Job Title:  Lead Information Security Analyst

Job Code:  9075
Country:  IN
City:  Mumbai
Skill Category:  IT\Technology
Description: 

Title: Cyber Threat Hunte

Division: Security Operations Center

Department: GTS

Background Information:

 

The Global Information Security teams are responsible for the confidentiality, integrity and

availability of the firm’s information and assets. Responsible for maintaining, communicating and

raising awareness of the Policy. Facilitate the effective implementation and compliance of the

firm’s polices.

 

The Global Information Security Team is based in Europe, Asia, India and America.

 

Description of IT service:

The candidate will assist in performing Threat hunting within the organization’s environment.

Knowledge, Skill, Experience Required

· 5 to 8 Year of Threat Hunting experience

· Ability to understand big data and query languages (Splunk, SQL, etc.)

· Experience with either Red team or Blue team operations

· Ability to think both like an attacker and defender.

· Experience setting up infrastructure to support Hunt Team Operations

· Previous experience working on researching, designing, engineering, implementing, and

supporting information security & directory technology systems (software & hardware).

· Utilizes in-depth technical knowledge and business requirements to design & implement

secure solutions to meet customer / client needs while protecting the assets.

· Develops and implement security standards, procedures, and guidelines for multiple

platforms.

· Must be able to Analyze available data sources, security tools, and threat trends and lead

security monitoring and analysis techniques to identify attacks against the enterprise

· Must understand typical threat actor profiles, the typical indicators associated with those

profiles, and be able to synthesize the two to develop innovative techniques to detect

threat actor activity

· Experience with information security tools such as an enterprise SIEM solution, IDS/IPS,

endpoint security, and other cyber analytics tools

· Ability to analyze logs, normalize and perform automated log correlations utilizing big data

analysis or hunt tools to identify anomalous and potentially malicious

· Follow ticketing workflow in service now Handles incident management and change

management process

· Maintains knowledge base database Ensures call escalation as per escalation chart by

adhering to SLA

· Working experience on AWS/Azure Clou