timely remediation of security issues in accordance with corporate policies and standardsExecute daily security technology administration functionsPerform Root Cause Analysis (RCA) on applicable technologyValidate quality of dashboards and alerts and suggest updates to reflect new threats and changes in the monitored environmentSupport the Security Operations team in its efforts on various technology projects and operational initiativesWork as a part of a team to ensure that Guardian customers' data, technology platforms, and infrastructure are available and safeguarded from cyber threatsFollow ITIL practices regarding incident, problem, and change managementStay up to date with emerging cyber threats, industry best practices, and applicable regulatory requirementsRequired QualificationsBeing curious and desire to analyze anomaliesDesire and passion to learn and grow in CybersecurityCustomer-focused demeanorMinimum 2-4 years of proven experience in building and operating security controls in at least two of the following domains:o Network/Perimeter Security, including Next-Gen firewalls, intrusion prevention systems, proxies, and Web Application firewalls (WAFs)o Enterprise Endpoint (host-based) Securityo DLP and Secure Data Transmission, Storage, and Accesso Identity and Access Management / User Behavior AnalyticsUnderstanding of security architecture, operating and troubleshooting principles of Microsoft Windows and Linux operating systemsSIEM management: Senior SOC Engineers must have extensive experience in managing SIEM systems, including configuring, tuning, and optimizing them for maximum efficiency.Endpoint security: They must have a deep understanding of endpoint security solutions, including antivirus, anti-malware, and intrusion prevention systems.Security incident handling: Senior SOC Engineers must have experience in handling security incidents, including identifying the source of the threat, containing it, and preventing further damage.Data Loss Prevention (DLP): They must have experience in implementing and managing DLP solutions to prevent data breaches.Threat intelligence: They must stay up-to-date with the latest security threats and trends, and use this information to improve the organization's security posture.Team management: Senior SOC Engineers must lead and manage the security operations center team, including hiring, training, and mentoring team members.Documentation: They must ensure that all security events, incidents, and responses are properly documented for future reference and analysis.Collaboration: Senior SOC Engineers must work closely with other IT teams, including network engineers, system administrators, and application developers, to ensure that all systems are secure.Continuous improvement: They must continuously evaluate and improve the organization's security posture by implementing new technologies, processes, and procedures.Requirements for a Senior SOC Engineer typically include a bachelor's degree in computer science or a related field, along with relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Ethical Hacker (CEH). Strong leadership skills, analytical skills, attention to detail, and the ability to work well under pressure are also essential. Ability to effectively work in a team, as well as to be an independent contributor on select projectsPreferred QualificationsRecognized Security Industry and Public Cloud IaaS certificationsFamiliarity with security industry standards and best practices (NIST 800-53, ISO27001, NIST CSF, HITRUST, NYDFS-Cybersecurity, HIPAA, FedRAMP, OWASP, etc.)Familiarity with ITIL; experience with incident, problem, change, and risk managementQualifications:Job Description SummaryProvide tier two operational support, leading team efforts in resolution of incidents and outages for information security technology and its dependencies on Public and Private Cloud computing environments, shared platforms, and operating systems for more than three of the following technologies:Ensuring team's adherence to SOPs, training and performance monitoring for team members, and continuous process improvement for efficiency, including automation, wherever applicable and conduct recurring assessments of all the key SOC workflows to highlight process deficiencies as well as improvement opportunities for staff.o Malware Analysiso SIEM (Splunk)o Software-defined (Cloud) Network Securityo Endpoint Security Protectiono Data Loss PreventionPartner with other technology teams in handling and responding to internal customer issues, conducting problem analysis and providing solutions for service level improvements, and ensuring timely remediation of security issues in accordance with corporate policies and standardsExecute daily security technology administration functionsPerform Root Cause Analysis (RCA) on applicable technologyValidate quality of dashboards and alerts and suggest updates to reflect new threats and changes in the monitored environmentSupport the Security Operations team in its efforts on various technology projects and operational initiativesWork as a part of a team to ensure that Guardian customers' data, technology platforms, and infrastructure are available and safeguarded from cyber threatsFollow ITIL practices regarding incident, problem, and change managementStay up to date with emerging cyber threats, industry best practices, and applicable regulatory requirementsRequired QualificationsBeing curious and desire to analyze anomaliesDesire and passion to learn and grow in CybersecurityCustomer-focused demeanorMinimum 2-4 years of proven experience in building and operating security controls in at least two of the following domains:o Network/Perimeter Security, including Next-Gen firewalls, intrusion prevention systems, proxies, and Web Application firewalls (WAFs)o Enterprise Endpoint (host-based) Securityo DLP and Secure Data Transmission, Storage, and Accesso Identity and Access Management / User Behavior AnalyticsUnderstanding of security architecture, operating and troubleshooting principles of Microsoft Windows and Linux operating systemsSIEM management: Senior SOC Engineers must have extensive experience in managing SIEM systems, including configuring, tuning, and optimizing them for maximum efficiency.Endpoint security: They must have a deep understanding of endpoint security solutions, including antivirus, anti-malware, and intrusion prevention systems.Security incident handling: Senior SOC Engineers must have experience in handling security incidents, including identifying the source of the threat, containing it, and preventing further damage.Data Loss Prevention (DLP): They must have experience in implementing and managing DLP solutions to prevent data breaches.Threat intelligence: They must stay up-to-date with the latest security threats and trends, and use this information to improve the organization's security posture.Team management: Senior SOC Engineers must lead and manage the security operations center team, including hiring, training, and mentoring team members.Documentation: They must ensure that all security events, incidents, and responses are properly documented for future reference and analysis.Collaboration: Senior SOC Engineers must work closely with other IT teams, including network engineers, system administrators, and application developers, to ensure that all systems are secure.Continuous improvement: They must continuously evaluate and improve the organization's security posture by implementing new technologies, processes, and procedures.Requirements for a Senior SOC Engineer typically include a bachelor's degree in computer science or a related field, along with relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Ethical Hacker (CEH). Strong leadership skills, analytical skills, attention to detail, and the ability to work well under pressure are also essential. Ability to effectively work in a team, as well as to be an independent contributor on select projectsPreferred QualificationsRecognized Security Industry and Public Cloud IaaS certificationsFamiliarity with security industry standards and best practices (NIST 800-53, ISO27001, NIST CSF, HITRUST, NYDFS-Cybersecurity, HIPAA, FedRAMP, OWASP, etc.)Familiarity with ITIL; experience with incident, problem, change, and risk managementLocation: This position can be based in any of the following locations:GurgaonCurrent Guardian Colleagues: Please apply through the internal Jobs Hub in Workday
You have reached your limit of 15 Job Alerts. To create a new Job Alert, delete one of your existing Job Alerts first.
Similar jobs alert created successfully. You can manage alerts in settings.
Similar jobs alert disabled successfully. You can manage alerts in settings.