Incident Responder - L3

10 years

0 Lacs

Posted:1 week ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Job Overview:

As an SQ1 Security Cyber Defense Incident Responder within the Global Cybersecurity Operations Center (CSOC), you will serve as a key technical expert responsible for managing and responding to advanced cyber threats, performing detailed investigations, and strengthening the customer’s overall security posture. This role blends hands-on technical expertise with mentoring responsibilities, focusing on effective threat detection, incident response, and the continuous enhancement of SOC capabilities.


Key Responsibilities:


· Lead investigations into escalated security incidents, providing detailed analysis, containment, and remediation strategies.

· Perform advanced malware analysis, reverse engineering, and develop custom detection signatures to enhance threat visibility.

· Integrate global threat intelligence into SOC operations to proactively identify and mitigate emerging attack techniques.

· Manage and optimize SIEM platforms (e.g., Wazuh, Elastic Search, Datadog, Splunk, QRadar, Microsoft Sentinel) for effective log correlation and alerting.

· Develop and maintain SOC use cases, playbooks, and runbooks to standardize and strengthen incident response processes.

· Mentor and guide junior analysts, fostering knowledge sharing and skill development within the SOC team.

· Stay up to date with the latest cybersecurity trends, threats, and technologies to continuously evolve detection and response strategies.


Required Skills/Technologies/Tools:


Experience:

Certifications:


Technical Expertise:


  • Strong understanding of

    security protocols, cryptography, authentication, and authorization mechanisms

    .
  • Hands-on experience with

    Incident Response

    ,

    Threat Analysis

    , and

    Malware Investigation

    .
  • Experience in

    Antivirus (AV)

    and

    Endpoint Detection & Response (EDR)

    technologies and tools.
  • Proficiency in

    log analysis

    across

    firewalls, proxy servers, operating systems, databases

    , and

    middleware

    —preferably via

    SIEM platforms

    (e.g., Wazuh, Splunk, QRadar, Microsoft Sentinel, Datadog, Elastic).

Analytical Skills:

Tool Proficiency:


  • Automated Incident Response:

    AI-driven systems can automatically prioritize alerts, correlate events, and even execute predefined response actions


Good to have Technologies/Tools

Certifications:

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You