Cyber Security Analyst
Current• Follow detailed operational processes and procedures to appropriately analyze, escalate, and assist in remediation of security incidents• Liaise with the Company's Security Operation Center to respond to emerging incidents in a timely manner.• Perform analysis of log files of Firewall, IPS, IDS, Server and Proxy via Splunk SIEM solution and also Sophos XDR.• Analyze PCAP files for Malware analysis and find details of the infected hosts and write IOC on executive summary reports.• Provide analysis and containment of compromised systems and mitigate root causes.• Assist in performing periodic access reviews/inactivity reviews.• Identify, track, and investigate high-priority threat campaigns, malicious actors with the interest, capability and TTPs (Techniques, Tactics and Procedures).• Analyze and review escalated cases until closure. This includes investigating and recommending appropriate corrective actions for cybersecurity incidents.• Perform post-modern analysis on logs, traffic flows, and phishing activities to identify malicious actors.