The Resource Will
- provide 24x7 support for all incidents across client;
- provide day to day SIEM Incident Analysis & Escalation;
- support client with L3 investigation/ response wherever required (any security incident across client);
- support with use case creation & optimization;
- support with business and technical discussions for new log source onboarding;
- perform system optimization including logs;
- prepare & deliver client reports;
- drive any new engagement/task based on client requirements;
- engage clients for all custom monitoring & integration requirements; and
- Support integration with any security tools and use these tools as needed (e.g. TIP, SOAR, etc?)
- engage with all stakeholders and act as a bridge within client to achieve operational goals. .
SOC 2