
HCL Technologies
Track Lead - Symantec Email Security, Endpoint Security
RoleSecurity
LevelLead
LocationSholinganallur, India
WorkOn-site
TypeFull-time
Posted1 month ago
About the role
Job Summary
\r\nL3 - Subject Matter Expert (EDR Solutions)\r\n\r\n Job Title: L3 Subject Matter Expert
- EDR Solutions (Crowd Strike)\r\n\r\n Location: Hybrid, 24x7 Shifts\r\n\r\n Job Type: Full-Time (Rotational Shift Model, including weekends and holidays)\r\n\r\n Experience: 6+ years in Endpoint Security Operations\r\n\r\n \r\n\r\n Job Summary:\r\n\r\n As an L3 Subject Matter Expert, you will act as the technical lead for EDR platform management, focusing on policy optimization, platform stability, and advanced troubleshooting across multiple EDR solutions including Crowd Strike. Responsibilities include designing and fine-tuning security policies, optimizing EDR configurations, and ensuring seamless integration with SIEM and SOAR platforms. You will develop custom queries for proactive threat detection, troubleshoot platform-wide performance issues, and ensure regulatory compliance (e.g., PCI DSS, ISO 27001). Additionally, you will conduct root cause analysis (RCA) for platform failures and provide technical leadership to L2 analysts.\r\n\r\n \r\n\r\n Key Responsibilities:\r\n\r\n Act as the escalation point for EDR-related security incidents.\r\n Manage and optimize EDR policies and configurations across multiple platforms.\r\n Conduct deep-dive analysis of alerts, telemetry, and logs from EDR and related security tools.\r\n Ensure EDR integration with SIEM, SOAR, and other security platforms.\r\n Provide recommendations for security hardening and compliance with industry standards.\r\n Act as the SME for EDR solutions and provide technical guidance to L1 and L2 analysts.\r\n Conduct root cause analysis (RCA) and contribute to post-incident review reports.\r\n Collaborate with vendor support teams for issue resolution and product improvements.\r\n Provide technical recommendations to improve endpoint security posture.\r\n Ensure EDR aligns with organizational security policies and regulatory requirements.\r\n Develop detailed reports on incidents, security posture, and threat trends.\r\n Assist in audits and compliance assessments related to endpoint security.\r\n Required Skills & Knowledge:\r\n\r\n Expertise in Crowd Strike.\r\n Strong understanding of EDR, XDR, SIEM, and SOAR.\r\n Strong problem-solving and analytical thinking.\r\n Excellent communication and stakeholder management skills.\r\n Ability to lead technical discussions and mentor junior analysts.\r\n Adaptability to fast-changing security landscapes.\r\n Familiarity with cloud security solutions.\r\n Work Environment & Shift Requirements:\r\n\r\n24x7 support model with rotational shifts (including nights, weekends, and holidays).\r\n Ability to work in a fast-paced, high-pressure Security environment.\r\n Excellent collaboration and coordination with global cybersecurity teams.\r\n Preferred Certifications:\r\n\r\n Crowd Strike Certified Falcon Administrator (CCFA)\r\n
Key Responsibilities
\r\nL3 - Subject Matter Expert (EDR Solutions)\r\n\r\n Job Title: L3 Subject Matter Expert
- EDR Solutions (Crowd Strike)\r\n\r\n Location: Hybrid, 24x7 Shifts\r\n\r\n Job Type: Full-Time (Rotational Shift Model, including weekends and holidays)\r\n\r\n Experience: 6+ years in Endpoint Security Operations\r\n\r\n \r\n\r\n Job Summary:\r\n\r\n As an L3 Subject Matter Expert, you will act as the technical lead for EDR platform management, focusing on policy optimization, platform stability, and advanced troubleshooting across multiple EDR solutions including Crowd Strike. Responsibilities include designing and fine-tuning security policies, optimizing EDR configurations, and ensuring seamless integration with SIEM and SOAR platforms. You will develop custom queries for proactive threat detection, troubleshoot platform-wide performance issues, and ensure regulatory compliance (e.g., PCI DSS, ISO 27001). Additionally, you will conduct root cause analysis (RCA) for platform failures and provide technical leadership to L2 analysts.\r\n\r\n \r\n\r\n Key Responsibilities:\r\n\r\n Act as the escalation point for EDR-related security incidents.\r\n Manage and optimize EDR policies and configurations across multiple platforms.\r\n Conduct deep-dive analysis of alerts, telemetry, and logs from EDR and related security tools.\r\n Ensure EDR integration with SIEM, SOAR, and other security platforms.\r\n Provide recommendations for security hardening and compliance with industry standards.\r\n Act as the SME for EDR solutions and provide technical guidance to L1 and L2 analysts.\r\n Conduct root cause analysis (RCA) and contribute to post-incident review reports.\r\n Collaborate with vendor support teams for issue resolution and product improvements.\r\n Provide technical recommendations to improve endpoint security posture.\r\n Ensure EDR aligns with organizational security policies and regulatory requirements.\r\n Develop detailed reports on incidents, security posture, and threat trends.\r\n Assist in audits and compliance assessments related to endpoint security.\r\n Required Skills & Knowledge:\r\n\r\n Expertise in Crowd Strike.\r\n Strong understanding of EDR, XDR, SIEM, and SOAR.\r\n Strong problem-solving and analytical thinking.\r\n Excellent communication and stakeholder management skills.\r\n Ability to lead technical discussions and mentor junior analysts.\r\n Adaptability to fast-changing security landscapes.\r\n Familiarity with cloud security solutions.\r\n Work Environment & Shift Requirements:\r\n\r\n24x7 support model with rotational shifts (including nights, weekends, and holidays).\r\n Ability to work in a fast-paced, high-pressure Security environment.\r\n Excellent collaboration and coordination with global cybersecurity teams.\r\n Preferred Certifications:\r\n\r\n Crowd Strike Certified Falcon Administrator (CCFA)\r\n
Skill Requirements
\r\nL3 - Subject Matter Expert (EDR Solutions)\r\n\r\n Job Title: L3 Subject Matter Expert
- EDR Solutions (Crowd Strike)\r\n\r\n Location: Hybrid, 24x7 Shifts\r\n\r\n Job Type: Full-Time (Rotational Shift Model, including weekends and holidays)\r\n\r\n Experience: 6+ years in Endpoint Security Operations\r\n\r\n \r\n\r\n Job Summary:\r\n\r\n As an L3 Subject Matter Expert, you will act as the technical lead for EDR platform management, focusing on policy optimization, platform stability, and advanced troubleshooting across multiple EDR solutions including Crowd Strike. Responsibilities include designing and fine-tuning security policies, optimizing EDR configurations, and ensuring seamless integration with SIEM and SOAR platforms. You will develop custom queries for proactive threat detection, troubleshoot platform-wide performance issues, and ensure regulatory compliance (e.g., PCI DSS, ISO 27001). Additionally, you will conduct root cause analysis (RCA) for platform failures and provide technical leadership to L2 analysts.\r\n\r\n \r\n\r\n Key Responsibilities:\r\n\r\n Act as the escalation point for EDR-related security incidents.\r\n Manage and optimize EDR policies and configurations across multiple platforms.\r\n Conduct deep-dive analysis of alerts, telemetry, and logs from EDR and related security tools.\r\n Ensure EDR integration with SIEM, SOAR, and other security platforms.\r\n Provide recommendations for security hardening and compliance with industry standards.\r\n Act as the SME for EDR solutions and provide technical guidance to L1 and L2 analysts.\r\n Conduct root cause analysis (RCA) and contribute to post-incident review reports.\r\n Collaborate with vendor support teams for issue resolution and product improvements.\r\n Provide technical recommendations to improve endpoint security posture.\r\n Ensure EDR aligns with organizational security policies and regulatory requirements.\r\n Develop detailed reports on incidents, security posture, and threat trends.\r\n Assist in audits and compliance assessments related to endpoint security.\r\n Required Skills & Knowledge:\r\n\r\n Expertise in Crowd Strike.\r\n Strong understanding of EDR, XDR, SIEM, and SOAR.\r\n Strong problem-solving and analytical thinking.\r\n Excellent communication and stakeholder management skills.\r\n Ability to lead technical discussions and mentor junior analysts.\r\n Adaptability to fast-changing security landscapes.\r\n Familiarity with cloud security solutions.\r\n Work Environment & Shift Requirements:\r\n\r\n24x7 support model with rotational shifts (including nights, weekends, and holidays).\r\n Ability to work in a fast-paced, high-pressure Security environment.\r\n Excellent collaboration and coordination with global cybersecurity teams.\r\n Preferred Certifications:\r\n\r\n Crowd Strike Certified Falcon Administrator (CCFA)\r\n
Other Requirements
\r\nL3 - Subject Matter Expert (EDR Solutions)\r\n\r\n Job Title: L3 Subject Matter Expert
- EDR Solutions (Crowd Strike)\r\n\r\n Location: Hybrid, 24x7 Shifts\r\n\r\n Job Type: Full-Time (Rotational Shift Model, including weekends and holidays)\r\n\r\n Experience: 6+ years in Endpoint Security Operations\r\n\r\n \r\n\r\n Job Summary:\r\n\r\n As an L3 Subject Matter Expert, you will act as the technical lead for EDR platform management, focusing on policy optimization, platform stability, and advanced troubleshooting across multiple EDR solutions including Crowd Strike. Responsibilities include designing and fine-tuning security policies, optimizing EDR configurations, and ensuring seamless integration with SIEM and SOAR platforms. You will develop custom queries for proactive threat detection, troubleshoot platform-wide performance issues, and ensure regulatory compliance (e.g., PCI DSS, ISO 27001). Additionally, you will conduct root cause analysis (RCA) for platform failures and provide technical leadership to L2 analysts.\r\n\r\n \r\n\r\n Key Responsibilities:\r\n\r\n Act as the escalation point for EDR-related security incidents.\r\n Manage and optimize EDR policies and configurations across multiple platforms.\r\n Conduct deep-dive analysis of alerts, telemetry, and logs from EDR and related security tools.\r\n Ensure EDR integration with SIEM, SOAR, and other security platforms.\r\n Provide recommendations for security hardening and compliance with industry standards.\r\n Act as the SME for EDR solutions and provide technical guidance to L1 and L2 analysts.\r\n Conduct root cause analysis (RCA) and contribute to post-incident review reports.\r\n Collaborate with vendor support teams for issue resolution and product improvements.\r\n Provide technical recommendations to improve endpoint security posture.\r\n Ensure EDR aligns with organizational security policies and regulatory requirements.\r\n Develop detailed reports on incidents, security posture, and threat trends.\r\n Assist in audits and compliance assessments related to endpoint security.\r\n Required Skills & Knowledge:\r\n\r\n Expertise in Crowd Strike.\r\n Strong understanding of EDR, XDR, SIEM, and SOAR.\r\n Strong problem-solving and analytical thinking.\r\n Excellent communication and stakeholder management skills.\r\n Ability to lead technical discussions and mentor junior analysts.\r\n Adaptability to fast-changing security landscapes.\r\n Familiarity with cloud security solutions.\r\n Work Environment & Shift Requirements:\r\n\r\n24x7 support model with rotational shifts (including nights, weekends, and holidays).\r\n Ability to work in a fast-paced, high-pressure Security environment.\r\n Excellent collaboration and coordination with global cybersecurity teams.\r\n Preferred Certifications:\r\n\r\n Crowd Strike Certified Falcon Administrator (CCFA)\r\n
Required skills
Symantec Email Security
Endpoint security
Security operations
Team leadership
About HCL Technologies
Sholinganallur
Headquarters