Job Title:
Security Consultant: SOAR
Company: IBM
Location: Navi mumbai, Maharashtra
Created: 2025-12-11
Job Type: Full Time
Job Description:
Job ResponsibilitiesExperience in advance investigation, triaging, analysis and escalation of security incidents with recommendationsHands-on basic experience with configurations and management of SIEM tools(Qradar) including log source integrations, custom parser built, fine tuning and optimizing the correlation rules and use cases recommendations Is MUST.Proven Experience on any of the Security information and event management (SIEM) tools using QradarData-driven threat hunting using SIEM, EDR and XDR toolsBasic Experience is SOAR tools such as Qradar Resilient, PaloAlto XSOARIdentify quick defence techniques till permanent resolution.Recognize successful intrusions and compromises through review and analysis of relevant event detail information.Playbook developerReview incidents escalated by Level 1 analysts.Launch and track investigations to resolution. Recognize attacks based on their signatures, differentiates false positives from true intrusion attempts.Actively investigates the latest in security vulnerabilities, advisories, incidents, and penetration techniques and notifies end users when appropriate.Identify the gaps in security environment & suggest the gap closureDrive & Support Change ManagementReport Generation and Trend Analysis. Participate in the Weekly and Monthly governance calls to support the SOC metrics reportingGood to have hands on experience with managing SIEM solutions on public/private clouds like Amazon AWS, Microsoft Azure, etc.Willing to work in 24x7 rotational shift model including night shift.