Cybersecurity Admin Sec - SIEM Administrator
Tata Consultancy Services · Chennai, India
FULL TIME
Job Description
Greeting From TCS!!! Role: Cybersecurity Admin Sec - SIEM Administrator Experience: 8 to 12 Location: Chennai SN Responsibility of / Expectations from the Role 1 Conduct proactive threat hunting activities across endpoints, networks, cloud environments, and identity platforms. - Develop and execute threat hunting hypotheses based on threat intelligence, emerging attack trends, and organizational risks. - Identify Indicators of Compromise (IoCs), Indicators of Attack (IoAs), and suspicious behaviors.
2 Analyze security events to detect stealthy, persistent, and advanced threats. - Consume and operationalize cyber threat intelligence feeds.
3 Map adversary tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK framework. - Track emerging threats, vulnerabilities, and attack campaigns. - Document hunting findings, attack patterns, and remediation recommendations. - Present threat hunt outcomes to security leadership and stakeholders.
4 Collaborate with SOC, Incident Response, Vulnerability Management, Red Team, and Security Engineering teams. Develop scripts and automation to improve threat hunting and investigation efficiency. 5 Continuously evaluate and improve security monitoring and detection coverage. Contribute to purple team exercises and detection validation activities.
6 Enhance threat detection capabilities within SIEM, EDR, NDR, and XDR platforms. 7 Develop hunt queries using KQL, SPL, SQL, Sigma, YARA, or similar technologies. 8 Support incident response activities for malware infections, ransomware, insider threats, credential compromise, and APT attacks.
2 Analyze security events to detect stealthy, persistent, and advanced threats. - Consume and operationalize cyber threat intelligence feeds.
3 Map adversary tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK framework. - Track emerging threats, vulnerabilities, and attack campaigns. - Document hunting findings, attack patterns, and remediation recommendations. - Present threat hunt outcomes to security leadership and stakeholders.
4 Collaborate with SOC, Incident Response, Vulnerability Management, Red Team, and Security Engineering teams. Develop scripts and automation to improve threat hunting and investigation efficiency. 5 Continuously evaluate and improve security monitoring and detection coverage. Contribute to purple team exercises and detection validation activities.
6 Enhance threat detection capabilities within SIEM, EDR, NDR, and XDR platforms. 7 Develop hunt queries using KQL, SPL, SQL, Sigma, YARA, or similar technologies. 8 Support incident response activities for malware infections, ransomware, insider threats, credential compromise, and APT attacks.
Details
| Company | Tata Consultancy Services |
| Location | Chennai, India |
| Type | FULL TIME |
| Niche | general |
