Siem Chronicle Engineer Apply
Location: All 7 Deloitte USI locations ( Hyderabad, Mumbai, Delhi/NCR, Bengaluru, Kolkata, Pune, and Chennai )
Shift: Rotating 24x7 shifts
JOB DESCRIPTION:
- Minimum 8 months of experience in Chronicle
- 3-5 years of experience in security information and technology engineering
- Experience in Writing Parsers
- Experience with Leading SIEM Technologies ( Splunk, QRadar, Log Rhythm, Nitro, and Chronicle )
- Understanding of possible attack activities such as network probing/ scanning, DDOS, malicious code activity, exfiltration, credential access, etc.
- understanding of the Cyber Kill Chain, the MITRE attack framework, various TTPs described within and commonly used by attackers as well as how to write detection rules for them in SIEM and EDR solution.
- Understanding of tools, technologies and logging mechanism including understanding to common network devices such as routers, switches, load balancers etc.
-Understanding of typical cloud threats and knowledge of how to detect and prevent them, cloud logging and audit capabilities and the ability to develop detection rules around these
- Understanding of basic networking protocols such as IP, DNS, HTTP, and the network stack
- Basic knowledge in system security architecture and security solutions