Sr Soc Threat Analyst - Tier3

1 Month ago • All levels • Cyber Security

About the job

Job Description

The Sr. SOC Threat Analyst - Tier 3 at Zelis will be responsible for creating, modifying, and tuning SIEM rules; integrating various log sources (Windows, Linux, Palo Alto firewall, AWS, etc.); providing correlation rule tuning, incident classification, and prioritization recommendations; optimizing SIEM system capabilities; working with network, device, and policy teams; identifying new threats; monitoring enterprise log correlation; selecting, designing, implementing, and managing security measures; collecting, analyzing, and interpreting vulnerability data; conducting vulnerability/exploit research; handling customer escalations; investigating security vulnerabilities; troubleshooting security issues; developing custom scripts; analyzing CVE information; monitoring and analyzing Cortex XDR alerts; troubleshooting and configuring prevention policies; utilizing vulnerability features in spotlight; performing daily PAM tasks (reconciliation, health checks, compliance reports); managing privileged session management and policies; creating and managing platforms, policies, and safes for privileged IDs; managing privileged user accounts; developing documentation; analyzing and investigating security events; performing forensic analysis; monitoring security threats; providing guidance and training to junior analysts; collaborating with security engineers; identifying opportunities for improving security processes; and staying updated on cybersecurity trends.
Must have:
  • SIEM expertise (rule creation, tuning, integration)
  • Vulnerability management & analysis
  • XDR monitoring & incident response
  • PAM administration & policy management
  • Threat hunting & investigation skills
  • Forensic analysis capabilities
  • Security event response & coordination
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.

About the job

Technical Skills

SIEM – Skills

Create, modify, and tune the SIEM rules to adjust the specifications of alerts and incidents.

Knowledge Integrating various log sources like Windows, Linux, Pala alto firewall , AWS, Etc.

To provide continual correlation rule tuning, incident classification and prioritization recommendations.

Report query adjustments, and various other SIEM configuration activities.

Ability to fully optimize the SIEM system capabilities as well as the audit and logging features of the event log sources.

Work closely with the other teams related to Network, Device, Policy, connectivity issues etc.

Identify new opportunities/threats in the network to improve the security of the network

Monitor and administer enterprise log correlation (SIEM)

Select, design, implement and manage security measures to reduce the risk of loss

VM – Skills

Collecting, analyzing, interpreting, evaluating, and integrating vulnerability data from multiple sources to update existing product

Vulnerability/exploit research and creating signatures for the same

Handle Customer escalations, to identify False-Positive & False-Negative

Actively investigate the latest in security vulnerabilities, advisories, incidents, and provide insights (sources like, Microsoft, Oracle, etc)

Troubleshooting security vulnerability issues/ gaps that arise

Vulnerability data discovery and validation (Data efficacy & Accuracy)

Develop, test and modify custom scripts for vulnerability content

Manually/Automate analyzing new CVE information published

XDR - Skills

Monitor and analyzing Threat hunting, Deep investing on Cortex XDR Alerts, Detection, Incidents.

Troubleshoot and Configure Prevention Policies, Custom IOA Rule Groups, Detections Management, Exclusions, IOC Management, Firewall Policies, Firewall Rule Groups, USB Device Policies, Response Policies, Response Scripts & Files, Containment Policy, Sensor Update Policies.

Should be able to check and utilize all Vulnerability feature in spotlight.

PAM- Skills

Perform daily tasks that include reconciliation of servers, daily health check of the PAM servers, run daily compliance reports, etc.

Manage Privileged Session Management and associated policies.

Create and manage Platforms, Policies and Safes for Privileged ID’s.

Responsible for Privileged User account administration for various platforms including Windows, UNIX, LDAP, Databases.

Manage Service Accounts, Non-Production Accounts, Test Accounts within the vaults.

Develop and maintain documentation for security systems and procedures.

Reporting and metrics

Management Skills

  • Analyse, investigate, lead and coordinate responses to complex, advanced security events and alerts, perform forensic analysis to understand extent of compromise by using respective tools.
  • Monitor, analyse security threats, vulnerabilities and trends by utilize threat intelligence to enhance detection and response capabilities.
  • Provide guidance, conduct trainings and support to level 1 and 2 SOC analysts
  • Collaborate, Assist with security engineers to deploy, develop, implement and manage security tools and architecture.
  • Work closely with IT and security teams to coordinate efforts
  • Identify opportunities for improving security processes and technology
  • Stay upto date on cybersecurity trends and threats.
  • documenting security incidents, responses and related information in accordance with procedures.

Zelis is modernizing the healthcare financial experience by providing a connected platform that bridges the gaps and aligns interests across payers, providers, and healthcare consumers. This platform serves more than 750 payers, including the top 5 national health plans, BCBS insurers, regional health plans, TPAs and self-insured employers, and millions of healthcare providers and consumers. Zelis sees across the system to identify, optimize, and solve problems holistically with technology built by healthcare experts – driving real, measurable results for clients.

Commitment to Diversity, Equity, Inclusion, and Belonging

At Zelis, we champion diversity, equity, inclusion, and belonging in all aspects of our operations. We embrace the power of diversity and create an environment where people can bring their authentic and best selves to work. We know that a sense of belonging is key not only to your success at Zelis, but also to your ability to bring your best each day.

Equal Employment Opportunity

Zelis is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

We encourage members of traditionally underrepresented communities to apply, even if you do not believe you 100% fit the qualifications of the position, including women, LGBTQIA people, people of color, and people with disabilities.

Accessibility Support

We are dedicated to ensuring our application process is accessible to all candidates. If you are a qualified individual with a disability or a disabled veteran and require a reasonable accommodation with any part of the application and/or interview process, please email TalentAcquisition@zelis.com.

SCAM ALERT: There is an active nationwide employment scam which is now using Zelis to garner personal information or financial scams. This site is secure, and any applications made here are with our legitimate partner. If you’re contacted by a Zelis Recruiter, please ensure whomever is contacting you truly represents Zelis Healthcare. We will never asked for the exchange of any money or credit card details during the recruitment process. Please be aware of any suspicious email activity from people who could be pretending to be recruiters or senior professionals at Zelis.

View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Hyderabad, Telangana, India (On-Site)

Telangana, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Hyderabad, Telangana, India (On-Site)

View All Jobs

Get notified when new jobs are added by Zelis

Similar Jobs

Trend Micro - Sr. Information Security Specialist

Trend Micro, United States (On-Site)

N-iX - Junior Product Designer (#2422)

N-iX, Ukraine (Flexible)

Barracuda Networks  Inc  - Senior Site Reliability Engineer

Barracuda Networks Inc , India (On-Site)

Ubisoft - Security Manager

Ubisoft, Canada (Hybrid)

Palo Alto Networks - Presales Manager - Network Security (Domain Consulting)

Palo Alto Networks, Switzerland (Remote)

Seedify - Cyber Security Specialist

Seedify, (On-Site)

Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation, United States (Hybrid)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Trend Micro - Federal Government Account Executive

Trend Micro, Australia (On-Site)

Trend Micro - Federal Government Account Executive

Trend Micro, Australia (On-Site)

Reversing Labs - BI Data Engineer

Reversing Labs, Croatia (Hybrid)

Trend Micro - Sr. Information Security Specialist

Trend Micro, United States (On-Site)

Reversing Labs - Sales Development Representative (DACH Region)

Reversing Labs, United States (Remote)

Get notifed when new similar jobs are uploaded

Jobs in Hyderabad, Telangana, India

Barclays - Data Scientist BA4

Barclays, India (On-Site)

Bravura Solutions - DevOps Engineer

Bravura Solutions, India (Hybrid)

CloudHire - WordPress Developer

CloudHire, India (On-Site)

Schbang - Sr. Content Writer and Strategist

Schbang, India (On-Site)

Silly Science - Illustrator Intern - 5,000/month

Silly Science, India (Remote)

InMobiInMobi - Senior Analyst - Demand Ops

InMobiInMobi, India (On-Site)

Starkflow - Operations Intern

Starkflow, India (On-Site)

Paytm - Sales Account Manager - Team Lead

Paytm, India (On-Site)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation, United States (Hybrid)

Egnyte - Sr Solutions Engineer - AEC

Egnyte, United States (On-Site)

ION - Platform Security Analyst

ION, Italy (On-Site)

Palo Alto Networks - Prisma Cloud Solutions Architect - Healthcare

Palo Alto Networks, United States (Remote)

Axinous - Machine Learning Engineer

Axinous, India (On-Site)

PwC - Senior - Compliance Support Analyst

PwC, Argentina (On-Site)

Western Digital - Manager, Security

Western Digital, India (On-Site)

Palo Alto Networks - Domain Consulting Manager - Singapore

Palo Alto Networks, Singapore (On_site)

Get notifed when new similar jobs are uploaded