Posted on: 08/04/2026
Key Responsibilities :
- Analyze security alerts and incidents escalated from L1 analysts, determining their severity and potential impact on the organization.
- Conduct thorough investigations of security incidents, utilizing SIEM tools, endpoint detection and response (EDR) solutions, and other security technologies to identify root causes and scope of compromise.
- Develop and implement incident response plans to contain, eradicate, and recover from security incidents, minimizing business disruption.
- Proactively hunt for threats within the environment, leveraging threat intelligence feeds, anomaly detection techniques, and behavioral analysis to identify and mitigate potential risks.
- Create and maintain documentation of security incidents, investigations, and response procedures, ensuring knowledge sharing and continuous improvement of security operations.
- Collaborate with other security teams, such as vulnerability management and security engineering, to improve the overall security posture of the organization.
- Mentor and train L1 analysts, providing guidance and support to enhance their skills and knowledge.
Required Skillset :
- Demonstrated ability to analyze security alerts and incidents, identify root causes, and develop effective remediation strategies.
- Proven expertise in using SIEM tools, particularly Splunk, for security monitoring, event correlation, and incident investigation.
- Strong understanding of endpoint detection and response (EDR) technologies and their application in threat hunting and incident response.
- Solid knowledge of Linux operating systems, including command-line tools and security configurations.
- Excellent analytical and problem-solving skills, with the ability to think critically and make sound decisions under pressure.
- Strong communication and interpersonal skills, with the ability to effectively collaborate with other security professionals and stakeholders.
- Bachelor's degree in Computer Science, Information Security, or a related field.
- Ability to work in a fast-paced, dynamic environment and adapt to changing priorities.
Did you find something suspicious?
Posted by
Swarupa
Self Employed at Growel Softech
Last Active: NA as recruiter has posted this job through third party tool.
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1626743