Technical Lead-Cybersecurity
Birlasoft
Birlasoft
Join our Security Operations Center (SOC) team as an experienced L2 Security Incident Response Analyst. This role is crucial for monitoring, investigating, and responding to security incidents across our enterprise environments. You will play a key part in threat detection, analysis, and ensuring the security posture of our organization.
We are looking for a candidate with proven hands-on experience in SIEM, EDR, cloud security monitoring, and log analysis. Your expertise in cyber threat detection and incident response will be vital in safeguarding our systems and data against evolving threats.
Key responsibilities include monitoring and responding to security alerts, performing in-depth incident analysis, and conducting threat hunting to uncover suspicious activities. You will analyze logs, network traffic, and endpoint activities to identify indicators of compromise.
This role also involves investigating various incident types such as malware, phishing, and unauthorized access. You will correlate security events, escalate critical incidents, and collaborate with stakeholders. Maintaining SIEM rules, supporting forensic investigations, and preparing incident reports are also core duties.
Additionally, you will validate security controls, assist in vulnerability remediation, support audits, and develop/maintain SOC playbooks. Continuous improvement of SOC processes and threat detection capabilities is expected.
Essential skills for this position include expertise in Security Incident Monitoring & Response, SIEM Operations & Analysis, and Threat Hunting. A strong understanding of Incident Investigation & Triage, Malware Analysis Fundamentals, and IOC Analysis is required.
Proficiency in Endpoint Detection & Response (EDR/XDR), Log Analysis & Event Correlation, and Network Security Monitoring is necessary. Experience with Cloud Security Monitoring, Email Security & Phishing Analysis, and Vulnerability Management Fundamentals is also crucial.
Familiarity with Digital Forensics Concepts, the MITRE ATT&CK Framework, and the Cyber Kill Chain Methodology is expected. This role demands a proactive approach to cybersecurity and a commitment to maintaining a robust security posture.
Birlasoft
IT Consulting