- Location
- Gurgaon, HR, IN
- Type
- Full-time
- Seniority
- Entry
- Closing date
- Today
- Source
- iCIMS
Description
Company Description
Publicis Re:Sources is at the core of Publicis Groupe, the world's largest communications company. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients.
Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 6,000+ employees in over 55 countries. We provide technology solutions and business services, including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management, information security, and global mobility — supporting 110,000+ employees across the Publicis Groupe network. Our people are at the center of everything we do, bringing curiosity, collaboration, and a commitment to excellence to their work every day.
Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at publicisresources.com
Overview
Role Summary
We are seeking a skilled and detail-oriented SOC Analyst to join our Security Operations Center (SOC) team. The ideal candidate should have hands-on experience in EDR monitoring, SIEM analysis, Microsoft 365 security alert investigation, and incident response activities. Experience in phishing investigations, CASB, and DLP alert analysis will be an added advantage.
The role involves monitoring, investigating, correlating, and responding to security alerts across multiple security platforms to ensure the protection of organizational assets, endpoints, cloud environments, and sensitive data.
Key Responsibilities
- Monitor and analyze security alerts from EDR platforms, SIEM solutions, and NGSIEM tools.
- Perform in-depth analysis and correlation of alerts across multiple security technologies.
- Monitor, analyze, and investigate security alerts generated from:
- EDR Platforms
- SIEM / NGSIEM Solutions
- Microsoft 365 Security Portal
- Email Security Platforms
- CASB Solutions
- DLP Technologies
- Escalate critical incidents and provide detailed investigation findings along with actionable remediation recommendations.
- Demonstrate deep technical expertise, analytical thinking, and the ability to lead security investigations.
- Analyze malware, threat vectors, attacker tactics, techniques, and procedures (TTPs).
- Conduct proactive threat hunting across endpoints using behavioral analytics and threat intelligence.
- Develop and execute custom detection rules, queries, and correlation logic.
- Perform log analysis, forensic investigations, and endpoint telemetry analysis.
- Collaborate with cross-functional teams to contain, eradicate, and recover from security incidents.
- Work with multiple technology platforms and interface with:
- Enterprise Infrastructure Services
- IT Architecture Teams
- Enterprise Application Services
- Business and Technology Functions
- Stay current with emerging threats, adversarial techniques, and evolving attack methodologies.
- Quickly understand and analyze complex enterprise environments.
- Translate highly technical requirements into clear, user-friendly, and comprehensive Standard Operating Procedures (SOPs).
- Support investigations related to:
- CASB Alerts
- DLP Alerts
- Microsoft Defender Security Alerts
- Phishing Emails and Email Threats
- Assist in securing cloud and hybrid environments across AWS, Azure, and GCP.
Required Skills & Qualifications
Technical Skills
- EDR Monitoring and Investigation
- SIEM / NGSIEM Monitoring and Analysis
- Microsoft 365 Security Alert Investigation
- Incident Analysis and Response
- Threat Hunting
- Threat Intelligence
- Malware Analysis
- Log Analysis and Digital Forensics
- Endpoint Security and Telemetry Analysis
- Email Security Monitoring
- CASB and DLP Alert Investigation
- Microsoft Defender Security Solutions
- Cloud Security (AWS, Azure, GCP)
- Hybrid Environment Security Monitoring
Experience
- 5+ years of overall experience in the Cybersecurity domain.
- 4+ years of hands-on experience as a SOC Analyst.
- Experience with Python and PowerShell scripting for security automation is preferred.
- Experience in:
- Phishing Analysis
- Threat Analysis
- CASB Investigations
- DLP Investigations
Soft Skills
- Strong analytical and problem-solving skills.
- Excellent communication and documentation abilities.
- Ability to lead investigations and work under pressure.
- Strong collaboration and stakeholder management skills.
Education
- Full-time Bachelor’s or Master’s Degree in Computer Science, Information Security, Cybersecurity, Information Technology, or a related field.
Preferred Certifications
- CEH (Certified Ethical Hacker)
- CompTIA Security+
- CHFI (Computer Hacking Forensic Investigator)
- CCFR (Certified Cybercrime First Responder)
- CCFA (Certified Cyber Forensics Analyst)
- CCFH (Certified Cyber Forensics & Hacking)
Experience Requirement
Total Experience: 5+ Years in CybersecurityRelevant SOC Experience: 4+ Years