Security Information and Event Management (SIEM)
AccenturePune, Maharashtra, India
We are looking for professionals who can fulfill the following criteria:
Job Description
• Well versed with MSS and SOC environments, Event correlation, Incident management/handling.
• Expertise at correlating events detected by various security solutions deployed at a customer environment to determine if implies a potential security incident.
• Perform research & log analysis on a wide range of security technologies including, but not limited to: SEIM, IDS/IPS, HIDS, Data Loss Prevention, Application Firewalls and Vulnerability Scanners
• Build awareness/knowledge base on existing as well as upcoming IT security solutions from security vendors (including API based and Non-API based event logging devices)
• Create engineering specifications for individual security products to correctly interpret security log entries to security events (Intrusion, Malware, scan, data leakage…) to be gathered from these security products
• Leverage automation studio to build translation logic for each unique log pattern for a security device to accurately and consistently interpret similar security events across security devices from different vendors.
• Leverage automation studio to build specific connectors & translators per security device to be supported or automated log collection, translation and correlation
• Exposure/understanding of the Cloud environments (AWS/Azure, etc.)- good to have
• Understand enterprise/customer security programs/architectures for IT infrastructure security
• Research & understand trends in enterprise IT environments to identify evolving needs of customers to manage internal security incidents
Technical Experience
• Experience in analyzing, researching Windows / Unix Security Logs as well as logs form IDS/IPS, HIDS DLP, Next Generation Firewalls, Anti-Virus/Malware, Vulnerability Assessment solutions
• Experience in threat/incident detection through accurate interpretation of the event logs
• Ability to adapt to changing priorities, meet deadlines and work well under pressure
• Security Certifications like Ethical Hacking, GSEC, SSCP, CISSP etc.
Professional Attributes
• Proficient in verbal and written English language skills
• Great Team Player with good interpersonal skills
• Self motivated with a very positive attitude
• Good Analytical and presentation skills
• Ability to work under pressure
Educational Qualification
• 4-8 years relevant experience.
• BCA/ MCA/Engineering Degree
Location :- Pune
If you, or a friend, match these requirements, please send in your resumes to s.channappagoudar@accenture.com, with ”SIEM” in the subject line.
Accenture is an equal opportunities employer and welcomes applications from all sections of society and does not discriminate on grounds of race, religion or belief, ethnic or national origin, disability, age, citizenship, marital, domestic or civil partnership status, sexual orientation, gender identity, or any other basis as protected by applicable law.
More Information at :- www.suresarkari.in
Seniority level Employment type
Mid-Senior level Full-time
Job function Industries
Information Technology Information Technology and Services