Consultant - SOC

  • Ahmedabad
  • Dynamic Elements
Implement and manage security tools, including integrating MS Defender and MS Intune for device and environment control, identifying and implementing security best practices within various Azure Cloud and CRM services, and managing modern Microsoft endpoint detection and response systems. Demonstrate hands-on expertise in managing and configuring Microsoft Defender for endpoint security and integrating it seamlessly with Microsoft Intune as part of the broader Microsoft Product Stack. Exhibit a strong grasp of Azure cloud services, focusing on their role in maintaining a secure environment. Understand and manage network traffic flows within the organization, extending your expertise to remote and cloud systems to fortify network defense. Vigilantly monitor and analyze network activity to detect and respond to potential security threats, using SIEM tools and other methods to spot anomalies that may signify a security breach. Investigate suspicious activities, proactively contain and prevent them, and monitor various events, triaging security alerts triggered by the monitoring system. Excel in incident response management, reducing the impact of security incidents by coordinating efforts with affected teams and departments. This includes conducting reverse engineering to identify the root cause of incidents and implementing permanent fixes to mitigate risks. Collaborate effectively with teams affected during incidents, reduce downtime, and ensure business continuity. Keep relevant stakeholders updated during and after incidents. Provide security services to the rest of the organization and support audit and compliance activities to maintain organizational security and compliance standards. Generate post-mortem reports of incidents and present them to relevant stakeholders. Develop a Knowledge and Event Database (KEDB) to track incidents and document their containment for future reference. Requirement Several years of hands-on experience in a security-related role, preferably as a security analyst or in a similar capacity Proven incident response experience, including investigation, containment, and resolution Proficiency in Microsoft Defender, Intune, and other Microsoft security products Strong knowledge of Azure cloud services and security best practices Experience with SIEM tools for monitoring and analysis Competence in managing modern endpoint detection and response systems. Deep understanding of network security principles and practices. Familiarity with security tools, including IDS and malware analysis tools Bachelor's degree in Computer Science, Information Security, or related field; advanced degrees preferred. Relevant certifications such as CISSP, CISM, CEH, and Microsoft Azure certifications are highly regarded. Added Advantage: Experience working with European companies as clients.