Requisition Number: 105814
SOC Analyst Sr
Location: This is a hybrid opportunity in Delhi NCR, Bangalore, Hyderabad, Gurugram area.
Shifts: 6:00 PM IST to 3:00 AM IST (US Shifts)
Insight at a Glance
-
14,000+ engaged teammates globally with operations in 25 countries across the globe.
-
Received 35+ industry and partner awards in the past year
-
$9.2 billion in revenue
-
#20 on Fortune’s World's Best Workplaces™ list
-
#14 on Forbes World's Best Employers in IT – 2023
-
#23 on Forbes Best Employers for Women in IT- 2023
-
$1.4M+ total charitable contributions in 2023 by Insight globally
Now is the time to bring your expertise to Insight. We are not just a tech company; we are a people-first company. We believe that by unlocking the power of people and technology, we can accelerate transformation and achieve extraordinary results. As a Fortune 500 Solutions Integrator with deep expertise in cloud, data, AI, cybersecurity, and intelligent edge, we guide organisations through complex digital decisions.
About the role
The SOC Analyst Sr is responsible for detecting and reporting cybersecurity incidents to clients. The SOC Analyst Sr is responsible for day-to-day cybersecurity monitoring utilizing Insight’s security tools that are used to monitor and secure our clients’ business. SOC Analyst Sr are accountable for detecting threats, creating incident tickets, assisting with the response process, act as the escalation point for SOC I Analysts and assisting the team in developing threat detection and prevention capabilities, and equipping clients to optimize their cybersecurity incident response capabilities. The SOC Analyst Sr will participate in a team of analysts.
The SOC Analyst Sr is also responsible for identifying automation opportunities both for the SOC incident handling and for automated response.
Key Responsibilities:
-
Participate in the daily cybersecurity threat monitoring of Insight Managed Security Services (MSS) clients
-
Monitor SIEM incident queue and perform incident triage & ticketing and support to resolution.
-
Act as escalation point and provide guidance to SOC I staff and clients.
-
Perform threat analysis on events reported by security technologies supported by MSS.
-
Identify indicators of compromise within threat events.
-
Identify potential, false positives, policy violations, intrusion attempts and compromises.
-
Enrich security events with intelligence from multiple technologies, open-source intelligence sources, and knowledge of the client environment.
-
Provide support to the L1 and other L2 SOC Analysts.
-
Document problems and resolution for future reference.
-
Support customer service requests as needed.
-
Other duties as assigned.
What we’re looking for
Preferred Skills:
-
Proficient in triaging security incidents in a SIEM platform (Microsoft Sentinel).
-
Proficient in Endpoint Detection & Response technologies (M365 Defender).
-
Good understanding and Knowledge of Qualys for Vulnerability Assessment.
-
Proficient in using KQL for performing incident analysis.
-
Knowledge of ServiceNow ticketing system preferred.
-
Ability to document problems and resolution for future reference.
-
Strong written communication skills.
-
Participate with other teams in a collaborative effort to support security operations.
-
Stay up to date on the latest tools and technologies that deliver value to clients and perform
-
Participate in new security operations initiatives.
Preferred Attributes:
-
Bachelor’s Degree in Cybersecurity, Computer Science, Information Technology or related experience.
-
Position requires 5-8 years hands-on experience within a Security Operations Center.
-
Working knowledge of scripting and query languages (preferably KQL)
-
Experience with Microsoft Sentinel, M365 Defender, Secureworks Taegis, Service Now,Qualys/Zscaler.
-
Experience with Cloud based services (Azure).
-
Strong analytical abilities and professional communication skills.
-
Excellent troubleshooting skills needed.
-
Must be able to respond effectively to inquiries or complaints within a timely fashion.
What you can expect
We’re legendary for taking care of you, your family and to help you engage with your local community. We want you to enjoy a full, meaningful life and own your career at Insight. Some of our benefits include:
-
Freedom to work from another location—even an international destination—for up to 30 consecutive calendar days per year.
-
Medical Insurance
-
Health Benefits
-
Professional Development: Learning Platform and Certificate Reimbursement
-
Shift Allowance
But what really sets us apart are our core values of Hunger, Heart, and Harmony, which guide everything we do, from building relationships with teammates, partners, and clients to making a positive impact in our communities.
Join us today, your ambITious journey starts here.
When you apply, please tell us the pronouns you use and any reasonable adjustments you may need during the interview process.
At Insight, we celebrate diversity of skills and experience so even if you don’t feel like your skills are a perfect match - we still want to hear from you!Today's talent leads tomorrow's success. Learn more about Insight:
https://www.linkedin.com/company/insight/
Insight does not accept unsolicited resumes from recruiters or employment agencies. Unsolicited resumes will be treated as direct applications from the candidate, and recruiters or agencies who submit candidates for this position without a prior, written vendor agreement will not be eligible for any form of compensation, even if the candidate is hired.
Insight is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, sexual orientation or any other characteristic protected by law.
Insight India Location:Level 16, Tower B, Building No 14, Dlf Cyber City In It/Ites Sez, Sector 24 &25 A Gurugram Gurgaon Hr 122002 India