Sr. SOC Analyst

Ferfier Technologies

Dadri

On-site

INR 1,500,000 - 2,100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible/Remote work

Job summary

Ferfier Technologies is seeking an experienced Senior Cybersecurity Analyst to lead incident response activities, proactively hunt threats, and collaborate across teams. The role requires 5–7 years of operational experience in vulnerability assessment and remediation, with strong knowledge of MITRE ATT&CK and EDR/SIEM tooling.

The position offers a remote work option in India with immediate joining and a full-time arrangement.

Qualifications

  • 5+ years of operational experience in vulnerability assessment, remediation, and risk analysis.
  • Deep knowledge of cyber threats, CVEs, CVSS, and compensating controls.
  • Experience with security frameworks, Windows/Linux, and monitoring tools.
  • Strong communication and ability to interact with all organizational levels.
  • Extensive experience with MITRE ATT&CK and threat hunting across endpoints, cloud, and networks.
  • Proficient in building detection use cases with SIEMs and EDR platforms.

Responsibilities

  • Document incident response analyses and hunt for threats across data sources.
  • Review investigations to ensure quality and remediation effectiveness.
  • Develop new repeatable methods to detect malicious activity across networks.
  • Provide recommendations to enhance detection and protection capabilities.
  • Present technical topics to techncial and non-technical audiences.
  • Develop and follow operational processes for analysis, escalation, and remediation.
  • Prioritize multiple high-priority tasks in a fast-paced environment.
  • Coordinate with other security teams and mentors as needed.
  • Engage with other teams on engineering and architecture initiatives.
  • Continuously develop new technical skills and push the team forward.
  • Create IR playbooks and tune detection platforms for improved accuracy.

Skills

5+ years operational experience
Third-party vulnerabilities
Cyber security threats & risks
CVEs & CVSS knowledge
Information Security frameworks
Windows/Linux knowledge
Logging & monitoring tools
Interacting with all levels
Verbal & written communication
Problem solving & analytics
Multi-project prioritization
Teamwork & flexibility
Threat landscape & attacker techniques
Investigation across multiple tools
Security use case design
Threat response playbooks
Proactive threat hunting
Process documentation
Threat intelligence application
MITRE ATT&CK framework
EDR investigations
Phishing & malware analysis
EMBED Power BI reporting
SIEM use cases
Building use cases with SIEM
EDR tools familiarity (CrowdStrike, E5

Tools

EDR: CrowdStrike, Carbon Black, MS Defender, Endgame
Power BI
SIEM tools

Job description

Location: Noida/Remote
Job Type: Full-Time
Years of Experience: 5-7 Yrs.
Ready to Join: Immediate
  • Thoroughly document incident response analysis activities
  • Detect incidents through proactive “hunting” across security-relevant datasets.
  • Review investigations conducted by more junior analysts to ensure quality standards are met.
  • Develop new, repeatable methods for finding malicious activity across the networks.
  • Provide recommendations to enhance detection and protection capabilities.
  • Regularly present technical topics to technical and non-technical audiences
  • Develop and follow detailed operational processes and procedures to appropriately analyse, elevate, and assist in the remediation of information security incidents.
  • Prioritize multiple high-priority tasks and formulate responses/recommendations to customers and team members in a fast-paced environment.
  • Provide assistance to other security teams.
  • Continually develop new technical skills and push overall team capabilities forward.
  • Engage with and mentor other team members.
  • Work with other teams on major engineering and architecture initiatives.
  • Be innovative with their understanding of attack methodologies, malware analysis, malicious toolkits, and how those may manifest within various security technologies.
  • Advanced proactive threat hunting
  • Understands advanced adversary emulation concepts.
  • Advanced use case design for insider threat, operational, threat detection and response
  • Review of defensive and detective controls to reduce client attack surface.
  • Other duties as assigned
Preferred Skills:
  • Experience in system administration of AD, Microsoft Azure environment, Windows servers, Unix environment.
  • Scripting knowledge (PowerShell, java, Perl)
  • Knowledge of databases and query language such as SQL
Required Skills and Qualifications:
  • 5+ years operational experience assessing, reviewing, and remediating infrastructure vulnerabilities, CVEs, and risks.
  • Knowledge of third-party software vulnerabilities, security threat landscape, especially network and server threats
  • Knowledge of cyber security threats and risks, vendor computing environments, basic systems, and network technologies.
  • Experience with and understanding of CVE’s and CVSS scores Knowledge of compensating controls and mitigating factors.
  • Knowledge of Information Security frameworks, guidelines, and standard methodologies.
  • Knowledge of the Windows and / or Linux operating systems
  • Knowledge and understanding of Cybersecurity controls and logging and monitoring tools.
  • Ability to expertly interact with all levels of personnel.
  • Excellent verbal and written communication skills
  • Strong in problem solving and analytical skills.
  • Ability to work on multiple projects by prioritizing and results oriented approach.
  • Good teammate with flexibility required for support operations.
  • Be well versed in the cyber threat landscape; have an advanced understanding and knowledge of what tactics and techniques are being used by adversaries; have an advanced understand and knowledge of what security controls and/or telemetry data is available to detect these tactics and techniques; and be familiar with cyber security incident response terminology, processes, and techniques.
  • Moderate to complex investigations (multiple tools) including endpoint, UEBA, public cloud, SAAS and packet analysis.
  • Security use case design recommendations for threat detection
  • Threat response activities such as quarantining host and other common response playbook activities
  • Proactive threat hunting using multiple client tools.
  • Process development and documentation.
  • Application of threat intelligence to improve detection and response capabilities.
  • Extensive experience with the MITRE @ttack framework and associated tactics
  • Extensive alert triage and endpoint investigations using technologies such as EDR.
  • Phishing analysis
  • Malware analysis (does not include reverse engineering)
  • MITRE attack framework expertise and understanding of common attack tactics used by threat actors.
  • Provide recommendations on tuning of security detection platforms and use cases to improve accuracy of detection.
  • Principal resource should have experience in Building use cases (Content Creation) with SIEM tools (any product experience will work)
  • This role demands EDR experience towards CrowdStrike, Carbon black, MS Defender, Endgame as NextGen EDR Solutions
  • Strong attention to detail and meticulous reporting using Power BI or other similar software and develop IR playbooks.
  • Strong knowledge of network security including Firewalls (Palo Alto preferred), intrusion detection systems, load balancers TCP/IP Protocols, network analysis, and network/security applications
  • Experience coordinating with multiple teams for rapid incident response and resolution.
  • Ability to multi-task, prioritize, and manage time effectively.
  • Excellent interpersonal skills and professional demeanor
  • Excellent verbal and written communication skills
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

Dun & Bradstreet • Hyderabad

On-site
INR 3,000,000 - 5,000,000
Senior Cyber Security Analyst (R-19638)
Senior Cyber Security Analyst (R-19638)

Eyeota • Hyderabad

On-site
INR 1,100,000 - 2,400,000
Associate SOC
Associate SOC

Publicis Groupe Holdings B.V • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Associate SOC
Associate SOC

Publicis Groupe • Gurgaon

On-site
INR 1,200,000 - 2,400,000
Associate SOC
Associate SOC

Publicis Groupe ANZ • Gurgaon

On-site
INR 1,400,000 - 2,200,000
Senior Incident Response Analyst
Senior Incident Response Analyst

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,500,000 - 2,800,000
Cyber Security Analyst (SOC)
Cyber Security Analyst (SOC)

Genpact • Pune District

On-site
INR 900,000 - 1,500,000
Soc Analyst
Soc Analyst

Deloitte Shared Services India • Mumbai

On-site
INR 900,000 - 1,500,000
SOC Specialist
SOC Specialist

METRO/MAKRO • Pune District

On-site
INR 4,000,000 - 7,000,000
ARCHITECT - SOC Monitoring
ARCHITECT - SOC Monitoring

Happiest Minds Technologies • Bengaluru

Hybrid
INR 4,000,000 - 6,500,000