Security Architect

Year    HR, IN, India

Job Description

Project Role :

Security Architect

Project Role Description :

Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.


Must have skills :

Security Information and Event Management (SIEM)

Good to have skills :

NA

Minimum

2

year(s) of experience is required

Educational Qualification :

15 years full time education



Summary: As a Level 2 SOC Analyst, your role involves deeper investigation of security alerts and confirmed incidents. You will validate escalated events using Sentinal One and Splunk SIEM, enrich them with context, and work closely with L3 analysts to assist in containment and timely remediation. You will also assist in improving detection fidelity and supporting SOAR automation. This role requires deep expertise in detection, investigation, containment, and remediation, as well as collaboration with multiple teams across security, IT, and compliance. Roles & Responsibilities: -Alert Triage & Investigation: Experience investigating escalated alerts using SIEM or EDR -Incident Response and Containment: Take necessary actions to contain, eradicate and recover from security incidents. -Identify opportunities for automation and work with SIEM Platform Support team for implementing it. -EDR Deep Dive: Using Real Time Response (RTR), Threat Graph, custom IOA rules -Proficiency in writing SPL queries, dashboards and providing fine tuning opportunities -Threat Hunting: Behavior-based detection using TTPs -Good understanding of malware, lateral movement, privilege escalation, and exfiltration patterns -Threat Intel Integration: Automation of IOC lookups and enrichment flows -Forensic Skills: Live host forensics, log correlation, malware behavioral analysis -Good experience in advanced threat detection and incident response -Proficiency in Sentinal One forensic and incident response capabilities -Playbook Development/Updation: Able to define, update, and optimize IR playbooks and workflows Professional & Technical Skills: -Forensic analysis (memory, file systems, logs) -Cloud incident handling (AWS, Azure) -Dashboarding: Advanced visualizations and business-focused metrics in Splunk -Certifications: Splunk Certified Admin/ES Admin, SC-200, Sentinal One EDR vendor training Additional Information: - The candidate should have minimum 2 years of experience in Security Information and Event Management (SIEM). - This position is based at our Gurugram office. - A 15 years full time education is required.




15 years full time education

Beware of fraud agents! do not pay money to get a job

MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD4688282
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    HR, IN, India
  • Education
    Not mentioned
  • Experience
    Year