Job Description
We are looking for SOC Engineer L2 (Immediate Joinee) for Hanu Software Solutions, Greater Noida
Roles and Responsibilities
Total Exp- 4-8 years
Work Location- Greater Noida (Currently work from home)
Responsible for working in a 247 IT Security Operation Centre (SOC) environment, the SOC analysts are the first responders to cyber-incidents. They report cyber threats and then implement changes to protect an organization. Hanu Security is running a Security Operations Centre helping customers in monitoring, logging, managing, and responding to IT threats.
Job duties include:
- Provide analysis and trending of security log data from various security devices
- Good understanding and exposure of security standards, controls and frameworks (ISO 27001, SOC 2,)
- Analyse InfoSec security controls (as defined by organization) to identify weaknesses/vulnerabilities in the Infrastructure (platform) and Applications, mostly in cloud environment (Azure, AWS)
- Installation, setup / configuration, troubleshooting, Tuning, diagnostics, and maintenance of IT security related Equipment.
- Networking and associated applications Ensure adherence to process Troubleshoot performance and availability issues on security devices such as IDS, IPS, UTM, Content Filtering solutions, DLP, APT.
- Monitoring and analysis of cyber security events with use of Splunk (SIEM), IDS, Cylance, Recloak, Trend micro antivirus
- Security Event Correlation as received from L1 SOC or Incident Response staff or relevant sources to determine increased risk to the business
- Development and execution of SOC procedures
- Educating and coaching the L1 colleagues.
- Ensure confidentiality and protection of sensitive data.
- Analysis of phishing emails reported by internal end users for cases going above L1.
- Working with remediation (IT Infra & Ops) teams on events and incident mitigation
- Follow up on remediation activities
- Investigate, document, and report on information security issues and emerging trends
- Review SOC Analyst ticket queue, review tickets, closure or reassignment as needed
- Create/review/modify documentation as needed, to include any process or procedure and thus ensure its up to date and standard
- Monthly SOC Reports
Desired Candidate Profile
Must Have Skills:
- Strong working knowledge of security-relevant data, including network protocols, ports and common services, such as TCP/IP network protocols and application layer protocols (e.g. HTTP/S, DNS, FTP, SMTP, Active Directory etc.)
- Experience and keen understanding of cybersecurity tools, including SIEM, IDS/IPS, antivirus and endpoint detection & response solutions.
- At least 2 years of experience with security incident response.
- Experience in developing and maintaining Play/Runbooks and/or Standard Operating Procedures in a SOC environment
- Strong troubleshooting, reasoning, and analytical problem-solving skills
- Ability to communicate technical details effectively in writing and verbally to junior IT personnel and management1
- Strong working knowledge of VPN, WAF, Load Balancer, IDS, IPS, NSG, ports and protocols
- Experience in Session management (http cookie headers, session tokens, CSRF attacks, Digital certificates)
- Experience in OWASP concepts (input validation, cross site scripting, cross frame scripting)
Nice to have skills:
- Azure Sentinel or any other SIEM
- DevSecOps
- Azure AD/Federated Authentication
- API Management (Google Apigee)
At least One Certification is Mandatory
CEH Certified Ethical Hacker
CHFI Computer Hacking Forensic Investigator
SIEM certified; - Splunk, IBM Q radar, HP Arch sight
Azure Security Engineer
GIAC, OSCP, OSWE
Eligibility:
Graduation in any field
If interested, kindly share your resumes at me*********r@ha*u.com
Thanks & Regards,
Megha Panwar
Lead- Talent Acquisition
Job Classification
Industry: IT Services & Consulting
Functional Area: IT Software - Application Programming, Maintenance,
Role Category: Admin/Maintenance/Security/Datawarehousing
Role: Admin/Maintenance/Security/Datawarehousing
Employement Type: Full time
Education
Under Graduation: Any Graduate in Any Specialization
Post Graduation: M.Tech in Computers, Any Postgraduate in Any Specialization
Doctorate: Any Doctorate in Any Specialization
Contact Details:
Company: Hanu Software solutions India Pvt Ltd.
Address: PLOT - 6,FIRST FLOOR,SIGNATURE TOWER,TECH ZONE ANS, AL IT,GREATER NOIDA, , NOIDA, Uttar Pradesh, India
Location(s): Noida, Gurugram
Keyskills:
Information Security
Incident Response
Cyber Security
Phishing
SOC
ISO 27001
SIEM
Dlp
Microsoft Azure
IPS
IT Security