Senior Analyst - Data Security Engineer
MUFG View all jobs
- Bangalore, Karnataka
- Permanent
- Full-time
- Act as a subject matter expert for SOC Data & Platform Management, supporting the operational needs of the SOC team
- Oversee the administration and maintenance of SOC-managed security systems, including Splunk SIEM and other critical platforms
- Collaborate with Splunk Admins to monitor platform health, troubleshoot ingestion delays, and resolve data gaps
- Coordinate with product SMEs to manage upgrades, patches, and enhancements across tools such as Network Anomaly Detection (e.g., Darktrace), Threat & Attack Surface Management platforms, Forensic Investigation tools
- Implement and manage data retention policies aligned with compliance and operational requirements
- Study, coordinate, and manage integrations between various security platforms to automate SOC workflows and reporting
- Ensure secure access controls and enforce role-based permissions across SOC platforms
- Support the generation of SOC metrics and monthly KRI/KPI dashboards
- Assist with audit and regulatory responses, ensuring timely and accurate communication
- Maintain platform documentation and contribute to SOPs and governance processes
- Provide out-of-hours support for critical platform issues when required
- 35 years of experience in SOC engineering, platform administration, or cybersecurity infrastructure roles
- Solid understanding on SIEM platforms and SOC-related tools (e.g., Splunk ES, SOAR, UBA)
- Strong understanding of log formats, parsing, and normalization techniques
- Experience with data visualization and dashboarding tools
- Solid knowledge of networking, operating systems, and security controls
- Familiarity with cloud and security environments (e.g., Azure, Microsoft Defender) and their logging mechanisms
- Understanding of regulatory requirements and data governance in cybersecurity
- Strong troubleshooting and problem-solving skills
- Experience with scripting languages (e.g., Python, PowerShell) and automation tools is a plus
- Certifications such as Splunk Certified Admin, Azure Security Engineer, or equivalent are advantageous