Security Center Operations Specialist_SOC
NTT DATA
NTT DATA
Join NTT DATA as a Security Center Operations Specialist and be at the forefront of proactive IT security. This role involves safeguarding client systems by monitoring, analyzing security events, and proposing effective countermeasures. You'll be part of a dynamic 24/7/365 Security Operations Center (SOC), contributing to the reduction of security incidents and system compromises. Eligibility for government clearance is required.
NTT DATA is a global leader in digital transformation, offering unparalleled capabilities in AI, cloud, security, and more. We foster an inclusive and innovative environment where passionate individuals can grow. With experts in over 50 countries, we are committed to client success and societal impact through responsible innovation.
As a Security Operations Specialist, your responsibilities will include:
- Proactively monitoring IT security to minimize the impact of security incidents. - Analyzing security events and providing detailed countermeasure proposals. - Performing security monitoring, event analysis, and managing incident response efforts. - Creating custom content, dashboards, and reports within leading SIEM tools like Splunk. - Supporting SOC engineering initiatives, including tool integration, automation development, and evaluating new technologies. - Conducting malware deconstruction using various tools and open-source intelligence. - Resolving client issues through prompt corrective actions or appropriate escalations. - Ensuring adherence to client Service Level Agreements (SLAs) by utilizing ticketing systems and standard operating procedures. - Performing shift-based tasks, including reporting and monitoring. - Evaluating the severity of security events using packet analysis and a deep understanding of exploits and vulnerabilities. - Communicating technical information effectively to clients and internal teams.
To excel in this role, you should possess:
- A Bachelor's degree in a related field, such as Computer Science, or equivalent educational and professional experience. - 4 to 6 years of experience with SIEM or Splunk Enterprise Security. - Strong written, verbal, and communication skills. - Proven experience in creating formal documentation, including reports, slide decks, and architecture diagrams. - Demonstrated expertise in root cause analysis and problem-solving. - Robust investigative and analytical problem-solving abilities. - Previous customer service or support experience.
Preference will be given to candidates with Splunk certification, coding or scripting experience, familiarity with Unix/Linux, or relevant security certifications like Security+, GIAC, SSGB, or ITIL. Working knowledge of industry controls such as NIST 800-53 is also a plus.
NTT DATA
IT Consulting