Specialist

  • Pune
  • Insight Global
Searching for an EXABEAM ADMIN SUBJECT MATTER EXPERT. MUST HAVES: Experience scripting in Python AND experience creating custom parsers and using Advanced Analytics in Exabeam is REQUIRED for this role. This is a 5-month contract role. Responsibilities & Accountabilities Design, implement, and maintain the Exabeam SIEM solution to collect, analyze, and correlate security events from various sources Develop and tune security rules to detect potential security incidents, leveraging Exabeam's advanced analytics features Investigate security alerts and incidents using Exabeam SIEM, including utilizing advanced analytics for threat hunting and forensic analysis Execute on milestones for end-to-end SecOps & Threat initiatives in accordance with the Security roadmap. Respond to security incidents according to established procedures Participate in security incident response (SIEM) exercises and improve processes, incorporating advanced analytics for better detection and investigation Maintain knowledge of the latest security threats and vulnerabilities Provide technical guidance and support to other Secops professionals Create and maintain parsers to ingest log data from various sources into Exabeam SIEM Create and implement Exabeam SOAR playbooks to automate incident response tasks and workflows Build SIEM tools and advanced automation that enable the 6Sense Security Team to operate at speed and scale Create SOC playbook and KB article on Exabeam for future reference Mentor engineers across Information Security to drive security controls and risk remediation Communicate risks and mitigations across multiple audiences with varying levels of sensitivity Flexible working hours that overlap with US Pacific time zone Monday - Thursday Educational and Experience Requirements 8+ years of experience being part of a Security Operations or similar team Extensive experience working with Exabeam SIEM Strong understanding of SIEM concepts and technologies. Experience with log management and analysis Experience with security information and event management (SIEM) rule development and tuning. Excellent analytical and problem-solving skills Strong communication and collaboration skills Deep knowledge of Exabeam SIEM's advanced analytics features, such as user and entity behavior analytics (UEBA), machine learning, and threat intelligence integration Experience with security orchestration, automation, and response (SOAR) Preferred Qualifications Bachelor's degree in a related field Relevant industry certifications, such as CISSP, CISM Experience with industry frameworks, regulations and standards, such as: MITRE ATT&CK, STRIDE, PASTA, ISO 27001, SOC 2, GDPR, PCI, SOX, NIST, etc.