Cybersecurity Admin Sec - SIEM Administrator
Tata Consultancy Services · Chennai, Tamil Nadu, India
Tata Consultancy Services · Chennai, Tamil Nadu, India
Greeting From TCS!!! Role: Cybersecurity Admin Sec - SIEM Administrator Experience: 8 to 12 Location: Chennai **SN** **Responsibility of / Expectations from the Role** **1** Conduct proactive threat hunting activities across endpoints, networks, cloud environments, and identity platforms. - Develop and execute threat hunting hypotheses based on threat intelligence, emerging attack trends, and organizational risks. - Identify Indicators of Compromise (IoCs), Indicators of Attack (IoAs), and suspicious behaviors. **2** Analyze security events to detect stealthy, persistent, and advanced threats. - Consume and operationalize cyber threat intelligence feeds. **3** Map adversary tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK framework. - Track emerging threats, vulnerabilities, and attack campaigns. - Document hunting findings, attack patterns, and remediation recommendations. - Present threat hunt outcomes to security leadership and stakeholders. **4** Collaborate with SOC, Incident Response, Vulnerability Management, Red Team, and Security Engineering teams. Develop scripts and automation to improve threat hunting and investigation efficiency. **5** Continuously evaluate and improve security monitoring and detection coverage. Contribute to purple team exercises and detection validation activities. **6** Enhance threat detection capabilities within SIEM, EDR, NDR, and XDR platforms. **7** Develop hunt queries using KQL, SPL, SQL, Sigma, YARA, or similar technologies. **8** Support incident response activities for malware infections, ransomware, insider threats, credential compromise, and APT attacks.