Managed Services Analyst, MXDR (SOC)

Check Point Software

Bengaluru

On-site

INR 1,500,000 - 2,300,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Check Point Software Technologies is seeking an MXDR Services Analyst 2 to safeguard customers’ digital assets and critical systems. You will monitor across SIEM, XDR, and cloud environments, analyze events, and collaborate with clients to tailor security configurations.

The role focuses on incident response, automation, and proactive threat mitigation. You will support on-call rotations, develop security documentation, and mentor junior staff while staying aligned with industry standards and

Qualifications

  • 3+ years of relevant experience as a SOC analyst.
  • Working knowledge of SIEM and incident management solutions.
  • Strong analytical and troubleshooting skills; excellent communication.

Responsibilities

  • Monitor across security dimensions: intrusion, file integrity, endpoint protection, log management, and SIEM.
  • Leverage XDR: Microsoft Sentinel, Defender for Endpoint, and Harmony Endpoint.
  • Assess cloud environments, especially Azure, for comprehensive security.
  • Analyze security events using logs and intel to distinguish true/false positives.
  • Maintain case records with efficient ticketing systems.
  • Develop and tune SIEM rules, alerts, and dashboards with custom queries.
  • Collaborate with clients to tailor SIEM configurations to compliance needs.
  • Communicate alerts clearly to team and clients; produce formal docs.
  • Create SOPs and training materials for security solutions.
  • Participate in on-call rotations and client support outside hours.
  • Review data to evaluate security and operational measures.
  • Assist in SIEM, log management, and data analytics platform maintenance.
  • Address customer requests on log sources, data parsing, and use cases.
  • Automate repetitive tasks to improve efficiency; mentor junior analysts.
  • Lead, guide, and train junior SOC analysts; manage ticket lifecycle.

Skills

SOC analyst
SIEM
Threat hunting
Python
PowerShell
Cloud security
Incident response
Analytical mindset

Education

Bachelor’s degree in CS/IT

Tools

Splunk
Microsoft Defender for Endpoint
Azure

Job description

As the Check Point MXDR Services Analyst 2 within our Check Point Services (CPS) Managed eXtended Detection and Response (MXDR) Team at Check Point, you will assume a pivotal role in safeguarding our customer's digital assets, sensitive data, and critical systems against cyber threats and attacks. Leveraging your expertise in vulnerability identification, robust security implementation, and incident response, you will significantly enhance our customer's overall security posture. Collaborating closely with cross-functional teams, you will assess risks, formulate effective security strategies, and ensure adherence to industry standards and regulatory requirements.

Your strong technical acumen and analytical mindset will be instrumental in the prompt detection and mitigation of security breaches, as well as the proactive anticipation and mitigation of potential threats. Staying at the forefront of emerging cyber threats and trends, you will bolster the customer's defenses, maintaining a resilient and secure IT environment. This role is ideal for a self driven professional, that is passionate about cloud security, well versed in major public cloud platforms, and adept at utilizing state of the art tools to monitor security across cutting edge offerings. By directly supporting top tier companies across the United States, you will be at the forefront of cybersecurity innovation and excellence.

Job Description
  • Perform vigilant monitoring across various security dimensions, including intrusion detection, file integrity, endpoint protection, log management, and SIEM solutions.
  • Leverage expertise in cutting edge XDR solutions, such as Microsoft Sentinel, Microsoft Defender for Endpoint, Check Point Harmony Endpoint, and other solutions.
  • Navigate cloud environments, particularly Azure, to ensure comprehensive security coverage.
  • Skillfully analyze security events using log data and open-source intelligence to distinguish between legitimate and false-positive incidents.
  • Maintain meticulous records of security monitoring activities through efficient case management and ticketing technologies.
  • Contribute to the development, implementation, and maintenance of environment-specific rules, alerts, and dashboards within SIEM tools using custom queries.
  • Collaborate with clients to tailor and configure SIEM tools, aligning them with specific security and compliance requirements.
  • Effectively communicate security alerts to team members and clients regarding anomalies within the environment.
  • Apply technical writing prowess to craft formal documentation, including analytical reports and briefings.
  • Create and uphold a repository of standard operating procedures, technical documents, training materials, and troubleshooting guidelines for various security solutions.
  • Participate in on-call rotations to provide support beyond regular business hours, catering to client operational needs.
  • Conduct comprehensive data reviews to evaluate the efficacy of existing security and operational measures.
  • Assist in the administration and maintenance of SIEM, Log Management, and Data Analytical Platforms.
  • Address customer-initiated requests, such as Log Source configuration, Data Parsing, Use Case Development, and the resolution of complex issues related to managed security services.
  • Innovate by developing technical solutions that automate repetitive tasks, enhancing operational efficiency.
  • Provide leadership, guidance, and instruction to Junior SOC analysts, fostering a collaborative team environment.
  • Manage ticketing processes, including ticket creation, follow-up, and resolution, ensuring timely customer support.
  • Employ a combination of tools and analytical skills to investigate and identify the root causes of issues across various technologies.
  • Proactively monitor and provide near-real-time updates on the cyber security status, facilitating swift responses to emerging threats and incidents.
  • Conduct comprehensive data reviews to evaluate the efficacy of existing security and operational measures.
  • Assist in the administration and maintenance of SIEM, Log Management, and Data Analytical Platforms.
  • Innovate by developing technical solutions that automate repetitive tasks, enhancing operational efficiency.
  • Manage ticketing processes, including ticket creation, follow-up, and resolution, ensuring timely customer support.
  • Proactively monitor and provide near-real-time updates on the cyber security status, facilitating swift responses to emerging threats and incidents.
Qualifications

What are we looking for

  • Upbeat and positive attitude Strong analytical and troubleshooting skills Excellent written and verbal communication skills
  • Team player
  • Prior experience performing as a SOC analyst
  • Working knowledge of SIEM solutions and incident management solutions
  • Technical understanding of core cybersecurity technologies as well as emerging capabilities.
  • Inquisitive, problem-solving oriented
  • 3+ years of prior relevant experience.
Preferred Qualifications
  • Experience:
    • SOC: 3+ years (Preferred)
    • Cybersecurity: 4+ years (Preferred)
    • SIEM: 1+ years (Preferred) (Splunk or Sentinel)
  • Vulnerability Management
  • Threat Hunting
  • Prior SIEM experience (Working Knowledge)
    • Tuning
    • Alert triage
    • Detection Engineering
  • Programming/Scripting in one language (PowerShell / Python / Bash)
  • One Cyber Security certification (Microsoft SC-900, SC-200, SC-100, Security+, CySA+, CEH, etc)
  • Working knowledge of Operating Systems
  • Fundamental Networking knowledge
Good to have
  • Advanced certifications in the field of cybersecurity, such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM), will be highly regarded.
  • Familiarity with threat hunting techniques and the ability to proactively seek out security threats and vulnerabilities.
  • Experience with threat modeling and risk assessment methodologies to enhance security strategies.
  • Proficiency in scripting or programming languages, such as Python or PowerShell, for automation and customization of security solutions.
  • Knowledge of container security, Kubernetes, and cloud-native security best practices.
  • Familiarity with security orchestration and automation tools.
  • Understanding of identity and access management (IAM) principles and technologies.
  • Experience with network security monitoring tools and protocols, including Snort, Suricata, and Bro/Zeek.
  • Active involvement in cybersecurity community activities, such as presenting at conferences, contributing to open-source projects, or participating in Capture The Flag (CTF) competitions.
  • Strong analytical and problem-solving skills, with the ability to analyze complex security issues and propose effective solutions.
  • Knowledge of emerging cybersecurity trends, threats, and mitigation strategies to stay ahead of evolving risks.
  • Excellent interpersonal and communication skills, including the ability to convey technical information to non-technical stakeholders effectively.
Additional Information

Check Point Software Technologies is a global leader in cyber security solutions, dedicated to protecting corporate enterprises and governments worldwide. For over 30 years, our mission has been to secure the digital world for everyone, everywhere. From pioneering stateful firewalls to our AI-powered, clouddelivered security solutions, we are committed to safeguarding organizations with an industry-leading 99.9% prevention rate.

Our Values

Check Point is committed to making the world a safer and more secure place, and this commitment applies to our work both on the internet and the physical world alike. We promote a safe, healthy, supportive and diverse work environment, with training and development opportunities for all employees. We achieved gender parity in our C Suite, and we are committed to equal opportunities and equal rewards for all.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Managed Services Analyst, MXDR (SOC)
Managed Services Analyst, MXDR (SOC)

Check Point Software • Bengaluru Urban

On-site
INR 900,000 - 1,300,000
Analyst
Analyst

CDW UK • Chennai District

On-site
INR 800,000 - 1,200,000
Security Analyst
Security Analyst

SHI • Hyderabad

Remote
INR 600,000 - 1,200,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Senior Security Analyst
Senior Security Analyst

UltraViolet Cyber • Hyderabad

On-site
INR 800,000 - 1,200,000
Cyber Security - Subject Matter Expert
Cyber Security - Subject Matter Expert

Lenovo • Bengaluru Urban

On-site
INR 1,500,000 - 2,500,000
Cyber security Analyst
Cyber security Analyst

Stefanini North America and APAC • Maharashtra

On-site
INR 1,200,000 - 1,800,000
Customer-Focused Software Engineer (Backend development team)
Customer-Focused Software Engineer (Backend development team)

Check Point Software • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Security Analyst II, Google SecOps
Security Analyst II, Google SecOps

Cacheflow • Bengaluru

On-site
INR 900,000 - 1,300,000
Medical Insurance
Hybrid Work Model
PTO & Leave
+3
Cybersecurity Analyst
Cybersecurity Analyst

Abacus • Chennai District

On-site
INR 600,000 - 1,200,000