Company

IbmSee more

addressAddressPune, Maharashtra
type Form of workEmployer (Private Sector)
salary SalaryUnspecified
CategoryAdmin

Job description

Introduction
Information and Data are some of the most important organizational assets in today’s businesses. As a Security Consultant, you will be a key advisor for IBM’s clients, analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client’s organization with the cognitive solutions that are making IBM the fastest growing enterprise security business in the world.
Your Role and Responsibilities
  • Manage and Lead the SOC team –
    • Client interactions including daily, weekly & monthly meetings.
    • Constant enhancement of deployed processes, playbooks and offence quality by periodic reviews of SOC policies, playbooks, offence closures and investigations steps taken.
    • Adhering to defined SLAs, KPIs, KRAs and maintaining the consistency in achieving the targets.
    • Supporting L2s and L3s in investigations and ensuring quality of investigations are at optimal levels.
    • Grooming L1s to enhance their knowledge base and executions skills for first level of investigations.
    • Fine-tuning and enablement of policies on different Security/IT technologies as per the nature of incident to mitigate re-occurrence.
    • Maintaining the compliance of Monthly, Weekly and Daily reports.
    • Participating and driving various SOC audits.
  • Manage and Lead the SIEM team –
  • Client interactions including daily, weekly & monthly meetings.
  • Constant enhancement of deployed processes & SOPs.
  • Active participation in troubleshooting SIEM hardware issues, GUI issues, Architectural Issues.
  • Adhering to defined SLAs, KPIs, KRAs and maintaining the consistency in achieving the targets.
  • Fine-tuning of existing use cases, creation and deployment of new use cases covering latest threat vectors to the client environment.
  • Developing co-relational use cases to maintain high quality true positive offences.
  • Maintaining the compliance of Monthly, Weekly and Daily reports.
  • Participating and driving various SIEM audits.
  • Manage and Lead the IR/TH team –
  • Client interactions including daily, weekly & monthly meetings.
  • Containment, Investigation and Mitigation of critical security incidents as defined in the IR process document, Leading the War rooms, defining actions and ensuring their closure.
  • Periodic review of IR policies and procedures.
  • Grooming of IR/TH L1,L2,L3 by enhancing their knowledge base and ability to execute and deliver during critical incidents
  • Adhering to defined SLAs, KPIs, KRAs and maintaining the consistency in achieving the targets.
  • Maintaining the compliance of Monthly, Weekly and Daily reports.
  • Participating and driving various IR/TH audits.
  • Manage and Lead the CTI team
    • Client interactions including daily, weekly & monthly meetings.
    • Periodic review of CTI policies and procedures.
    • Research and generation of CTI advisories.
    • Implementation of IOCs and IOAs in client infrastructure which received from different advisories sent by Threat intelligence partners.
    • Ensuring that all the trackers and reports are maintained and updated regularly.
    • Adhering to defined SLAs, KPIs, KRAs and maintaining the consistency in achieving the targets.
    • Maintaining the compliance of Monthly, Weekly and Daily reports.
    • Participating and driving various CTI audits.

Who you are:
Security Operations Center Manager


What you’ll do:
As a critical position in the organisation the Security Operations Center Manager is responsible for overseeing the activities of the 24×7 SOC Team, SIEM Engineering and Administration, Incident Response, Threat Hunting & Cyber Threat Intelligence.


How we’ll help you grow:


  • You’ll have access to all the technical and management training courses you need to become the expert you want to be
  • You’ll learn directly from expert developers in the field; our team leads love to mentor
  • You have the opportunity to work in many different areas to figure out what really excites you


Required Technical and Professional Expertise


  • Rigorous and respectful of process. Strong attention to details.
  • Strong time management skills with the ability for multitasking
  • Information Security and operational oriented mind-set
  • Team Spirit
  • Customer focus
  • Constant enhancement of deployed processes, playbooks and offence quality by periodic reviews of SOC policies, playbooks, offence closures and investigations steps taken.


Preferred Technical and Professional Expertise


  • CISSP, CISM, ECIH, CEH, CCNP/CCNA, CCSA certified professional
Refer code: 989452. Ibm - The previous day - 2024-04-04 03:16

Ibm

Pune, Maharashtra

Share jobs with friends

Associate Manager - Security Operation center

Crosstab

1070000 - 1500000 INR per year

Mumbai, Maharashtra

4 months ago - seen