Sr. Security Analyst: Incident Analyst (Weekdays 2nd shift)

3 Weeks ago • All levels • Operations

About the job

Job Description

As a Sr. Security Analyst: Incident Analyst, you'll monitor and respond to security events and tickets, perform root cause analysis, manage the SIEM solution, and support wider IT teams. You'll investigate threat feeds and alerts, tune SIEM alerts and configurations, troubleshoot operational issues, and participate in incident response, including deep-dive analysis and damage assessment. Strong communication, problem-solving, and critical thinking skills are essential, along with the ability to work independently and collaboratively. On-call weekend work is part of the role.
Must have:
  • Monitor SIEM, ServiceNow, and dashboards
  • Escalate security incidents
  • SIEM alert tuning and configuration
  • Troubleshoot SIEM and SOC issues
  • Perform deep-dive incident analysis
  • Develop IoCs
  • Incident damage assessment
There has never been a better time to join Extreme, after three acquisitions extending our portfolio and go-to-market strategy, we have seen enormous opportunity and growth within the region. Aside from being a Technology Leader in the Gartner Magic Quadrant, we also adamantly promote an internal culture that truly embraces diversity, inclusion, and equality in the workplace. Having Diversity and Inclusion as part of our core values and beliefs, we are proud to foster an environment where every Extreme employee can thrive because of their differences, not despite them.

Job Summary:
As a key member of the Information Security Operations team, you will be primarily responsible for the monitoring & responding to security events & tickets; investigating root cause analysis of issues and updating and investigating threat feeds and alerts; and management and operation of the SIEM (Security Information and Event Management) solution. In addition to the above tasks, you will support the wider information security and IT teams as appropriate on additional requests.
The successful candidate should have a mind set to challenge existing processes, always looking for better ways to achieve the team and business goals through more efficient or updated processes.
As part of the Information Security Operations Team, this role will include on-call shift work over a weekend.

Job Requirements:

    • The job requirements include but are not limited to the following tasks.
    • Continuously monitor SIEM Console, ServiceNow incident queues and SecOps dashboards for alerts, tickets, and issues.
    • Notify system owners and Escalate security incidents per the incident response escalation procedures.
    • SIEM Alert tuning and configuration.
    • Monitor devices system performance, system resources utilization (disk space, indexed data) and health monitoring.
    • tuning and policy enhancement for SIEM and other SecOp’s tools.
    • Responsible for troubleshooting SIEM and SOC (Security Operations Center) operational related issues.
    • Assist in case of major outbreak or any critical incident related issue.
    • The Incident response team will perform a deep dive incidents analysis by correlating data from the various sources.
    • Respond to all reported security incidents.
    • Follow up with teams for incident closure.
    • Maintain incident records as per the guidelines.
    • Capture and protect the evidence related to an incident.
    • Develop IoC (Indicators of Compromise) related to new threats.
    • Deep-dive investigations including traffic & malware analysis.
    • Perform incident damage assessment.
    • Update stakeholders about security incidents progress.
    • Strong interpersonal communication skills.
    • Good verbal and written communication skills.
    • Ability to analyze problems and create solutions to Maintain confidentiality of information.
    • Must be able to prioritize projects, maintaining a sense of urgency to meet deadlines.
    • Must possess the ability to follow verbal and written directions.
    • Must be a self-starter and able to work well in independently and in Team.
    • Must be able to use critical thinking skills and judgment.
    • Must be able to work positively and professionally with a wide range of personalities.
    • Must be able to accept constructive criticism.

Working Schedule

    • Weekdays between 14:30-23:30 GMT
Extreme Networks, Inc. (EXTR) creates effortless networking experiences that enable all of us to advance. We push the boundaries of technology leveraging the powers of machine learning, artificial intelligence, analytics, and automation. Over 50,000 customers globally trust our end-to-end, cloud-driven networking solutions and rely on our top-rated services and support to accelerate their digital transformation efforts and deliver progress like never before. For more information, visit Extreme's website or follow us on Twitter, LinkedIn, and Facebook.
We encourage people from underrepresented groups to apply. Come Advance with us! In keeping with our values, no employee or applicant will face discrimination/harassment based on race, color, ancestry, national origin, religion, age, gender, marital domestic partner status, sexual orientation, gender identity, disability status, or veteran status. Above and beyond discrimination/harassment based on “protected categories,” Extreme Networks also strives to prevent other, subtler forms of inappropriate behavior (e.g., stereotyping) from ever gaining a foothold in our organization. Whether blatant or hidden, barriers to success have no place at Extreme Networks.
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

View All Jobs

Get notified when new jobs are added by Extreme Network

Similar Jobs

Saviynt - Technical Lead, CloudOps

Saviynt, India (Hybrid)

Smarsh - Director, IT Incident and Problem Management

Smarsh, United States (Hybrid)

Ajmera Infotech - Kubernetes Experts

Ajmera Infotech, India (On-Site)

Keywords Studios (Player Support) - Global Information Security Operations Lead - APAC

Keywords Studios (Player Support), Philippines (Remote)

Riot Games - Competitive Operations III

Riot Games, United States (On-Site)

Rank group - General Manager

Rank group, United Kingdom (On-Site)

Zoox - Senior Manager, L3 Vehicle Operations

Zoox, United States (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Keywords Studios (Player Support) - Global Information Security Specialist

Keywords Studios (Player Support), Philippines (Remote)

PwC - SRC_Cyber Strategy

PwC, India (On-Site)

Twitch - Senior Privacy Manager

Twitch, United States (On-Site)

Illumina - Sr IT Engineer

Illumina, India (On-Site)

Warner Bros Discovery - Operations Engineer I

Warner Bros Discovery, United States (On-Site)

Get notifed when new similar jobs are uploaded

Jobs in Ireland

Virtuos - Production Director

Virtuos, Ireland (On-Site)

The Pokemon Company International - Logistics Analyst

The Pokemon Company International, Ireland (Hybrid)

Playrix - Lead QA Engineer

Playrix, Ireland (Remote)

Interactive Brokers - Deputy MLRO

Interactive Brokers, Ireland (Hybrid)

Larian Studios - DevOps Full-Stack Engineer

Larian Studios, Ireland (On-Site)

Get notifed when new similar jobs are uploaded

Operations Jobs

Futurum Technology  - Junior Legal Specialist

Futurum Technology , Poland (On-Site)

Evolution - French Speaking Game Presenter

Evolution, Belgium (On-Site)

Flow - Booking & Reservations Coordinator

Flow, United States (On-Site)

Netflix - Manager, Internal Communications - Advertising

Netflix, United States (On-Site)

Onward Search - Director of Real Estate Photography

Onward Search, United States (On-Site)

In The Pocket - OFFICE INTERN

In The Pocket, Belgium (On-Site)

ION - Service Manager, Italy

ION, Italy (Hybrid)

Paytm - Associate - Business Operations

Paytm, India (On-Site)

Netflix - Manager, Workplace (Madrid)

Netflix, Spain (On-Site)

CloudHire - Fulfillment Operations Analyst

CloudHire, Philippines (Remote)

Get notifed when new similar jobs are uploaded