Security Services Support Engineer, Managed Detection And Response Services , Ibm Security
CurrentI perform implementation, monitoring, analysis and troubleshooting of various software services in network security. I specialize in CrowdStrike, Carbon Black, CyberReason, Microsoft Defender ATP. QRadar, and Guardium. I configure policies and rules related to threat detection and mitigation to detect the tactics, techniques and procedures of known attacks.Roles & Responsibilities: - I work closely with the customer and other related security support teams to monitor and work towards remediating identified vulnerabilities and/ or policy modifications. - I conduct management and monitoring of database activity monitoring tools, Host and network security and Endpoint Security tools and ensure its smooth functioning. - I am responsible for incident reporting of alerts, ensuring reporting and root cause analysis (RCA) of the incident. - I provide Interaction and guidance on security related issues to the global teams. - I work along with partners, vendors, bodies and associations to get quick responses in case of any emergency related to security services delivery and support. - I take initiatives in terms of strengthening the security and have a more proactive approach towards security threat detection and prevention.