Offers “Ernst & Young”

Expires soon Ernst & Young

Security Analyst - CDRC

  • Thiruvananthapuram (Thiruvananthapuram)
  • Infra / Networks / Telecom

Job description

Cyber Defense Response Center (CDRC)

Security Analyst who will be responsible for are responsible for providing effective security monitoring and incident response through triage, investigation, communication, and reporting.

Essential Functions of the Job :

· Operate as First/Second level support to a 24x7 Cyber Defense Response Centre.
· Act as the primary point of contact for reporting, monitoring, and tracking reported events and operational events.
· Identify, prioritize and respond to security threats
· Will operate in a close team of computer/digital forensic, fraud, and other IT investigative experts.
· Ensure that all incidents are recorded and tracked to meet audit, compliance and legal requirements.
· Conduct root cause analysis to identify gaps and recommendations ultimately remediating risks to the firm.
· Maintain an inventory of the procedures used by the CDRC and regularly evaluate the CDRC procedures and add,
remove, and update the procedures as appropriate
· Publish reports to applicable teams
· Generate reports on Cyber defence centre activity

Analytical/Decision Making Responsibilities:
· Actively investigates the latest security vulnerabilities, advisories, incidents, and penetration techniques and notifies the manager when appropriate.
· Recognizes successful intrusions and compromises through review and analysis of relevant event detail information.
· Assist in incident determination, ticketing and incident response, prevention and remediation

Desired profile

Knowledge and Skills Requirements:

·  Under Graduate/Post Graduate Degree in Computer Science or Engineering or related domain (MCA/MTech/BTech/BCA /BSc CS or BSc IT).
·  Fair Understanding of Linux, TCP/IP, Network Security, encryption standards etc.
·  Aware of Types of attacks (DOS, DDOS etc.)
·  Aware of log monitoring.
·  Idea about various penetration testing and application testing methodology and tools is a definite plus.
·  Knowledge in application development (Microsoft technologies).
·  Soft Skills - Excellent communication skills; written and verbal.
·  Good Attitude.
·  Good Presentation skills
·  Good Investigative, analytical and problem solving skills
·  Ability to work in a team, with little supervision and using own initiative
·  Experience with Security Information & Event management (SIEM) tools.
·  Incident Handling and Incident Response experience preferred.
·  Good Knowledge in vulnerability assessment.
·  Knowledge in the following: Firewalls, Intrusion detection and prevention systems, antivirus and content filtering, URL filtering, authentication solutions, switches, routers, VoIP, DMZ.
·  Knowledge in Linux, Splunk & scripting Languages(Shell Script, Vb script, Python etc) is a definite plus.

Supervising Responsibilities:

·  Coordinate escalations and collaborate with internal technology teams to ensure timely resolution of issues
·  Will provide mentoring, support, and direction for other members of the team, as required

Other Requirements :

·  Should be willing to work in shifts (24/7)

Certification Requirements:

·  CCNA/CCNA Security, RHCE
·  CCSA/CEH/CIH

Make every future a success.
  • Job directory
  • Business directory