Education Qualification :
Engineer - B.E /
B.Tech / MCA
Skills :
Primary -> Technology | Securonix SIEM Tools Expert | Level 3 Support | 3 - Experienced
Primary -> Technology | Sentinel SIEM Tool Expert | Level 3 Support | 3 - Experienced
Secondary -> Technology | ArcSight SIEM Tools Administrator | Level 2 Support | 2 - Knowledgeable
Secondary -> Technology | Cybersecurity General Administrator | Level 2 Support | 2 - Knowledgeable
Tertiary -> Technology | Network Traffic Analysis Administrator | Level 2 Support | 2 - Knowledgeable
Certification :
Technology | CompTIA Security+/Certified SOC Analyst (CSA)/GIAC Security Essentials (GSEC)/Certified Ethical Hacker (CEH)/Cisco Certified CyberOps Associate/GIAC Certified Incident Handler (GCIH)/GIAC Security Operations Certified (GSOC)
Delivery Skills required are: -
Technical Expertise: -
- Expert knowledge of threat detection techniques and tools.
- Leading incident response efforts, including advanced techniques for containment, eradication, and recovery.
- Conducting in-depth digital forensics investigations.
- Expertise in configuring and optimizing SIEM (Security Information and Event Management) systems.
Analytical Skills: -
- Deep understanding of log analysis techniques and tools.
- Identifying patterns and anomalies in large datasets.
- Integrating threat intelligence into monitoring and response processes.
- Staying updated on the latest threat intelligence and applying it to enhance security.
Collaboration and Coordination: -
- Working closely with other IT and security teams to ensure comprehensive security coverage.
- Leading the coordination of response efforts during major incidents.
- Ensuring effective communication and collaboration among all stakeholders.
- Coordinating with external partners and vendors for specialized support.
Continuous Improvement: -
- Continuously evaluating and improving security processes and procedures.
- Implementing lessons learned from incidents to enhance the overall security posture.
- Contributing to the development and updating of security policies and procedures.