Job Summary
Administer and maintain EDR platforms (e.g., CrowdStrike, SentinelOne, Microsoft Defender for Endpoint, etc.)\\\\r\\\\nMonitor endpoint security alerts and work with the SOC team to investigate and remediate threats.\\\\r\\\\nConfigure and tune detection rules, policies, and response playbooks in the EDR system.\\\\r\\\\nEnsure proper deployment and coverage across all endpoints, including desktops, laptops, and servers.\\\\r\\\\nCollaborate with IT and security teams to respond to endpoint-related incidents.\\\\r\\\\nGenerate reports and metrics for compliance and threat analysis.\\\\r\\\\nManage software upgrades and patching of the EDR system.\\\\r\\\\nSupport forensic investigations and root cause analysis.\\\\r\\\\nMaintain up-to-date documentation, procedures, and security baselines.
Key Responsibilities
2. To provide support for complex incidents, escalated by analysts, perform root cause analysis, and implement solutions to resolve technical & security issues.
3. To work on value adding activities such Knowledge base update & management, training freshers, coaching analyst.
4. To resolve complex tickets within agreed SLAs and collaborate with other support teams to ensure seamless operations & security posture.
5. To ensure positive customer experience and CSAT through First Call Resolution , minimum rejected resolutions / reopen Cases and mitigating security threats.
Skill Requirements
Primary : CrowdStrike expert\r\nSecondary : Microsoft Defender for Endpoint, and CASB\r\nGood Communication Skill \r\n