Sr Cybersecurity Engineer Automation(xsoar)

Year    Hyderabad, Telangana - Secunderabad, Telangana, India

Job Description


Location: Building No 12D, Floor 5, Raheja Mindspace, Cyberabad, Madhapur, Hyderabad - 500081, Telangana, India Build a career with confidence Carrier Global Corporation, global leader in intelligent climate and energy solutions is committed to creating solutions that matter for people and our planet for generations to come. From the beginning, we\'ve led in inventing new technologies and entirely new industries. Today, we continue to lead because we have a world-class, diverse workforce that puts the customer at the center of everything we do. About the Job: As a Senior Cyber Security Engineer - Security Automation, you will be a technical security subject matter expert for a variety of cybersecurity solutions centered on security automations. responsible for the administration and maintenance of cyber security tools, security incident management, change execution, and support of cyber security technologies in a quickly changing security industry. As the automation engineer, you will collaborate closely with Palo Alto support and be in charge of planning, monitoring, and implementing the upgrade and troubleshooting operations. experience managing and administering security solutions such as SOAR, firewalls, Web security proxy, office 365 security, endpoint security, data security, cloud security, and more. The individual will be crucial in delivering and maintaining security solutions, automating security assessments, and participating in security audits. Job Responsibilities Provide integrations for SOC team as well as other Cybersecurity teams, with innovative technical solutions and runbooks Create written documentation for solution deployments Quickly build mitigation and automation responses, as it pertains to the latest SOC principles and capabilities Be a security expert that recommends further enhancement of the security posture provided to the company, and deliver support when appropriate Work with Palo Alto technical assistance team to troubleshoot and diagnose support cases Maintain current threat landscape knowledge Think like an attacker, think like a defender, think like an executive, think like a Network Engineer, think like an Endpoint Engineer Ability to relay highly technical concepts to a non-technical audience Ensure automation needs are met and deliverables produced on time according to specified project deliverables and scope Advance and uphold expertise in deploying complex SOC deployments Collaborate with enterprise partners and incident response teams regarding requirements and deployment of security services, tools, and appliances Document system configurations, standards, and procedures Lead Security Engineering infrastructure tasks (review changes, server hardening support) Serve as SME during Security Architecture Review Board Serve as security SME during change control meetings Act as lead to MSSP engineers driving improvements to infrastructure and network tools Engineering and administration of best-in-class cyber security technologies Management and implementation of technologies and processes relating to assigned cyber security capability, including issue identification and resolution, integration with other tools, documentation, gap assessment, gap resolution, and continuous improvement of the capability Keep up-to-date, make recommendations, and participate in the implementation and continuous improvement of technologies and services in assigned cybersecurity domains Up to date on the cyber security threat landscape, understanding of threat management framework, managing and responding to the endpoint, cloud, and hybrid infrastructure threats Support Incident Response on security incidents globally, including contributing to table-top security incident exercises Advise project teams, application owners, infrastructure services, and other digital Information Technology teams on information security controls Continually improve team documentation, including solution run books, architecture, knowledge base articles, FAQs, Share Point Perform security design consulting to support projects, including participation in security architecture reviews as necessary Participate in audits covering information security services and technologies Participate in proactive research and provide recommendations for continuous improvement of information security technologies, processes, and services Develop, implement, and sustain operational scripts, data structures, libraries, and programming code that optimize security in emergent compute patterns with diverse applications throughout the global environment Analyze, design, develop and operate programs, shell scripts, tests, and infrastructure automation capabilities in an advanced security context Basic Qualifications At least five years of work experience in IT and Information Security combined 3+ years of experience in either Python or C++ as a programming language and SOAR deployments 3+ years of experience in Palo Alto XSOAR / Demisto Exposure to multiple SIEMs use case development. CISSP, CISA, GIAC, CCSP, AWS/Azure security specialization or equivalent security-related industry certifications and relevant industry certifications Preferred Qualifications Experience using Microsoft Azure Cloud and O365 security services (ASC, MCAS, MDATP, Azure AD, Azure PIM, Azure Identity Protection, KeyVault, Manage Service Identity, Intune, Conditional Access Policy, Azure Front Door/WAF, Traffic Manager/App Gateway, M365 Security suite) Advanced knowledge and use of PowerShell for scripting and Automation Experience in Security and Compliance by Managing Data loss prevention and Data governance. Expertise in configuring and deploying ATP, DLP, and Threat Protection Policies for SPAM, PHISH, and Malware Experience with Microsoft Sentinel and Defender Strong cyber security tool experience, including MS Sentinel, firewalls, IDS/IPS, DNS, EDR/XDR, DLP, and email security Experience with some of the following or similar solutions is highly preferred: Microsoft Windows Information Protection, MCAS, Intune, AirWatch Working knowledge of encryption concepts and implementation methods Knowledge of remote access technologies and implementation of best practices Working knowledge of authentication systems such as LDAP and MS Active Directory Experience using AWS Cloud Security Services (Encryption, IAM, CloudWatch, CloudTrail, WAF, KMS, AWS Config, GuardDuty, Advisor, Inspector, etc.) Working experience in distributed hybrid cloud architectures model with the ability to rationalize security controls across these deployments Experience with regulated systems (NIST SP 800-53, CIS, ISO27001, PCI DSS, CSA) Experience with legal proceedings or giving expert witness testimony Education Qualification: Bachelor\'s degree or above in computer science, software engineering, or equivalent. Benefits : We are committed to offering competitive benefits programs for all of our employees, and enhancing our programs when necessary. Have peace of mind and body with our health insurance Make yourself a priority with flexible schedulesand leave Policy Drive forward your career through professional development opportunities Achieve your personal goals with our Employee Assistance Program. Our commitment to you : Our greatest assets are the expertise, creativity and passion of our employees. We strive to provide a great place to work that attracts, develops and retains the best talent, promotes employee engagement, fosters teamwork and ultimately drives innovation for the benefit of our customers. We strive to create an environment where you feel that you belong, with diversity and inclusion as the engine to growth and innovation. We develop and deploy best-in-class programs and practices, providing enriching career opportunities, listening to employee feedback and always challenging ourselves to do better. This is . Join us and make a difference. Apply Now! Carrier is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class. Job Applicant\'s Privacy Notice: Click on this to read the Job Applicant\'s Privacy Notice

foundit

Beware of fraud agents! do not pay money to get a job

MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Related Jobs

Job Detail

  • Job Id
    JD3117839
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Hyderabad, Telangana - Secunderabad, Telangana, India
  • Education
    Not mentioned
  • Experience
    Year