Back
India   India   Engineer   Anlage Infotech -

SOAR Implementation Engineer - Vulnerability Management (3-9 yrs) | Engineer in Engineering Job at1

Anlage Infotech (I) Pvt. Ltd.

This listing was posted on hirist.

SOAR Implementation Engineer - Vulnerability Management (3-9 yrs)

Location:
Bangalore/Hyderabad/Mumbai/Pune/Chenn...
Description:

Experience in SOAR/Security Orchestration especially in creating/building playbooks and python scriptsExperience : 3-9yrs Joining Location : Hyderabad / Bangalore / Gurgaon / Kolkata / Chennai / Pune/MumbaiWork Model : Hybrid (2 days work from office in a week )Need to relocate from the Day to joining (No Initial work from home will be provided)Level : Consultant / Senior ConsultantImplementation OR Support (for support role ready to work on rotational shifts including night shifts)Required skills :- 2 + year minimum of work experience in one or more Cyber focus areas such as: Fusion Center/SOC, Network Security, Endpoint Security, Incident Response, Forensics, Threat Intelligence, Vulnerability Management.- Bachelor of Science/Business Administration with a concentration in computer science, information systems, information security, math, decision sciences, risk management, engineering (mechanical, electrical, industrial) or other business/technology disciplines- 2+ years of experience with SOAR platforms such as Phantom, Cortex XSOAR, Swimlane, etc.- 5+ years of working knowledge of Security related scripting, Python, SOAP/REST APIs, JSON, HTML/CSS, Javascript, XML- 2+ years of experience with SOC SOPs, playbooks, work instructions and/or other process documents- Proficient understanding of relevant security technologies, such as malware management, network forensics, flow analysis, IDS/IPS, etc.- Ability to demonstrate an investigative mindset. Not just being able to execute a task but being able to understand the reason for that task, and determine next steps depending on the results while maintaining a firm grasp of the overall goals of the entire process- Excellent communication, listening & facilitation skillsPreferred skills :- Experience interpreting, searching, and manipulating data within enterprise logging solutions (e.g. SIEM, IT Service Management (ITSM) tools, workflow, and automation)- Certifications : CISSP, CISA, CISM, GCIH, GMON, GCDA, GPEN, GCFA, GCTI- Experience with consulting skills (client service orientation, conflict resolution, analysis/synthesis of information, negotiation, project management, etc.)- Demonstrated leadership and team-building abilities- Demonstrable personal interest in computing, security, and digital communicationQualification :Bachelor's degree is required. Ideally in Computer Science, Cyber Security, Information Security, Engineering, Information Technology.Work you'll do :In your role as a Senior Consultant, you will support a team in delivering projects across a variety of cyber topics, including such examples as :- Assisting clients in identifying and deploying security analytics, alerting and automation solutions based on their organizational requirements technical integration with key data inputs (e.g., raw security telemetry coupled with referential data).- Conduct detailed process and technical analysis to identify candidate IR processes for automation and implement process improvements and automations to improve incident triage, investigate and containment activities.- Enhancing and documenting existing SOC processes to increase centralized visibility to identify suspicious activity to reduce the mean time to detect and respond to cyber threats.- Increase maturity of key SOC capabilities across governance, people, processes, and technology to proactively monitor, detect, investigate, and respond to known and unknown attacks.- Drive impact of SIEM solution changes on the operational efficiencies of the Security, Network operational teams.- Evaluate current state against target stats, identifying issues such as workflow gaps, technology limitations or deficiencies, and resource dependencies and design incident response programs supporting security automation and orchestration.- Facilitate and/or gather inputs and requirements to formulate content to include workflows, reports, dashboards, playbooks, threat intel, incident analysis etc.- Assist with process development and process improvement for Security Operations to include creation/modification of SOPs, Playbooks, and Work instructions.- Author, test, and maintain automation scripts/workflows within SOAR platform.- Design, implement, and maintain efficient and reusable Python code.- Review, debug, and resolve technical issues throughout all stages of Playbook development.- Integrate SOAR platform with other security tools and APIs through platform inbuilt apps and custom apps to execute automated workflows.- Measure effectiveness of process improvement and automation efforts via metrics and KPIs.- Facilitate process walkthrough discussions to document end-to-end business processes and functional requirements.- Assist in the selection and tailoring of approaches, methods, and tools to support service offering or industry projects.- Support effective project and program kickoff, identification of all program stakeholders, defining and clarifying program roles and responsibilities.- Participate actively in decision making with engagement management and seek to understand the broader impact of current decisions.- Create and design effective presentations as a means for communicating project and deliverable progress to clients.- Build and nurture positive working relationships with clients with the intention to exceed client expectations.- Execute advanced services and supervise staff in delivering basic services.- Work cross-functionally with team members to support and drive a collaborative team environment.- Actively mentor and train team members on Fusion Center/SOC processes, governance, and frameworks.- Adopt a pragmatic approach to dealing with situations where confidentiality is important or where our work is of a sensitive (ref:hirist.tech)
Education/experience:
2 To 5 Years
Company:
Anlage Infotech
Posted:
May 2 on hirist
Visit Our Partner Website
This listing was posted on another website. Click here to open: Go to hirist
Important Safety Tips
  • Always meet the employer in person.
  • Avoid sharing sensitive personal and financial information.
  • Avoid employment offers that require a deposit or investment.

To learn more, visit the Safety Center or click here to report this listing.

More About this Listing: SOAR Implementation Engineer - Vulnerability Management (3-9 yrs)
SOAR Implementation Engineer - Vulnerability Management (3-9 yrs) is a Engineering Engineer Job at Anlage Infotech located in India. Find other listings like SOAR Implementation Engineer - Vulnerability Management (3-9 yrs) by searching Oodle for Engineering Engineer Jobs.