SR SOC Analyst Lead-Remote at Remote, Remote, USA |
Email: [email protected] |
Title: Sr SOC Analyst Lead Location Texas, Frisco - Remote Rate 45/hr C2C Primary Skills: Should have experience in SIEM-Splunk analysis of notable events. Monitor Splunk Console & Dashboards and provide response to the reported incidents. Perform initial analysis for known issues and provide the appropriate recommendations for closure. Monitor & Reporting of Splunk components health and take necessary action in case of any observed issue. Provide notification and communication with Incident management and respective application team upon threat detection. Should have experience in investigation of Phishing, Malware related incidents. Should have knowledge of Azure cloud and cloud security. Should have knowledge of Firewall, IPS, Proxy and other infrastructure security. Should have knowledge of SOAR Automation platform. Should have knowledge of Threat Intel and its integration. Daily report preparation on number of incidents detected, closed, in progresses, open security issues. Maintain post incident documentation about all the actions taken, root cause, controls implemented. Perform analysis on the reported incidents, determine the root cause, recommend the appropriate solution. Monitor and review the L1/L2 activities. Should provide real time situational awareness to customer's stakeholders. Develop and implement processes for interfacing with operational teams and other supporting teams. Triage Critical incidents based on an agreed threat matrix. Should have hands-on experience on Microsoft Defender EDR. Triage incident based on Defender EDR timeline observation. Design, create and customize the dashboards as per customer requirements. The required candidate must be able to understand and communicate clearly to required stakeholders. Secondary Skills: Should be able understand false positives and false negatives related to Security Events Presentation and articulation skill Good communication skill with internal and external customers Thanks & Regards, Trayambkeshwer Dwivedi (Trayam), Sr. Technical Recruiter Raas infotek corporation 262 Chapman road, Suite 105A, Newark, DE-19702 Email: [email protected] Website: raasinfotek.com LinkedIn: linkedin.com/in/trayambkeshwar-dwivedi-792283218 -- Keywords: information technology Delaware SR SOC Analyst Lead-Remote [email protected] |
[email protected] View all |
Sat May 18 00:10:00 UTC 2024 |