Shift : 18x5
: SIEM, SOAR, UEBA, and NBAD Specialist
Position Summary:
We are looking for a skilled Security OperationsSpecialist with expertise in SIEM, SOAR, UEBA, and NBAD technologiesto strengthen our security monitoring, automation, and threat detectioncapabilities. The ideal candidate should have a strong technical background,relevant experience in cyber security, and a proactive attitude toward threathunting and incident response.
Roles and Responsibilities
- Incident Analysis, Incident co-ordination & Response,Remote Incident Response, Forensics Artifact handling & Analysis, MalwareAnalysis, Insider Threat Case Support, Sensor Tuning & Maintenance, CustomSignature/ Rules Creation, Scripting & Automation, Audit Collection &Storage, Product Assessment & Deployment and Risk Assessment , ResponsePlanning, Mitigation, Recovery Planning, Communicating Emergency Alerts &Warnings to relevant/designated stakeholders , Endpoint Threat Detection andremediation.
- Take SOAR action on identified malicious communications, Monitorand alert any abnormalities identified, Work on ticket and ensure timelyresponse and resolution of tickets as per SLA
- Reporting the security events/ incidents to L3 and other relevant/designated stakeholders
- Communicating Emergency Alerts & Warnings torelevant/designated stakeholders.
- Should have knowledge of below technologies
UEBA (User and Entity BehaviorAnalytics):
- Monitor behavioral analytics to detect insiderthreats, compromised accounts, and anomalous activities.
- Configure and tune UEBA models to reduce falsepositives and enhance detection capabilities.
NBAD (Network Behavior AnomalyDetection):
- Monitor and analyze network traffic to identifyanomalies indicating potential threats or breaches.
- Work with network and SOC teams to investigateand respond to suspicious network behavior.
Required Qualifications:
- Education: B.E./B.Tech/MCA/M.Sc. in Computer Science or Information Technology.
- Experience: Minimum +5 years of relevant experience in Security Operations, Threat Detection, or Incident Response.
- Certifications: Certified Ethical Hacker (CEH) mandatory.