
Security Analysis Senior Specialist
- Bangalore, Karnataka
- Permanent
- Full-time
- Experience with design, architecture and implementation of services in the areas of anti-virus and EDR.
- In-depth knowledge and experience with implementing and installing the following technologies:
- Experience in Implementing and managing Antivirus Projects including Installation, Configuration and troubleshooting of various Antivirus suites like MS Defender for Endpoint, Crowdstrike Sophos, Sentinalone, Trend Micro.
- Administration of AV/EDR server and Distributed Repositories.
- Configuring tasks, policies, scheduled scans and adding scan exclusions based on client's requirement.
- Performing daily activities, monitoring and remediation of servers/ workstations for virus infections and threats.
- EDR event logs monitoring and analysis.
- Vulnerability assessment of Critical Application servers.
- Excellent oral and written communication skills
- Evaluate/deconstruct malware through open-source and vendor provided tools
- Resolve client issues by taking the appropriate corrective action, or following the appropriate escalation procedures
- Utilize ticketing system and standard operating procedures for effective call processing and escalation to adhere to client Service Level Agreement (SLA)
- Perform all tasks required per shift including reporting, monitoring, and turnover logs
- Evaluate the type and severity of security events by making use of packet analyses and in-depth understanding of exploits and vulnerabilities
- Confidently communicate technical information to NTT Data Services client base and internal technical team members
- Participate in knowledge sharing with other analysts and develop efficient customer solutions
- Maintain a working knowledge of local security policies and execute general controls as assigned
- Three to five years' experience with MS Defender for Endpoint, Crowdstrike Sophos, Sentinalone, Trend Micro etc.(Any two)
- Three to five years' experience with Virus Scan, ePolicy Orchestrator -Three to five years' experience with McAfee Host Intrusion Prevention or Cylance Host Intrusion Detection -Windows operating systems
- Internet connectivity and protocols (TCP/IP) -Enterprise Security Information Management systems -Networking knowledge and experience -Investigative and analytical problem solving skills
- Vendor Certifications from Symantec/McAfee/Cylance/Sophos/Microsoft/Crowdstrike
- Other Vendor Certifications like MS Defender, Trend Micro, Carbon Black
- 3-5 Years relevant work experience