Senior SOC Analyst/SOC Lead

NTT DATA BUSINESS SOLUTIONS

Hyderabad

Hybrid

INR 1,200,000 - 2,400,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

NTT DATA BUSINESS SOLUTIONS in Hyderabad is seeking a seasoned Managed Services Information Security Analyst to monitor, analyze, and report on client data, enabling delivery of contracted security services and recommendations.

You will join a 24/7 CDC with SIEM tuning, threat hunting, incident handling across endpoints and network security, and collaborate with clients to ensure clear understanding and continuous improvement.

Qualifications

  • Bachelor's degree in IT/Computing or related field.
  • Security certifications such as AZ-500, SC-200, Security+, CEH, CISSP, CISM or CCNA/CCNP are advantageous.

Responsibilities

  • Operate as part of a 24/7 CDC on rotational shifts.
  • Tune MSSP platform and SIEM for better detection and reporting.
  • Monitor and analyze security logs from client environments.
  • Suggest improvements to tools, processes and client experiences.
  • Follow SOPs and Run Books while proposing enhancements.
  • Document best practices and update knowledge articles.
  • Perform threat hunting across client estates and cross-client scopes.
  • Manage incidents end-to-end and coordinate with client delivery teams.

Skills

SIEM monitoring
Incident handling
Threat hunting
Security tooling
SOC analysis
Security architectures
Customer service

Education

Bachelor's degree in IT/Computing
Security certifications (advantg)

Tools

EDR
SOAR
Honeypots

Job description

Job Summary

The Managed Services Information Security Analyst is a seasoned subject matter expert, responsible for working with security tools and other security teams to monitor, analyze, interpret and report on the incoming client data for the purpose of delivering security information and recommendations to the clients, enabling the organization to deliver the contracted security services. This role includes performing tasks such as security incident detection and response, security event reporting, threat hunting, content maintenance (tuning) and interacting with clients to ensure their understanding of the information generated, recommending client system changes as well as answering security related queries from the clients.

Key responsibilities
  • Works as part of a global Cyber Defense Centre (CDC) team that works 24/7 on rotational shifts.
  • Works with client stakeholders and relevant internal teams to tune the MSSP platform and client SIEM to enable more efficient detection, analysis and reporting.
  • Monitors security tools to review and analyze security logs from client environments.
  • Generates continuous improvement ideas for supported security tools/technologies, to enable improvements to the company services, employee experience and client experience.
  • Adheres to SOPs, customer Run Books and standard processes to ensure a globally consistent delivery whilst also proposing changes and improvements to these standards.
  • Utilizes and documents best practices and amends existing documentation as required.
  • Identifies opportunities to make automations which will help the clients and security delivery teams.
  • Performs security incident handling and response from several vectors including End Point Protection and Enterprise Detection and response tools, attack analysis, malware analysis, network forensics, computer forensics.
  • Utilizes a broad range of skills in LAN technologies, Windows and Linux O/Ss, and general security infrastructure.
  • Ensures usage of knowledge articles in incident diagnosis and resolution and assists with updating as and when required.
  • Performs defined tasks to inform and monitor service delivery against service level agreements and maintain records of relevant information.
  • Undertakes threat hunting activities across both individual client estates, as well as cross client hunting.
  • Manages unresolved incidents and follows up until incidents are resolved.
  • Works closely with client delivery teams to support their activities related to client delivery.
  • Cooperates closely with colleagues to share knowledge and build a cohesive and effective team environment, benefiting the individual, the business and the client.
  • Performs any other related task as required.
To thrive in this role, you need to have
  • Seasoned knowledge on implementation and monitoring of a company supported SIEM or security tools/technologies/concepts.
  • Seasoned knowledge on security architecture, worked across different security technologies.
  • Seasoned knowledge and understanding of the operation of modern computer systems and networks and how they can be compromised.
  • Displays excellent customer service orientation and pro-active thinking.
  • Displays problem solving abilities and is highly driven and self-organized.
  • Excellent attention to detail.
  • Excellent analytical and logical thinking.
  • Excellent spoken and written communication abilities.
  • Team player with the ability to work well with others and in group with colleagues and stakeholders.
  • Ability to remain calm in pressurized situations.
  • Ability to keep current on emerging trends and new technologies in area of specialization.
Academic qualifications and certifications
  • Bachelor's degree or relevant qualification in Information Technology or Computing or a related field.
  • Security certifications such as (but not limited to) AZ-500, SC-200, Security+, CEH, CISSP, CISM or similar Certification in different networking technologies such as CCNA, JNCIA, ACCA, PCNSA, CCSA is advantageous.
Required experience
  • Should have more than 6+ years of experience in SOC.
  • Seasoned experience in SOC Analysis Operations.
  • Seasoned experience in SIEM usage for investigations.
  • Seasoned experience in Security technologies such as (but not limited to) Firewall, IPS, IDS, Proxy.
  • Seasoned experience in dealing with technical support to clients.
  • Seasoned experience in handling security incidents end to end.
  • Seasoned experience in configuring/managing security controls, such as SIEM, Firewall, IDS/IPS, EDR, NDR, UTM, Proxy, SOAR, Honeypots and other security tools.
  • Seasoned experience in Security Analysis or Engineering preferably gained within a global services organization
Workplace type

Hybrid Working

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Managed Services Information Security Analyst
Managed Services Information Security Analyst

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 1,000,000 - 1,600,000
Security Operations Centre (SOC) Manager
Security Operations Centre (SOC) Manager

FutureX • Chennai District

On-site
INR 3,000,000 - 6,000,000
Technical Specialist - Cyber Security L3
Technical Specialist - Cyber Security L3

Lenovo • Bengaluru

On-site
INR 1,400,000 - 2,100,000
SOC-Associate Director
SOC-Associate Director

SISA • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Information Security Specialist
Information Security Specialist

ZEISS India • Bengaluru

On-site
INR 800,000 - 1,200,000
SOC Analyst ( Security Analyst – L2)
SOC Analyst ( Security Analyst – L2)

Soffit Infrastructure Services (P) Ltd • Ernakulam

On-site
INR 700,000 - 1,000,000
Senior SOC Analyst/SOC Lead
Senior SOC Analyst/SOC Lead

NTT Limited • Hyderabad

Hybrid
INR 800,000 - 1,200,000
Cyber Security - Subject Matter Expert
Cyber Security - Subject Matter Expert

Lenovo • Bengaluru Urban

On-site
INR 1,500,000 - 2,500,000
SOC Manager
SOC Manager

SISA • Bengaluru

On-site
INR 6,000,000 - 9,000,000
Lead SOC Analyst
Lead SOC Analyst

Sampoorna Consultants • Bengaluru

On-site
INR 1,000,000 - 1,500,000