Works as part of a 24/7 team working on rotational shifts.
Works as part of Platform and Content Engineering handling tunings, stake holder requests, escalations, reporting, trainings.
Administers the organization's security tools to gather security logs from environment.
Lifecycle management of the supported security tools/technologies, Break-fix, Patching, Live update.
Adheres to SOPs and notify stake holders on log flow/log format issues.
Documents best practices.
Identifies opportunities to make automations which will help the incident response team.
Performs security incident handling and response from several vectors including End Point Protection and Enterprise Detection and response tools, attack analysis, malware analysis, network forensics, computer forensics, and a broad range of skills in LAN technologies, Windows and Linux O/S’s, and general security infrastructure.
Carries out agreed maintenance tasks.
Ensures usage of knowledge articles in incident diagnosis and resolution and assist with updating as and when required.
Performs defined tasks to monitor service delivery against service level agreements and maintains records of relevant information.
Investigates causes of incidents and seeks resolution.
Escalates unresolved incidents and follow up until incident is resolved.
Provides service recovery, following resolution of incidents.
Document and close resolved incidents according to agreed procedures.
Requirements
Bachelor's degree or equivalent in Information Technology or related field
Relevant level of Networking certifications such as CCNA, JNCIA, ACCA, PCNSA, CCSA etc. preferred.
Relevant level of Security certifications such as AZ-500, SC-200, Security+, CEH, CISSP, CISM etc. will be added advantage.
Moderate level experience in Security technologies like (Firewall, IPS, IDS, Proxy etc.).
Moderate level experience in technical support to clients.
Moderate level experience in diagnosis and troubleshooting.
Moderate level experience providing remote support in Security Technologies.
Moderate level experience in SOC/CSIRT Operations.
Moderate level experience in handling security incidents end to end.
Knowledge on networking, Linux and security concepts.
Moderate level experience in configuring/managing security controls such as Firewall, IDS/IPS, EDR, NDR, UTM, Proxy, SOAR, HoneyPots and other security tools.
Knowledge on log collection mechanism such as Syslog, Log file, DB API.
Knowledge in security architecture.
Moderate level experience in Security engineering.
Mid - level Windows Platform Engineer at COUNTRY Financial, managing Azure IaaS resources and supporting cloud migration. Collaborating with teams for troubleshooting and optimizing infrastructure solutions.
Principal AWS Platform Engineer at Appvia guiding clients in cloud adoption and DevOps excellence. Leading teams and projects while fostering innovation in cloud technologies.
Platform Engineer building secure and reliable internal platforms for developers at Alto Software Group. Collaborating with cross - functional teams to enhance developer experience and productivity.
Vertica Database Administrator overseeing Vertica systems operations at MassMutual. Providing 24/7 support while ensuring data reliability and security across clustered environments.
Director of Platform Engineering leading the vision, design, and evolution of a developer platform for cloud and infrastructure services. Driving DevOps excellence and automation initiatives across divisions in a strategic role.
Security Engineer developing agent - based tooling and services for NVIDIA's secure software development lifecycle. Collaborating across teams to ensure compliance and security in software development practices.
Power Platform Developer at Macaw creating applications and automating processes with Microsoft technologies. Collaborating with teams to understand requirements and deliver functional solutions.
AI Platform Engineer building and operating secure, scalable components of a cloud AI platform at Elevance Health. Design, implement, and automate cloud services and APIs while improving performance and efficiency.