Job Title: Asst. Manager - Information Technology
Purpose of Job
The Cyber Security Analyst / Senior Cyber Security Analyst will be responsible for:
•End-to-end security operations and security engineering
•Designing, implementing, and managing enterprise-wide security controls across:
oNetwork
oCloud (Azure/AWS)
oEndpoint and Server environments
Driving key cybersecurity functions including:
•Threat detection & response
•Vulnerability management
•Security engineering & architecture
•SOC operations & automation
•Governance, audit, and compliance
Roles and Responsibilites
Security Operations & Incident Response
•Monitor and respond to: Malware, ransomware, phishing, lateral movement, anomalies
•Perform: Alert triage (L1/L2/L3 based on role); Incident investigation, containment, and remediation
•Conduct: Root Cause Analysis (RCA); Incident documentation and reporting
•Analyze logs, network traffic, and attack artifacts
Security Engineering (Network, Cloud, Endpoint)
- Network Security
•Configure & manage:Firewalls (Fortinet, Cisco, Azure Firewall), WAF (Imperva, F5, FortiWeb), NAC (Cisco ISE), VPNs
•Perform: Firewall rule creation, audit, and optimization, Network segmentation and IT/OT segregation
•Strong knowledge of: TCP/IP, OSI model, ports, protocols, network traffic analysis, - Cloud Security
•Secure Azure / AWS environments: VNET, NSG, IAM, VPC, Defender for Cloud, CSPM (Wiz)
•Implement: Secure landing zones, Cloud workload protection
•Monitor: Azure Monitor, security recommendations - Server & Endpoint Security
•Manage: Windows/Linux hardening, Active Directory, GPO, IAM
•Configure: EDR/XDR (Defender, CrowdStrike, Trend Micro)
•Ensure: Patch management, Endpoint security posture
SIEM, Detection Engineering & Threat Monitoring
•Configure and manage: SIEM platforms (Sentinel, QRadar, Splunk, LogRhythm)
•Perform: Log ingestion (Azure, O365, AWS, AD, network logs); Correlation rule creation; IOC and alert configuration
•Execute: Log analysis (KQL, SPL, regex); Threat hunting; Historical and real-time event correlation
Skill Required
Tools & Platforms
•SIEM: Sentinel, QRadar, Splunk, LogRhythm
•EDR/XDR: Defender, CrowdStrike, Trend Micro
•VM Tools: Qualys, Tenable, Nexpose
•Firewalls: Fortinet, Cisco
•WAF: Imperva, F5, FortiWeb
•Cloud: Azure, AWS
•SOAR: Phantom, XSOAR, Sentinel Playbooks
Core Technical Skills
•Log analysis, KQL/SPL, regex
•Python / scripting
•Networking fundamentals
•OSI model, protocols, traffic analysis
Specialized Skills
•Penetration testing (Burp, Metasploit, Kali)
•Digital forensics (endpoint/network artifacts)
•YARA, SIEM rule creation
•API security testing
Relevant professional / Educational background
BE / B.Tech (Computer Science / IT / Security)
Preferred Certifications:
•CEH, CHFI, ECIH
•CISSP, CISM
•GIAC (GCIH, GCIA)
•SC-200, AZ-500
•OSCP
Head Office, Ahmedabad, GJ, IN, 380054