Incident Response- L3

6 years

12 - 24 Lacs

Posted:1 month ago| Platform: GlassDoor logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Role Overview: The Cybersecurity Specialist is responsible for the Incident Response Activity. This role will help develop innovative and effective procedures for the Security Operations Center to enhance response time, coordination, and incident response operations, and built a world class team of Cyber Security Incident Response. Train staff on security operations concepts, develop incident response management process, write correlations, and integrate intelligence data into monitoring and operations activities.
Roles & Responsibilities: This person will support the Information Security department's goals and objectives by addressing escalations, and the evaluation of technology controls providing key insight and research in new threats, vulnerabilities, and mitigation techniques. In this role they will take the lead in proposing solutions to improve or reduce risk exposure from the overall threat landscape and improve the resilience and readiness of security technologies and processes which ensure the confidentiality, integrity, and availability of the organization's assets, information, data, and IT services in an efficient manner.

  • Develop and execute security incident response plans and cyber forensic investigations for investigating all reported security incidents.
  • Develop comprehensive incident reports and investigation summaries.
  • Develop and collect intelligence to proactively detect and identify high-confidence threats to the brand, service infrastructure and enterprise users and systems.
  • Responsible for analyzing/validating security control requirements and tuning, defining the mitigation rules, scripting, and performing changes or mitigating attacks, and assisting with troubleshooting support related to any issues which may arise from security detection or protection technologies.
  • Assist with reviewing existing tools, applications, and processes to help strengthen and optimize current security capabilities, as well as identifying any gaps or technical solutions to further enhance the team's effectiveness.
  • Communicate problems and solutions verbally and in written form to peers and management.
  • Compliance and governance: help achieve compliance, identify compliance initiatives, and promote appropriate security policies.
  • Lead analysis and review security events for anomalous activity, collaborate with respective peer groups to take appropriate action to safeguard company information assets against current and foreseen threats.
  • Lead the exploration of practical security solutions to address emerging threats and compliance requirements, including design and implementation of recommended solutions.
  • Preferred Experience/Skills:
  • 6+ years' experience with Incident Response
  • Experience in a 24x7 global enterprise, preferably in the healthcare industry.
  • SANS GIAC certifications
  • Experience managing or maintaining malware analysis sandboxes.
  • Knowledge of malware analysis tools
  • Python and/or PowerShell scripting
  • Knowledge of LogRhythm products or other SIEM tools
  • Excellent communication and interpersonal skills Revised: 8/2022 1 Incident Response
  • Understanding of the business and the ability to assess and address risk without negatively impacting the business.
  • Ability to identify and analyze malicious code.
  • In depth understanding of Windows operating systems
  • Ability to evaluate exploit code in relationship to existing security controls.
  • Strong knowledge of networking technologies (TCP/IP, HTTP, SMTP, etc.)
  • Strong knowledge of web application vulnerabilities and solutions
  • Strong knowledge of Windows operating systems
  • Strong knowledge of the functions of various security infrastructure, including firewalls, Intrusion Prevention Systems, Proxy Servers, Security Event Managers, VPNs
  • General knowledge of network and systems forensics.
  • In depth knowledge of incident response processes and procedures.
  • Ability to provide 24-hour on-call support on a rotating basis.Work Location: Bangalore/ Hyderabad

Job Types: Full-time, Permanent

Pay: ₹1,200,000.00 - ₹2,400,000.00 per year

Benefits:

  • Health insurance

Application Question(s):

  • What is your current CTC and expected CTC?
  • The job location is at Hyderabad. are you willing to relocate?

Experience:

  • total work: 6 years (Required)

Work Location: In person

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now

RecommendedJobs for You