Job Overview
Redient Security is seeking an experienced Senior IT Security Analyst to join our team in Pune, India. This role is critical for strengthening our enterprise cybersecurity operations, enhancing threat detection capabilities, managing incident response, and optimizing our Security Information and Event Management (SIEM) systems. The ideal candidate possesses deep expertise in Security Operations Center (SOC), Computer Emergency Response Team (CERT), and Computer Security Incident Response Team (CSIRT) environments, coupled with strong skills in Microsoft security tools, advanced threat hunting, and comprehensive security monitoring.
Key Responsibilities
- Monitor, investigate, and respond effectively to cybersecurity incidents.
- Collaborate closely with SOC, CERT, and CSIRT teams to ensure efficient incident management.
- Perform detailed forensic analysis of attack patterns and security events.
- Manage and optimize SIEM architecture, focusing on log ingestion, parsing, and normalization.
- Build insightful dashboards, comprehensive reports, and automated playbooks for security operations.
- Develop and fine-tune KQL queries and analytics rules within Microsoft Sentinel.
- Conduct proactive threat hunting and simulate attack scenarios to refine detection strategies.
- Analyze threat intelligence feeds to identify and mitigate emerging threats.
- Reduce false positives and continuously improve detection accuracy.
- Configure and maintain critical security tools including SIEM, endpoint protection, antivirus, and monitoring systems.
- Execute vulnerability assessments, conduct audits, and perform security reviews.
- Support security hardening initiatives and contribute to policy improvements.
- Contribute to the development and refinement of SOC processes, procedures, and governance frameworks.
Required Skills
- Extensive experience in SOC / CERT / CSIRT environments.
- Proficiency in SIEM Administration and Detection Engineering.
- Strong capabilities in Incident Response and Threat Hunting.
- Expertise with Microsoft Sentinel, Microsoft Defender for Cloud, Microsoft Defender for Endpoint, Microsoft Defender for Identity.
- Knowledge of Office 365 Security and Exchange Security.
- Familiarity with Azure Active Directory / Entra ID.
- Advanced KQL Query Development skills.
- Experience in Threat Intelligence Analysis.
- Understanding of the MITRE ATT&CK Framework.
- Experience with Firewalls, IDS/IPS, Anti-malware, and Vulnerability Tools.
- Solid Windows and Linux Security Administration skills.
- Knowledge of Cloud Security principles and practices.
- Excellent communication and collaboration skills.
Behavioral Skills
- Strong ability to collaborate effectively with global teams.
- Confident and clear communication style.
- Quick learner and highly adaptable to new technologies and challenges.
- Agile mindset and ability to thrive in a dynamic environment.
- Self-motivated and proactive approach to problem-solving.
Preferred Certifications
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Certified Ethical Hacker (CEH)
Qualifications
- Bachelor’s degree in Computer Science, Cyber Security, IT, or a related field.
- 8-13 years of relevant cyber security experience.
- Strong hands-on experience in enterprise security operations.
Preferred Candidate Profile
- Passionate about cybersecurity and staying updated with the latest threats and technologies.
- Possesses a strong analytical mindset.
- Ability to excel in fast-paced environments.