Primary Skills
Role Overview : Responsible for continuous 24×7 monitoring, detection, investigation, escalation, and resolution of security incidents across UBP's in-scope security environment, ensuring SLA adherence, regulatory compliance, and operational stability.
Key Responsibilities
- 24×7 real-time monitoring of security alerts
- Incident classification, investigation, containment, and resolution
- Ticket handling using Remedy and ServiceNow
- Timely escalation as per defined escalation matrix
- Coordination with internal teams and vendors
- Participation in incident bridges and shift handovers
- Contribution to RCA and corrective actions
- Technical Skills
- Basic understanding of firewall and network security concepts (FortiGate, Palo Alto)
- Hands-on experience with security monitoring tools and dashboards
- Ability to analyze security alerts, logs, and events
- Working knowledge of cloud security fundamentals (AWS and Azure)
- Familiarity with SIEM/SOC operations and alert handling
- Experience using Remedy and ServiceNow for incident and ticket management
- Operational Skills
- 24×7 shift-based operations and incident handling
- Incident classification, prioritization, and escalation
- Accurate documentation and ticket updates
- Adherence to SOPs, SLAs, and escalation matrices
- Behavioral Skills
- Strong communication skills during incidents
- Ability to work under pressure in a live production environment
- Team collaboration and willingness to learn
- Attention to detail and compliance mindset
Required Skills & Qualifications
Strong knowledge of:
- BSP regulatory framework (Outsourcing, Operational Resilience, IT Risk)
- IT Governance, Risk Management, and Compliance frameworks
- Vendor governance and third‑party risk management
Experience
- 3–5 years of experience in GRC, IT Risk, Compliance, Audit, or Cybersecurity.
- Experience in BFSI or similar highly regulated industry preferred.
Tools / skills required,
24/7 Tools
- FortiAnalyzer/Fortigate - checking of logs/traffic
- Palo Alto Panorama - blocking, checking of logs/traffic
- F5 BIG‑IP Advanced WAF used for traffic swing & toggling of nodes
- BeyondTrust - account management
- Akamai - blocking & monitoring of traffic
- Nagios - security tools/host monitoring
- LDAP - account management
- Microsoft Azure - account management
- Active Directory - account management
- Microsoft 365 - account management
- EPO/MacAfee - old tools for usb & pcidss
- Trellix - for usb & pcidss
- CrowdStrike - VA scanning
- Tenable - VA scanning
- Qualys - previously used for VA scanning
- Sygnia/Velocity - security tools alerts
- Remedy/ServiceNow - ticketing system
- Amazon SES - for health check monitoring, read only
- Bitly - qr & url shortening