Assist in defining requirements, designing and building security components, and testing efforts.
Must have skills :
Security Information and Event Management (SIEM)
Good to have skills :
NA
Minimum
3
year(s) of experience is required
Educational Qualification :
15 years full time education
Summary: The QRadar L2 Security Analyst plays a critical role in analyzing, investigating, and responding to security incidents. This role involves advanced use of IBM QRadar SIEM for threat detection, offense tuning, and incident response coordination. Roles & Responsibilities: o Analyze and investigate escalated security incidents from L1 analysts o Correlate events across multiple log sources to identify patterns and threats o Fine-tune QRadar correlation rules, offenses, and custom use cases o Develop and maintain dashboards, reports, and offense workflows o Perform threat hunting and proactive analysis using QRadar and threat intelligence feeds o Coordinate with incident response teams for containment and remediation o Conduct root cause analysis and document findings in incident reports o Mentor and guide L1 analysts on triage and escalation procedures o Participate in periodic audits, compliance checks, and SOC maturity assessments Required Skills & Experience o 2-5 years of experience in SOC or cybersecurity operations o Strong hands-on experience with IBM QRadar SIEM (rule creation, offense tuning, log source integration) o Solid understanding of TCP/IP, network protocols, and common attack vectors o Familiarity with MITRE ATT&CK framework, threat intelligence platforms, and IOC analysis o Experience with scripting (Python, Bash) for automation and log parsing o Knowledge of incident response lifecycle and forensic investigation techniques o Experience with ticketing and workflow tools (e.g., ServiceNow, JIRA) Professional & Technical Skills: o Bachelor's degree in Computer Science, Information Security, or related field o Preferred certifications: o IBM QRadar Certified Analyst o CompTIA Security+ o CEH / CHFI / GCIA / GCIH Additional Information: o Exposure to SOAR platforms and integration with QRadar o Experience in multi-tenant or MSSP environments o Knowledge of compliance frameworks (ISO 27001, NIST, GDPR)
15 years full time education
Beware of fraud agents! do not pay money to get a job
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.