Connecting Odds
HCLTech

Senior Administrator - Security Investigations, SIEM

HCLTech
Guadalajara, Jalisco, MexicoPosted 13 days agoDiscoveredMatch locked
Full-time

Job Summary

Handle escalated incidents / alerts / situations by Level 1 • Handle & respond to the EDR & MDR alerts • Join major incidents & security incidents to assist client incident handler • Assist in SOC related project tasks • Review & recommend fine tuning of use cases • Generate weekly, monthly, quarterly & annual reports • Contribute to the knowledge base • High school diploma, GED, and relevant work experience is required; • Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity or other related field preferred • 3 years cybersecurity monitoring experience required Proven analytical, problem solving, and research skills • Understanding of network concepts, protocols, services, and operating systems • Experience with SIEM, email security, IPS, web security, application whitelisting, EDR, SOAR, and anomaly detection tools requires • Willingness to work a flexible schedule, such as shift work (including rotating shifts), days, nights, and weekends and holidays as necessary • 100% on site • Advance verbal and written communication skills in the English language Ability to work in an open and collaborative environment

Key Responsibilities

Handle escalated incidents / alerts / situations by Level 1 • Handle & respond to the EDR & MDR alerts • Join major incidents & security incidents to assist client incident handler • Assist in SOC related project tasks • Review & recommend fine tuning of use cases • Generate weekly, monthly, quarterly & annual reports • Contribute to the knowledge base • High school diploma, GED, and relevant work experience is required; • Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity or other related field preferred • 3 years cybersecurity monitoring experience required Proven analytical, problem solving, and research skills • Understanding of network concepts, protocols, services, and operating systems • Experience with SIEM, email security, IPS, web security, application whitelisting, EDR, SOAR, and anomaly detection tools requires • Willingness to work a flexible schedule, such as shift work (including rotating shifts), days, nights, and weekends and holidays as necessary • 100% on site • Advance verbal and written communication skills in the English language Ability to work in an open and collaborative environment

Skill Requirements

Handle escalated incidents / alerts / situations by Level 1 • Handle & respond to the EDR & MDR alerts • Join major incidents & security incidents to assist client incident handler • Assist in SOC related project tasks • Review & recommend fine tuning of use cases • Generate weekly, monthly, quarterly & annual reports • Contribute to the knowledge base • High school diploma, GED, and relevant work experience is required; • Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity or other related field preferred • 3 years cybersecurity monitoring experience required Proven analytical, problem solving, and research skills • Understanding of network concepts, protocols, services, and operating systems • Experience with SIEM, email security, IPS, web security, application whitelisting, EDR, SOAR, and anomaly detection tools requires • Willingness to work a flexible schedule, such as shift work (including rotating shifts), days, nights, and weekends and holidays as necessary • 100% on site • Advance verbal and written communication skills in the English language Ability to work in an open and collaborative environment

Other Requirements

Handle escalated incidents / alerts / situations by Level 1 • Handle & respond to the EDR & MDR alerts • Join major incidents & security incidents to assist client incident handler • Assist in SOC related project tasks • Review & recommend fine tuning of use cases • Generate weekly, monthly, quarterly & annual reports • Contribute to the knowledge base • High school diploma, GED, and relevant work experience is required; • Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity or other related field preferred • 3 years cybersecurity monitoring experience required Proven analytical, problem solving, and research skills • Understanding of network concepts, protocols, services, and operating systems • Experience with SIEM, email security, IPS, web security, application whitelisting, EDR, SOAR, and anomaly detection tools requires • Willingness to work a flexible schedule, such as shift work (including rotating shifts), days, nights, and weekends and holidays as necessary • 100% on site • Advance verbal and written communication skills in the English language Ability to work in an open and collaborative environment

Not included in the source posting: about the role, benefits.

Skills

cybersecuritysiemsoc

Who can apply

The employer didn't state any visa, work authorization, citizenship or clearance requirements in this posting. Confirm with the employer before applying.

Read automatically from the employer's posting text. Always confirm with the employer — requirements can change after a job is published.