Please click on the Apply to verify the status of jobs posted more than 15 days ago, as they may have expired. Similar Jobs
Job Description
Lenovo is a US$69 billion revenue global technology powerhouse, ranked #196 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the worlds largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovos continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).
This transformation together with Lenovos world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit www.lenovo.com, and read about the latest news via our StoryHub.
Security Operations Centre (SOC) Analyst plays a vital role in Security delivery. As a SOC Analyst Level 3, you will be on the front line of Cyber Defense, detecting responding to Cyber Incidents as they happen. You will work with other team members to provide situational awareness through detection, containment, and remediation of IT threats. This job requires great attention to detail and general awareness of Cyber Security tools like SIEM, XDR, EDR, IDS/ IPS, ability understand various logs network logs, sys logs, Firewall logs. As a SOC Analyst you are expected to have working knowledge in areas of networking, malware analysis, incident response, vulnerability management.
- Threat vulnerability analysis
- Investigate, document report Information security issues emerging trends
- Analysis response to unknown vulnerabilities
As a SOC Analyst Level 3, you will:
- Operate as detection and security incident response subject-matter expert
- Technical subject-matter expert in SOC/ SIEM and supporting technologies (EDR, UEBA, etc.) to develop custom queries (e.g., KQL) and playbooks for the SOC analysts to utilize in their investigations.
- Align and maintain detection capability to the Mitre attack framework.
- Perform root cause analysis of detection failures, identify areas for improvement.
- Drive the continuous development of detection capability for SOC
- Manage, investigate, and resolve complex issues with the Security tooling.
- Securely configure the SIEM, and other SOC solutions in accordance with relevant policy and regulation
- Support the Threat hunters in executing complex data analysis.
- Provide a point of escalation for SOC/ security detection technical service issues.
- Ensure the relevant security tools are compliant with company standards and governance.
- Contribute to existing Policy, procedures and process documentation enhancements
- Define and implement technical governance processes for security tooling of SOC, SIEM and other security tools including AV, EDR, Defender Cloud.
- Create and review detection technology high and low level designs.
- Propose and identify automation opportunities resulting from incidents;
- Provide recommendations to the Client team, on how to mitigate or avert the occurrence of any suspicious activity within their environment.
- Provide In depth analysis to the user/customer about the security incidents (eg. Phishing attack)
- Troubleshoot connector/ logger/ Manager for log retrievals
- Prepare SOC Management Reports.
- Analyzing preparing daily and monthly reports based on the devices which are being monitored
- Creating Reports and Dashboards based on the customer requirement.
- Creating Queries for the Rules requested by client for real time alerts.
- Creating Reports which helps in providing the logs for the alerts, for finding any possible threats.
- Analyze a variety of network and host-based security appliance logs (Firewalls, NIDS, HIDS, Sys Logs, etc.) to determine the correct remediation actions and escalation paths.
- Independently follow procedures to contain, analyze, and eradicate malicious activity.
- Change Management/ Implementation: Independently implement changes to meet customer infrastructure needs within area of technical responsibility
- Patch and Security Management: Apply patch and security changes per policy.
- Configuration Management: Review Configuration Management Database (CMDB) entries to ensure they are complete and accurate.
- Quality: Provide continual improvement recommendations for direct responsibility area (process improvement, technical standard updates, etc).
- Project Management: Lead participate in customer and internal projects, including transformation.
- Customer Relationship Management: Set expectations with customers and/or internal businesses/end users within defined parameters.
- Teamwork: Work as part of a team, which may be virtual and/or global. Participate as part of a team and maintains good relationships with team members and customers
8 - 12 years of relevant experience
Typical Skills Include:
- Fine-tune SIEM and other SOC tooling to exclude noise and false positives
- Create and fine-tune content in SIEM - correlation rules, Dashboard and Reports etc
- Interact with SIEM, EDR and NDR vendors (TAC Support) to remediate any issues with tooling
- Evaluate new solutions for SOC
- Identify opportunities to improve overall capacity, playbook and runbook
- Understanding of threat landscapes and threat modelling, security threat and vulnerability management, and security monitoring
- Working knowledge of tools and techniques used by attackers to gain entry into corporate networks, including common IT system flaws and vulnerabilities.
- Knowledge of industry standards such as ISO 27001, HIPAA, FedRAMP, Cloud Security Alliance, NIST frameworks and risk methodologies
- Demonstrated experience in communicating complex security concepts, both verbally and in writing, to a variety of audiences
- Must take ownership of tasks and demonstrate high degree of autonomy to ensure completion
- Excellent understanding of related technologies (Networking, Operating Systems)
- General Project Management (Expert)
- Customer/Vendor Management (IExpert)
- Business Analysis (Expert)
- Has ability to perform/drive resolution of problems on individual products.
- Able to communicate broad and specific concepts with team and to peers.
- Able to produce documentation for use by team and customer.
- Able to perform/drive resolution of problems on combinations and interactions of products
- Strong verbal written communication skills
- Proactive approach to meet exceed goals
Looking to get Placed? Try our Placement Guarantee Plan
Bachelors degree in engineering (Electronics, Communication, Computer Science)
8 - 12 years of relevant experience in SOC domain
Strong understanding ITIL process
Recognized Cyber Security certifications, such as CISSP, CISM, SANS, SABSA, OSCP are advantageous.
Microsoft Security and compliance certifications such as SC-200, MS-500 and AZ-500 preferred
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class.
WD00088843 https://lenovo.avature.net/en_US/careers/JobDetailjobId=70804
Qualification Experience
Bachelors degree in engineering (Electronics, Communication, Computer Science)
8 - 12 years of relevant experience in SOC domain
Strong understanding ITIL process
Recognized Cyber Security certifications, such as CISSP, CISM, SANS, SABSA, OSCP are advantageous.
Microsoft Security and compliance certifications such as SC-200, MS-500 and AZ-500 preferred
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class.
Skills
CmdbItilCloudInformation SecurityIf an employer asks you to pay any kind of fee, please notify us immediately. Jobaaj does not charge any fee from the applicants and we do not allow other companies also to do so.
About Company
Lenovo, a global technology leader, designs, manufactures, and markets innovative PCs, smartphones, tablets, and smart devices. With a heritage of over three decades, Lenovo is renowned for its cutting-edge technology and customer-centric approach. Committed to shaping a smarter future through intelligent transformation, Lenovo empowers individuals and businesses worldwide. Explore exciting opportunities with Lenovo Careers, where talented individuals drive innovation and shape the future of technology. Join our diverse and inclusive team, dedicated to fostering creativity and collaboration. Together, we'll continue to push boundaries and create solutions that empower people and organizations to achieve more. Unlock your potential with Lenovo Careers today.
Important dates & deadlines?
Application Deadline
27 Nov 25, 04:02 PM IST
Similar Jobs
View All

