Security Consultant (SOC and Data Protection)
We are looking for a skilled Security Consultant to strengthen our cybersecurity Defense and data protection initiatives. The ideal candidate will handle real-time threat monitoring, incident response, and security analysis while supporting data protection operations such as DLP (Data Loss Prevention), endpoint security, and compliance enforcement.
Key Responsibilities
- Monitor security alerts and events using SIEM tools to detect and respond to potential threats in real time.
- Perform initial triage, analysis, and escalation of incidents to higher-level analysts.
- Investigate alerts, perform root cause analysis, and recommend corrective actions.
- Collaborate with the Incident Response team for containment, eradication, and recovery of security incidents.
- Maintain and tune detection rules, use cases, and correlation logic in SIEM platforms.
- Monitor endpoint, network, and application-level activities for anomalies and malicious behavior.
- Prepare incident reports, document findings, and contribute to continuous improvement of SOC processes.
- Support threat hunting, vulnerability assessments, and patch management coordination.
- Ensure compliance with organizational cybersecurity policies and best practices.
Data Protection
- Monitor and analyze DLP incidents, segregating false positives and true positives for further investigation.
- Configure, maintain, and enhance DLP policies to ensure data confidentiality and compliance.
- Implement and support DLP solutions across endpoints, email, and cloud environments.
- Collaborate with cross-functional teams to ensure compliance with PCI, PII, and other data protection standards.
- Leverage regular expressions (Regex) and validation methods to identify sensitive data types such as credit card numbers, PAN, and Aadhaar.
- Perform incident analysis and policy fine-tuning to minimize false positives and improve detection accuracy.
- Ensure endpoint data protection through configuration and compliance checks of security agents.
Required Skills and Experience
- Bachelor’s degree in Computer Science, Information Security, or related field.
- 2–5 years of experience in a SOC or cybersecurity operations environment.
- Hands-on experience with SIEM tools (Splunk, QRadar, ArcSight, or similar).
- Working knowledge of DLP solutions (McAfee, Trellix, Symantec, or similar).
- Familiarity with threat analysis, incident response, and forensic investigation.
- Strong understanding of data protection concepts, regulations, and frameworks
- Good analytical and problem-solving skills with attention to detail.
- Excellent communication and teamwork abilities.
Preferred Certifications
- CompTIA Security+, CEH, or equivalent.
- ISO 27001 LA/LI or DPO certification (preferred).
- Trellix/McAfee DLP certification (a plus).