Security Delivery Lead

10 - 15 years

12 - 16 Lacs

Posted:15 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description


 About The Role  

Project Role :
Security Delivery Lead

Project Role Description :
Leads the implementation and delivery of Security Services projects, leveraging our global delivery capability (method, tools, training, assets).
Must have skills :Endpoint Extended Detection and Response

Good to have skills :
NA
Minimum 7.5 year(s) of experience is required

Educational Qualification :
15 years full time education
Summary:The CrowdStrike EDR Lead is responsible for end-to-end management, optimization, and operational excellence of the CrowdStrike Falcon platform. This role oversees threat detection, response operations, platform administration, policy governance, and cross-team coordination to ensure robust endpoint security across the enterprise environment.
Roles & Responsibilities:
  • Hands-on lead-level experience with CrowdStrike is mandatory.
  • Lead administration and configuration of CrowdStrike Falcon modules (Prevent, Insight, Device Control, Firewall
  • Manage sensor deployment, upgrades, health monitoring, and sensor coverage.
  • Maintain dashboards, alerts, watchlists, and detection rules.
  • Oversee tenant health, license utilization, and configuration baselines.
  • Lead investigation and triage of EDR alerts, detections, and incidents.
  • Perform deep-dive forensic analysis using Falcon Console, RTR (Real-Time Response), and IOC queries.
  • Conduct malware analysis, behavioral analysis, and correlation with threat intelligence.
  • Coordinate containment actions:isolation, killing processes, quarantine, registry modifications, and remediation workflows.
  • Provide guidance to SOC teams on handling medium/high severity alerts.
  • Continuously improve detection logic and identify gaps in coverage.
  • Build custom detection rules (IOCs, YARA rules, behavioral analytics).
  • Create, tune, and maintain prevention, detection, firewall, device control, and identity protection policies.
  • Ensure policies follow least privilege, Zero Trust, and business segmentation needs.
  • Perform periodic audits of configurations, exceptions, and exclusions.
  • Lead policy harmonization across business units, regions, and OS platforms.
  • Integrate CrowdStrike with SIEM, SOAR, ITSM, CMDB, IAM, and vulnerability platforms.
  • Automate response workflows using APIs, scripts, and SOAR integrations.
  • Support log forwarding, event streaming, and real-time monitoring use cases.
  • Serve as the escalation point for complex endpoint security incidents.
  • Partner with SOC, Threat Intel, Forensics, and IT operations teams for coordinated response.
  • Lead root cause analysis (RCA) and prepare actionable recommendations.
  • Assist during red team/purple team exercises using Falcon tools.
  • Generate periodic reports—alert trends, sensor health, incident metrics, compliance status.
  • Support internal/external audits, regulatory compliance, and security assessments.
  • Maintain documentation for policies, procedures, SOPs, and detection logic.
    Professional & Technical Skills:
    Must To Have Skills:
    Endpoint security & EDR technologies, Threat hunting using FQL, Incident response and malware analysis, OS internals (Windows, Linux, macOS).
  • Strong understanding of security frameworks and compliance standards.
  • Strong hands-on experience with CrowdStrike Falcon platform.
  • Ability to analyze security incidents and provide actionable insights.
  • Familiarity with MITRE ATT&CK, SIEM tools (Splunk, QRadar, Sentinel, etc.), API integrations and scripting (Python/PowerShell).
  • Understanding of enterprise IT infrastructure—domain, networking, servers, cloud endpoints.
  • Strong leadership and team coordination abilities.
  • Excellent written and verbal communication.
  • Analytical and problem-solving mindset.
  • Ability to operate under pressure in high-priority incident scenarios.
    Additional Information:
  • The candidate should have minimum 10+ years of experience in cybersecurity with at least 3–5 years in EDR/endpoint security.
  • This position is based at our Gurugram office.
  • A 15 years full time education is required.
  • Hands-on lead-level experience with CrowdStrike Falcon is mandatory.
  • Preferred certifications:CrowdStrike CCFA, CCFR, CCFH, GCIA, GCFA, GCIH, or other IR/EDR certifications.
     Qualification 15 years full time education
  • Mock Interview

    Practice Video Interview with JobPe AI

    Start Python Interview
    cta

    Start Your Job Search Today

    Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

    Job Application AI Bot

    Job Application AI Bot

    Apply to 20+ Portals in one click

    Download Now

    Download the Mobile App

    Instantly access job listings, apply easily, and track applications.

    coding practice

    Enhance Your Python Skills

    Practice Python coding challenges to boost your skills

    Start Practicing Python Now
    Accenture logo
    Accenture

    Professional Services

    Dublin

    RecommendedJobs for You