Jobs
>
Bengaluru

    Lead SIEM Analyst - Bengaluru, India - Blue Yonder

    Default job background
    Technology / Internet
    Description

    Overview:

    • We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor's "Best Places To Work India 2023"

    Scope:

    • Lead SIEM analyst administer Plan, design, implement, monitor, Manage QRadar SIEM Tool that protect an organization's computer systems and data.
    • The Enterprise Security team currently comprises of 30+ members and is expected to grow rapidly. The incumbent will need to have leadership qualities also to mentor junior security associates in our team.

    Technical Environment:

    • Software: CEH. Strong Administration knowledge on QRadar, Endpoint Security, Web and Email and Cloud Security Products
    • Application Architecture: Enterprise Information Security -SOC

    What you'll do:

    • End to End Management of SIEM (QRadar) and Splunk technology
    • Setup and configure new QRadar tools and configure policies
    • Data source integration
    • SIEM administration
    • Parser development
    • Content development
    • Use case development
    • Report, and Dashboard configuration
    • Engage in Security incident life cycle phases
    • Develop the playbook for defined use cases for SOC analyst
    • Rule Creation, Building block creation and fine tuning
    • For all the about products candidate is responsible for
    • Product Upgrades
    • Act as POC for all product issues
    • Vendor Co-ordination
    • Co-ordinate with Stakeholder to troubleshoot any product related issues
    • Prepare SOPs, Ensure SLA is met
    • Provide Weekly and Monthly Metrics to the management
    • Lead new projects independently

    What are we looking for:

    • 6 to 10 years of experience on SIEM tool IBM QRadar and Splunk.
    • IBM QRadar SIEM administration and implementation
    • Strong skill set in Parser development for unsupported log sources/Custom log source integration
    • Log source integration with SIEM
    • IBM QRadar UBA administration
    • Candidate with Splunk ES experience will have additional advantage.
    • Ability to multitask and work independently with minimal direction and maximum accountability
    • Must be proficient in scripting language PowerShell or Python
    • Intimate familiarity with Linux and windows platform and its command line utilities
    • Ability to reach to high pressure and challenging environment
    • Excellent customer service including strong written and oral communication skills
    • Bachelor's degree in Information Security/Systems or related inLogdustry experience
    • Certifications such as IBM Certified Associate Administration and/or IBM Certified Deployment Professional

    Good to have:

    • Performs detailed analysis of alerts and potential threats
    • Performs daily detect & response functions, working closely with SOC functions
    • Maintains and documents the security control procedure, SOP & Play-book
    • Participates in Forensic investigations and computer security incident response.
    • Leverages internal and external resource to research threats, vulnerabilities and intelligence on various attack vectors and attack infrastructure
    • Strong knowledge on ITIL processes like Incident, Problem & Change Management. ITIL V3 Foundation certification will be given preference


  • Capgemini Bengaluru, India

    Provide superior technical security expertise(L2/L3/L4) to ensure that the Security Operations Centre SOC is always delivering a professional service to its customers- · - Conduct detailed analytical queries and investigations identify areas that require specific attention identi ...


  • Capgemini Bengaluru, India

    Provide superior technical security expertise to ensure that the Security Operations Centre SOC is always delivering a professional service to its customers · - Conduct detailed analytical queries and investigations identify areas that require specific attention identify indicato ...

  • IBM

    Soc-ir-engineer-l2

    3 days ago


    IBM Bengaluru, India

    **Introduction** · As a Service Delivery Specialist, you are the face of IBM for our customers. Your clients' success depends on your ability to understand their needs and respond to requests for new services. This role is an integral part of both account planning and delivering ...

  • Qualitest

    Bengaluru

    1 week ago


    Qualitest Bengaluru, India

    · **Expectations**: · Exp 3-5 years SOC Engineer will be responsible for monitoring, reporting, and escalating events to our SOC Leads. · The primary function of this position is to monitor the analytics tools, perform alert management, and initial incident qualification. · This ...

  • Qualitest

    Bengaluru

    1 week ago


    Qualitest Bengaluru, India

    · Acknowledge, analyse, and validate incidents triggered from correlated events through SIEM solution · oCollection of necessary logs that could help in the incident containment and security investigation · oEscalate validated and confirmed incidents to SOC Lead · oUndertake fir ...

  • Qualitest

    Bengaluru

    23 hours ago


    Qualitest Bengaluru, India

    · Acknowledge, analyze, and validate incidents triggered from correlated events through SIEM solution · Collection of necessary logs that could help in the incident containment and security investigation · Escalate validated and confirmed incidents to SOC Lead · Undertake first ...

  • DXC Technology

    soc l3

    1 week ago


    DXC Technology Bengaluru, Karnataka, India

    SOC Senior Analyst with very good experience on carrying out in-depth analysis and investigation of a security alert / incident, able to create run book and playbook, work on creation of new analytics as per requirement of client environment. · CSOC / SIEM detection development a ...


  • IBM Bengaluru, India

    **Introduction** · **Your Role and Responsibilities** · Who you are: · As Security Services Specialist, you are responsible for managing day to day operations of Security Device Management SIEM, Arcsight, Qradar, incident response, threat hunting, Use case engineering, SOC analys ...


  • Securonix Bengaluru, India

    Securonix is leading the evolution of SIEM for today's hybrid cloud, data-driven enterprises. Securonix Unified Defense SIEM provides organizations with content-driven threat detection, investigation, and response (TDIR) solution built with a highly scalable data cloud and a unif ...

  • Terraeagle Technologies Pvt Ltd

    SOC Analyst-l2

    1 week ago


    Terraeagle Technologies Pvt Ltd Bengaluru, India

    We are seeking a highly skilled and experienced SOC (Security Operations Center) Analyst L2 to join our dynamic team. As an L2 SOC Analyst, you will be responsible for detecting, analyzing, and responding to security incidents and threats within our organization's network and sys ...

  • Securonix

    Database Architect

    3 days ago


    Securonix Bengaluru, Karnataka, India

    Securonix is leading the evolution of SIEM for today's hybrid cloud, data-driven enterprises. Securonix Unified Defense SIEM provides organizations with content-driven threat detection, investigation, and response (TDIR) solutions built with a highly scalable data cloud and a uni ...


  • eliterecruitments Bengaluru, India

    **Information Security Risk Assessor (ISRA)**: · We are looking for an Information Security Risk Assessor (ISRA) to join our client's team. In this role, you will play a crucial part in securing our projects by design through the delivery of Information Security Assurance Plans b ...

  • CGI

    Azure Sentinel

    23 hours ago


    CGI Bengaluru, Karnataka, India

    Scope · Monitoring and Incident Response scope for these roles will be for the following infrastructures: · - Client entities/logs not requiring security clearances · Security Analyst - SOC L1.5 · - In your capacity as a SOC Security Analyst, reporting to the Cyber Security Manag ...


  • KPMG Bengaluru, Karnataka, India

    About KPMG in India · - KPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant wit ...


  • OpenBet Bengaluru, India

    Company Description · **OpenBet is sport**. The world's top **sports betting** brands choose OpenBet as their partner for world class content, **leading tech** and tailored services. We have their back. So they're ready with exciting, memorable and safe sports betting experiences ...


  • Unisys Bengaluru, Karnataka, India

    **What success looks like in this role**: · **Key Responsibilities**: · - Provide expertise and support to business teams regarding best practices for cloud security. · - Perform routine and targeted audits of cloud environments to identify security vulnerabilities and ensure com ...

  • CGI

    Tools Support

    23 hours ago


    CGI Bengaluru, Karnataka, India

    Scope · Monitoring and Incident Response scope for these roles will be for the following infrastructures: · - Client entities/logs not requiring security clearances · Security Analyst - SOC L1.5 · - In your capacity as a SOC Security Analyst, reporting to the Cyber Security Manag ...

  • Alignity Solutions

    SOC L2

    2 days ago


    Alignity Solutions Bengaluru, India

    Do you love a career where you Experience, Grow & Contribute at the same time, while earning at least 10% above the market? If so, we are excited to have bumped onto you. · Learn how we are redefining the meaning of work, and be a part of the team raved by Clients, Job-seekers an ...


  • Unisys Bengaluru, India

    **Job Description** We Believe in Better** · We are a global information technology company that builds high-performance, security-centric solutions that can help change the world. Enhancing people's lives through secure, reliable advanced technology is our vision. · Our associat ...


  • Riverforest Connections Bengaluru, India

    **Act as a Cloud & Application Security Governance and Compliance SME.** Design, build, implement and support enterprise-class security systems. Align organizational security strategy and infrastructure with overall business and technology strategy with substantive experience wit ...