Get alerts for new jobs matching your selected skills, preferred locations, and experience range. Manage Job Alerts
5.0 years
0 Lacs
Jaipur, Rajasthan, India
On-site
We are looking for a highly skilled Information Security Manager to lead and implement ISO 27001 compliance, cybersecurity strategies, and risk management within our organization. The ideal candidate will establish and maintain security policies, manage information security risks, and ensure compliance with regulatory standards like SOC2, GDPR, and NIST frameworks. Key Responsibilities ISO 27001 Implementation & Compliance : Develop, implement, and maintain an Information Security Management System (ISMS) aligned with ISO 27001 standards. Conduct ISO 27001 gap analysis, risk assessments, and audits to ensure compliance. Define and enforce information security policies, procedures, and controls to safeguard data integrity, confidentiality, and availability. Drive ISO 27001 certification efforts, ensuring successful audits and continuous improvements. Lead security awareness training programs for employees to enhance the organization's security posture. Cybersecurity Strategy & Risk Management Develop and implement a cybersecurity strategy to protect against threats, vulnerabilities, and attacks. Conduct regular penetration testing, vulnerability assessments, and security audits to identify and mitigate risks. Implement Zero Trust architecture, access control mechanisms, and security best practices across IT infrastructure. Monitor threat intelligence, security incidents, and cyber threats, responding with effective mitigation strategies. Ensure security of cloud infrastructure (AWS, Azure, GCP) by enforcing IAM policies, encryption, and secure configurations. Establish and manage a Security Incident Response Plan (SIRP) for rapid threat detection and mitigation. Regulatory Compliance & Governance Ensure compliance with ISO 27001, SOC2, GDPR, NIST, PCI-DSS, and other industry security frameworks. Collaborate with internal teams to align security policies with business operations and regulatory requirements. Work with external auditors and security consultants to maintain compliance certifications and regulatory audits. Develop and maintain security metrics, dashboards, and reports for leadership and regulatory bodies. Security Operations & Monitoring Oversee SIEM (Security Information and Event Management) solutions for real-time threat detection. Implement and manage Intrusion Detection & Prevention Systems (IDS/IPS), firewalls, and endpoint security solutions. Develop and enforce incident response, disaster recovery, and business continuity plans. Ensure data protection, encryption, and secure backup strategies are in place for all critical systems. Preferred Experience & Qualifications 5+ years of experience in information security, cybersecurity, or compliance roles. Strong expertise in ISO 27001 implementation, auditing, and certification. Hands-on experience with security risk assessments, vulnerability management, and threat modeling. Deep understanding of cybersecurity frameworks (SOC2, NIST, CIS, GDPR, PCI-DSS). Experience with SIEM solutions (Splunk, ELK, QRadar, or similar) for security monitoring. Knowledge of firewalls, IDS/IPS, endpoint protection, and cloud security best practices. Strong understanding of IAM, network security, encryption, and access control policies. Certifications like CISM, CISSP, CISA, CEH, ISO 27001 Lead Auditor/Implementer are highly preferred. Strong problem-solving, communication, and stakeholder management skills. (ref:hirist.tech) Show more Show less
Posted 1 week ago
5.0 years
0 Lacs
Thiruvananthapuram, Kerala, India
On-site
The world's top banks use Zafin's integrated platform to drive transformative customer value. Powered by an innovative AI-powered architecture, Zafin's platform seamlessly unifies data from across the enterprise to accelerate product and pricing innovation, automate deal management and billing, and create personalized customer offerings that drive expansion and loyalty. Zafin empowers banks to drive sustainable growth, strengthen their market position, and define the future of banking centered around customer value. Qualifications Required . Bachelor's or Master's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Equivalent professional experience is acceptable. Minimum 5+ years of experience in Azure cloud operations, with a demonstrated focus on security and vulnerability management. Proven track record of managing and securing large-scale Azure environments in production. Hands-on experience with vulnerability scanning, remediation, and compliance in enterprise cloud environments. Extensive experience in responding to and managing security incidents and threat mitigation in Azure. Technical Skills Azure Expertise : In-depth knowledge of Azure services, including but not limited to: Azure Security Center Azure Defender Azure Key Vault Azure Policy Azure Sentinel (SIEM) Azure Active Directory (Azure AD) Security and Vulnerability Tools : Proficiency with vulnerability scanning and management tools like Qualys, Tenable Nessus, or Rapid7. Experience with Azure-native security tools for threat detection and remediation. Infrastructure Hardening : Strong knowledge of security best practices for securing virtual machines, storage accounts, AKS, and network components. Familiarity with zero-trust architecture principles and implementation in Azure. Automation & Scripting : Advanced skills in scripting languages such as PowerShell, Azure CLI, Python, or other automation tools to remediate vulnerabilities and improve operational efficiency. Experience in integrating security checks into CI/CD pipelines. Certifications (Preferred or Mandatory) Azure Cloud Certifications: Microsoft Certified: Azure Administrator Associate (AZ-104) Microsoft Certified: Azure Security Engineer Associate (AZ-500) Microsoft Certified: Cybersecurity Architect Expert (SC-100) Security Certifications: Certified Information Systems Security Professional (CISSP) Certified Ethical Hacker (CEH) CompTIA Security+ GIAC certifications (e.g., GCIH, GSEC, or GCED) Other Requirements Familiarity with regulatory and compliance standards, such as ISO 27001, SOC 2, GDPR, or HIPAA. Experience in performing and supporting audits related to cloud security. Proven ability to stay current with evolving cloud and cybersecurity trends. What's in it for you Joining our team means being part of a culture that values diversity, teamwork, and high-quality work. We offer competitive salaries, annual bonus potential, generous paid time off, paid volunteering days, wellness benefits, and robust opportunities for professional growth and career advancement. Want to learn more about what you can look forward to during your career with us? Visit our careers site and our openings: zafin.com/careers Zafin welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process. Zafin is committed to protecting the privacy and security of the personal information collected from all applicants throughout the recruitment process. The methods by which Zafin contains uses, stores, handles, retains, or discloses applicant information can be accessed by reviewing Zafin's privacy policy at https://zafin.com/privacy-notice/. By submitting a job application, you confirm that you agree to the processing of your personal data by Zafin described in the candidate privacy notice. Show more Show less
Posted 1 week ago
7.0 years
0 Lacs
Thiruvananthapuram, Kerala, India
On-site
The world's top banks use Zafin's integrated platform to drive transformative customer value. Powered by an innovative AI-powered architecture, Zafin's platform seamlessly unifies data from across the enterprise to accelerate product and pricing innovation, automate deal management and billing, and create personalized customer offerings that drive expansion and loyalty. Zafin empowers banks to drive sustainable growth, strengthen their market position, and define the future of banking centered around customer value. Job Mandate Zafin is seeking an experienced Cybersecurity Lead to handle cybersecurity operations and to ensure that Zafin maintains the highest standards of cybersecurity and protection. This pivotal role includes management of our 24/7 Security Operations, stakeholder management & liaison with internal teams and external partners/vendors. Job Details % of Time Major Responsibilities: Security architecture : Support the design and implementation of secure IT architecture and systems. Develop, implement, and refine proactive security tactics and methods to counter emerging threats. Risk management: Contribute to comprehensive cyber risk management framework that aligns with industry standards (e.g., NIST, ISO 27001) and incorporates the unique requirements of clients. Continuously identify, assess, and mitigate cyber risk exposure; implement and maintain robust risk management practices. Leadership of the SOC : Manage the 24/7 SOC and its team of skilled technical staff. Oversee security operations including continuous security monitoring, incident response and remediation and the use of threat intelligence to ensure timely detection and mitigation of cyber threats, risks and vulnerabilities. ------------------------------------------------ Stakeholder engagement: Serve as the primary cybersecurity contact for all cybersecurity operations. Provide advice and support cybersecurity matters and ensure a high-level satisfaction. ------------------------------------------------ Cybersecurity strategy: Contribute to strategic planning and development of the company's cybersecurity services. Stay abreast of the regulatory environment and emerging cybersecurity trends, threats and technologies. Compliance and governance : Ensure compliance with relevant cyber security regulations and standards (e.g., GDPR, PIPEDA, MFIPPA, PCI-DSS) from tooling perspective. Conduct regular vulnerability assessments, and compliance audits. Vendor management: Manage relationships with cybersecurity vendors and service providers. Ensure the quality and effectiveness of vendor products and services. Continuous improvement: Promote a culture of innovation; identify and implement state-of-the-art security tools and techniques which will adapt to changes in the cyber threat landscape and technological advancements; provide continuous staff training and skill improvement. 40% 40% 10% 20% 10% Key Performance Indicators (KPIs): Security Incidents- Resolution time Achieving Project Milestones in time Timely completion of pro-active cybersecurity tasks (daily, weekly, monthly) Reduction of False positives Working Conditions: Full time, Hybrid Minimum Required Technical Skills / Qualifications Knowledge, Education, Training Bachelor's degree in computer science, Information Technology, Cybersecurity, or related field. Master's degree preferred. Experience Minimum 7 years in Information Technology management out of which 5 years should consist of hands-on experience in cybersecurity, in a leadership role, preferably managing a SOC/ Security Operations team. Proficiency in security technologies, including SIEM, firewalls, IDS/IPS, endpoint protection, and vulnerability management tools. Familiarity with cloud security in platforms such as AWS, Azure, or Google Cloud. Strong knowledge of cybersecurity frameworks Knowledge of DevSecOps practices and integration of security into development pipelines. Certifications Must to Have : Microsoft/ Azure Security Certifications: SC-200/500, AZ-500, Good to have : CISSP, CISM, CEH, or equivalent; relevant vendor certifications. Azure/ Microsoft 365 Experience working on Microsoft 365 and Azure infrastructure is mandatory Minimum Required Behavioural / Soft Skills Communication Interpersonal, communication and presentation skills to effectively engage and build trust with clients and team members. Leadership Good Experience in technical leadership People Management Good exposure with people management/ stakeholder management What's in it for you Joining our team means being part of a culture that values diversity, teamwork, and high-quality work. We offer competitive salaries, annual bonus potential, generous paid time off, paid volunteering days, wellness benefits, and robust opportunities for professional growth and career advancement. Want to learn more about what you can look forward to during your career with us? Visit our careers site and our openings: zafin.com/careers Zafin welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process. Zafin is committed to protecting the privacy and security of the personal information collected from all applicants throughout the recruitment process. The methods by which Zafin contains uses, stores, handles, retains, or discloses applicant information can be accessed by reviewing Zafin's privacy policy at https://zafin.com/privacy-notice/. By submitting a job application, you confirm that you agree to the processing of your personal data by Zafin described in the candidate privacy notice. Show more Show less
Posted 1 week ago
12.0 years
0 Lacs
Gurgaon, Haryana, India
On-site
Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Managed Cloud Security Services Good to have skills : NA Minimum 12 Year(s) Of Experience Is Required Educational Qualification : 15 years full time education Summary: As a Security Architect, you will define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. You will also document the implementation of cloud security controls and transition to cloud security-managed operations. Roles & Responsibilities: - Expected to be an SME. - Collaborate and manage the team to perform. - Responsible for team decisions. - Engage with multiple teams and contribute on key decisions. - Expected to provide solutions to problems that apply across multiple teams. - Develop and implement security strategies. - Conduct security assessments and audits. - Stay updated on the latest security trends and technologies. Professional & Technical Skills: - Must To Have Skills: Proficiency in Managed Cloud Security Services.Cloud Security, SOC , SIEM, SOAR , MxDR, Sentinel , Team management , Financial Planning & Tracking, SDM Role with strong communications with Clinet & Onshore , Good to have skills : Strong Communications , Transition , Helping with the Delivery Solutioning for Delivery Reviews , Understanding on implementation on MxDR, SOC, MDE, SOAR - Strong understanding of cloud security principles. - Experience in designing and implementing security solutions. - Knowledge of security compliance standards. - Hands-on experience with security tools and technologies. Additional Information: - The candidate should have a minimum of 12 years of experience in Managed Cloud Security Services. - This position is based at our Gurugram office. - A 15 years full time education is required. Show more Show less
Posted 1 week ago
1.0 - 6.0 years
8 - 15 Lacs
Kochi
Work from Office
CompTIA Security+ Microsoft SC-900 Basic QRadar/Sentinel/LinkShadow/Darktrace training
Posted 1 week ago
3.0 - 5.0 years
6 - 9 Lacs
Navi Mumbai
Work from Office
Title The Information Security team defends the company’s digital infrastructure by designing, implementing, and improving the company’s cybersecurity architecture. This is a critical role responsible for protecting infrastructure, cloud, edge devices, and data against unauthorized use, modification, exfiltration, or damage. This role identifies threats, manages projects and engineers solutions that impact the entire company. An ideal candidate for this role is technical, dedicated to learning new things, security-minded, strong initiative, and able to manage projects autonomously. Overview Medpace is a full-service clinical research organization (CRO). We provide Phase I-IV clinical development services to the biotechnology, pharmaceutical and medical device industries. Our mission is to accelerate the global development of safe and effective medical therapeutics through its scientific and disciplined approach. We leverage local regulatory and therapeutic expertise across all major areas including oncology, cardiology, metabolic disease, endocrinology, central nervous system, anti-viral and anti-infective. Headquartered in Cincinnati, Ohio, employing more than 5,000 people across 40+ countries. Responsibilities Engineer security solutions without oversight and collaborate with multiple departments; Analyze security systems and seek improvements on a continuous basis; Research vulnerabilities, perform vulnerability scanning, and mitigate threats; Develop security best practices and policies for the organization; Document new processes, cross-train coworkers, and assist employees on security-related matters; Provide security awareness training and testing for employees to verify proper security protocols are being followed; Staying current with cybersecurity knowledge by participating in educational opportunities, reading professional publications, and participating in professional organizations; Performing cyber security incident response, and remediation activities; and Facilitate access reviews of company data and revoke inappropriate/overprovisioned access in order to drive least privilege access. Qualifications Require at least a bachelor’s degree preferably in Information Technology; Require a minimum of at least 2 years of experience in implementing Information Security solutions; Understanding of security best practices and how to implement them at a business-wide level; Experience with managing, configuring, and deploying enterprise-grade security solutions in some of the following: SIEM Privileged Access Management/Identity Access Management/Multifactor Authentication Endpoint Detection & Response Network Access Control Cloud based architecture such as Azure/AWS Active Directory Soft skills including excellent communication skills, critical thinking skills with the ability to solve problems as they arise, and ability to prioritize projects; and Basic scripting skills, such as PowerShell/Python scripting. Nice to have: Experience with vulnerability assessment tools such as Nessus and Tenable; Experience with enterprise web proxy solutions, web filters, and VPN; Experience with email security solutions; Experience with firewall and network architecture; Experience with administrating Windows environment including GPO and servers; Previous employment or experience in a highly regulated industry such as healthcare, financial, or defense experience with standards such as ISO, NIST, HIPAA, GDPR, SOC Type 2, etc; and Auditing and policy-writing experience. People. Purpose. Passion. Make a Difference Tomorrow. Join Us Today. The work we’ve done over the past 30+ years has positively impacted the lives of countless patients and families who face hundreds of diseases across all key therapeutic areas. The work we do today will improve the lives of people living with illness and disease in the future. Medpace Perks Flexible work environment Competitive compensation and benefits package Competitive PTO packages Structured career paths with opportunities for professional growth Company-sponsored employee appreciation events Employee health and wellness initiatives Awards Recognized by Forbes as one of America's Most Successful Midsize Companies in 2021, 2022, 2023 and 2024 Continually recognized with CRO Leadership Awards from Life Science Leader magazine based on expertise, quality, capabilities, reliability, and compatibility What to Expect Next A Medpace team member will review your qualifications and, if interested, you will be contacted with details for next steps.
Posted 1 week ago
7.0 years
0 Lacs
Mumbai Metropolitan Region
On-site
Kyndryl IT Bengaluru, Karnataka, India Hyderabad, Telangana, India Chennai, Tamil Nadu, India Mumbai, Maharashtra, India Noida, Uttar Pradesh, India Pune, Maharashtra, India Gurugram, Haryana, India Posted on Jun 10, 2025 Apply now Who We Are At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The Role Infrastructure Architects are the key link between Kyndryl and our clients. You’re in a technical leadership role, uniting and guiding stakeholders from clients, governance, and project executives to delivery and sometimes even the vendors who work with the client. You’ll be there from the start of a project — understanding what’s needed and figuring out the best technical solution. And you’ll be there at the finish, delivering the right product on time and within budget. As an Infrastructure Architect, you’ll draw upon the full breadth of your talent and experience. This is a technical leadership role, so we want you to bring your vision, knowledge, and leadership to each project. To the client, you’re the subject matter expert – consulting early, gathering inputs, understanding what they need from our solution. You define what Kyndryl can do to meet this solution. You design the best solution for the job. And finally, you’re the tech leader for implementation. At Kyndryl we support all major cloud platforms, so you’ll get the chance to use everything you know – and then some. You’ll also become expert at knowing when and how to call on other SMEs outside your wheelhouse. Thinking your way around pre-existing limitations will grow your creativity and flexibility. You’ll learn a lot here, and if you want to work toward certifications there are plenty of opportunities.The rewards for all this are many. You’ll get to influence, create, and deliver something from start to finish. You will have the power to delight our clients. Your future at Kyndryl This role opens the door to many career paths, both vertical and horizontal, and there may be opportunity to travel. It’s a great chance for database administrators or other techs to break into the cloud. It’s also a solid path to become enterprise or chief architect or a distinguished engineer! Whatever you see for yourself, you’ll find the opportunity here. Who You Are You’re good at what you do and possess the required experience to prove it. However, equally as important – you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused – someone who prioritizes customer success in their work. And finally, you’re open and borderless – naturally inclusive in how you work with others. Required Technical And Professional Experience 7+ years of IT and security experience, with at least 3+ years in cloud security architecture, focused on Azure. Strong hands-on experience in: Microsoft Sentinel for SIEM/SOAR use cases EDR and endpoint protection tools: Microsoft Defender for Endpoint, CrowdStrike, etc. IDPS technologies and traffic inspection within Azure SASE platform implementations (Zscaler, Prisma Access, Cisco Umbrella, etc.) Azure-native security tools: Azure Firewall, Defender for Cloud, Azure AD, Key Vault, Azure Policy, Microsoft Purview Infrastructure as Code and automation for secure deployments (Terraform, Bicep, ARM) Secure cloud networking: NSGs, ASGs, WAF, Application Gateway, Private Link Solid understanding of Zero Trust Architecture, SASE principles, and end-to-end cloud security controls. Experience integrating SIEM with identity, endpoint, and network telemetry for threat correlation and response. Strong documentation skills (HLD, LLD, runbooks, security architectures) and ability to communicate with technical and business stakeholders. Lead the deployment and integration of third-party SASE platforms such as Zscaler, Palo Alto Prisma Access, Cisco Umbrella, Fortinet, Netskope, etc. Architect and enforce Zero Trust security models using Azure AD, Conditional Access, and Privileged Identity Management (PIM). Implement and manage Microsoft Sentinel for SIEM, log collection, real-time alerting, SOAR automation, and advanced threat analytics. Design and deploy Intrusion Detection & Prevention Systems (IDPS) in Azure environments and integrate them into the security event lifecycle. Deploy and manage Endpoint Detection and Response (EDR) platforms such as Microsoft Defender for Endpoint, SentinelOne, or CrowdStrike, integrated with Azure Security Center and Sentinel. Preferred Technical And Professional Experience Microsoft Certifications: SC-100: Cybersecurity Architect Expert SC-200: Security Operations Analyst Associate AZ-500: Azure Security Engineer Associate Other Industry Certifications: CISSP, CCSP, PCNSE (Palo Alto), Zscaler ZCCP, Cisco CyberOps Familiarity with secure DevOps practices and DevSecOps tooling Exposure to SIEM tuning, threat hunting, and incident response in cloud-native environments Being You Diversity is a whole lot more than what we look like or where we come from, it’s how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we’re not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you – and everyone next to you – the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That’s the Kyndryl Way. What You Can Expect With state-of-the-art resources and Fortune 100 clients, every day is an opportunity to innovate, build new capabilities, new relationships, new processes, and new value. Kyndryl cares about your well-being and prides itself on offering benefits that give you choice, reflect the diversity of our employees and support you and your family through the moments that matter – wherever you are in your life journey. Our employee learning programs give you access to the best learning in the industry to receive certifications, including Microsoft, Google, Amazon, Skillsoft, and many more. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations. At Kyndryl, we invest heavily in you, we want you to succeed so that together, we will all succeed. Get Referred! If you know someone that works at Kyndryl, when asked ‘How Did You Hear About Us’ during the application process, select ‘Employee Referral’ and enter your contact's Kyndryl email address. Apply now See more open positions at Kyndryl Show more Show less
Posted 1 week ago
3.0 - 7.0 years
2 - 6 Lacs
Pune
Work from Office
About the Role We are seeking a skilled SIEM Administrator to manage and optimize different SIEM solutions. The ideal candidate will be responsible for system administration, log integration, troubleshooting, Deployment, Implementation and maintaining security posture for the organization. Key Responsibilities SIEM Administration: Install, configure, maintain, and upgrade SIEM components. (IBM Qradar SIEM, DNIF, Splunk & Securonix). Log Management: Onboard, parse, and normalize logs from various data sources (firewalls, servers, databases, applications, etc.) Custom log source integration and parser development. System Monitoring & Troubleshooting: Ensure SIEM tools are functioning optimally. Monitor & regular health check perform for SIEM tools. troubleshoot system errors and resolve performance issues. Conduct regular performance tuning and capacity planning Perform root cause analysis for system failures & performance issues. Optimize system performance and storage management for SIEM Integration & Automation : Integrate third-party security tools (firewalls, EDR, threat intelligence feeds) with SIEM. Compliance & Audits: Ensure log retention policies comply with regulatory standards. Develop & enforce SIEM access controls & user roles/permissions. Documentation & Training: Document system configurations, SOP’s & troubleshooting documents. Prepare monthly/ weekly reports and PPT, onboarding documentation as per business/ client requirement. Dashboard & Report Development: Create & maintain custom dashboards & reports Optimize searches & reports for performance and efficiency. Other Knowledge Base: Hands on experience with Linux OS & Windows OS Basic to mediator level knowledge in networking skills Should be familiar with Azure, AWS or GCP products Required Skills & Qualifications: B.E/B.Tech degree in computer science, Cybersecurity, or related field (preferred). 1-3 years experience as Soc Admin Strong knowledge of SIEM architecture, log sources, and event correlation. Proficiency in log management, regular expressions, and network security concepts. Experience integrating SIEM with various security tools (firewalls, IDS/IPS, antivirus, etc.). Scripting knowledge (Python, Bash, or PowerShell) is a plus. Training or Certificate on Splunk or IBM Qradar Preferred. Soft Skills: Strong analytical and problem-solving skills. Excellent communication and documentation abilities. Ability to work independently and in a team. Must Have Skills: Hands-on experience with SIEM tools like IBM QRadar, Splunk, Securonix, LogRhythm, Microsoft Sentinel, DNIF etc. Proficiency in IBM Qradar & Splunk administration Configuring, maintaining, and troubleshooting SIEM solutions. Log source integration, parsing, and normalization. Strong knowledge of TCP/IP, DNS, HTTP, SMTP, FTP, VPNs, proxies, and firewall rules. Familiarity with Linux and Windows system administration.
Posted 1 week ago
5.0 - 7.0 years
7 - 10 Lacs
Pune
Remote
What You'll Do Avalara is looking for Detection Engineer to join the Detection and Response Team. The ideal candidate will have a track record in incident response, demonstrating advanced technical expertise and leadership capabilities. Your role will be of an Incident Response Analyst, you will help protect Avalara. This includes detecting, investigating, and mitigating security incidents. You will also be a key contributor in improving our incident response capabilities. You will report to Security leadership at Avalara. This is a remote position. What Your Responsibilities Will Be You will perform incident response activities and workstreams as the Incident Response Senior Analyst. You will monitor security systems, including Intrusion Detection Systems (IDS), Endpoint Detection and Response (EDR) platforms, software firewalls, and Security Information and Event Management (SIEM) platforms. Gather and analyze evidence from affected systems, logs, and network traffic. You will conduct detailed investigations of security incidents to determine the root cause, scope, and impact. Document all aspects of security incidents, including timelines, actions taken, and lessons learned. Perform forensic analysis of compromised systems to identify the techniques and tactics used by attackers, or as directed by Legal. Collaborate with cross-functional teams including Engineering, IT, Security Operations, Legal, HR, and Compliance to manage and mitigate incidents. Strengthen KPIs and metrics for measuring response effectiveness and provide clear and consistent reporting to internal stakeholders. Participate in rotating On Call shifts that utilize a paging system in case a security event requires attention. What You'll Need to be Successful 5+ years experience in Security Incident Response. Experience across the information security domain, including familiarity with endpoint, email, network, cloud security, vulnerability management, incident response, and threat intelligence. Experience with log analysis, network security, digital forensics, and incident response investigations. Ability to script / code using Python or an equivalent language. Bachelor's degree in computer science, information security, or relevant experience. Certifications related to digital forensics and incident response.
Posted 1 week ago
5.0 - 8.0 years
7 - 10 Lacs
Pune
Remote
What You'll Do Reports to: Manager - Security Engineering Avalara is seeking a Security Automation Engineer to join our Security Automation & Platform Enhancement Team (SAPET). You will be at the intersection of cybersecurity, automation, and AI, focusing on designing and implementing scalable security solutions that enhance Avalara's security posture. You will have expertise in programming, cloud technologies, security automation, and modern software engineering practices, with experience with using Generative AI to improve security processes. What Makes This Role Unique at Avalara? Cutting-Edge Security Automation: You will work on advanced cybersecurity automation projects, including fraud detection, AI-based security document analysis, and IT security process automation. AI-Powered Innovation: We integrate Generative AI to identify risks, analyze security documents, and automate compliance tasks. Impact Across Multiple Security Domains: Your work will support AML, fraud detection, IT security, and vendor risk management. What Your Responsibilities Will Be As a Security Automation Engineer, your primary focus will be to develop automation solutions that improve efficiency across several security teams. Develop and maintain security automation solutions to streamline security operations and reduce manual efforts. Work on automation projects that augment security teams, enabling them to work more efficiently. Design and implement scalable security frameworks for Security Teams. What You'll Need to be Successful 5+ years experience Programming & Scripting: Python, GoLang, Bash Infrastructure as Code & Orchestration: Terraform, Kubernetes, Docker Security & CI/CD Pipelines: Jenkins, GitHub Actions, CI/CD tools Database & Data Analysis: SQL, security data analytics tools Experience with RDBMS and SQL, including database design, normalization, query optimization Experience. Hands-on experience with security automation tools, SIEM, SOAR, or threat intelligence platforms.
Posted 1 week ago
3.0 years
0 Lacs
Kolkata, West Bengal, India
On-site
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Cyber Managed Service -Threat Detection & Response - Security Orchestration, Automation and Response (Splunk SOAR) - Senior KEY Capabilities: Excellent teamwork skills, passion and drive to succeed and combat Cyber threats Working with the customer to identify security automation strategies and provide creative integrations and playbooks. Work collaboratively with other team members to find creative and practical solutions to customers’ challenges and needs. Responsible for execution and maintenance of Splunk SOAR related analytical processes and tasks Management and administration of Splunk SOAR platform Developing custom scripts and playbooks to automate repetitive tasks and response actions. Experienced developer with at least 2 + yrs of experience using Python programming language, REST API and JSON. Must have basic SQL knowledge. Knowledge on Incident Response and Threat Intelligence tools. Creation of reusable and efficient Python-based Playbooks. Use Splunk SOAR platform to enable automation and orchestration on various tools and technologies by making use of existing or custom integration Partner with security operations teams, threat intelligence groups and incident responders. Should have worked in a security operations center and gained understanding of SIEM solutions like Splunk, Microsoft Sentinel and other log management platforms. Having experience in Splunk content development will be an added advantage Willing to learn new technologies and take up new challenges. Assist in developing high-quality technical content such as automation scripts/tools, reference architectures, and white papers. Good grasp in conceptualizing and/or implementing automation for business process workflows Knowledge in Network monitoring technology platforms such as Fidelis XPS or others Knowledge in endpoint protection tools, techniques and platforms such as Carbon Black, Tanium, Microsoft Defender ATP, Symantec, McAfee or others Should be able to assist, support and mitigate production issues. Should have the capability to work with partners and client stack holders to full fill their asks Ability to Coordinate with Vendor to incident closure on according to the severity Review, assess, benchmark and develop issue remediation action plans for all aspects of an engagement. Qualification & experience: Minimum of 3+ years’ experience in cyber security with a depth of network architecture knowledge that will translate over to deploying and integrating Splunk SOAR solution in global enterprise environments. Experience working in ServiceNow SOAR is also an added advantage Strong oral, written and listening skills are an essential component to effective consulting. Strong background in network administration. Ability to work at all layers of the OSI models, including being able to explain communication at any level is necessary. Should have strong hands-on experience with scripting technologies like Python, REST, JSON, SOAP, ODBC, XML etc. Must have honours degree in a technical field such as computer science, mathematics, engineering or similar field Minimum 2 years of working in SOAR (Splunk) Experience in Process Development, Process Improvement, Process Architecture, and Training Quick to apprehend and adapt new applications. Knowledgeable in Cybersecurity and Incident Response Management Certification in Splunk will be an added advantage Certifications in a core security related discipline will be an added advantage. EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less
Posted 1 week ago
0 years
0 Lacs
Hyderabad, Telangana, India
On-site
Description What We Are Looking For: Meltwater’s collaborative Security Team needs a passionate Security Engineer to continue to advance Meltwater’s security. Working with a group of fun loving people who are genuinely excited and passionate about security, there will be more laughs than facepalms! If you believe that improving security is about constantly moving technology forward to be more secure, and shifting security tools and checks earlier in the development lifecycle, then you’ll feel at home on Meltwater’s Security Team! At Meltwater we want to ensure that we can have autonomous, empowered and highly efficient teams. Our Security Team charges head on into the challenge of ensuring our teams can maintain their autonomy without compromising the security of our systems, services and data. Through enablement and collaboration with teams, Security Engineers ensure that our development and infrastructure practices have security defined, integrated and implemented in a common-sense manner that reduces risk for our business. Security Engineers define best practices, build tools, implement security checks and controls together with the broader Engineering and IT teams to ensure that our employees and our customers' data stays safe. As part of this, we leverage AWS as a key component of our cloud infrastructure. Security Engineers play a critical role in securing and optimizing AWS environments by implementing best practices, automating security controls, and collaborating with teams to ensure scalability, resilience, and compliance with industry standards. What You’ll do: In this role, you will be designing and implementing security functions ranging from checks on IaC (Infrastructure as Code) to SAST/DAST scanners in our CI/CD pipelines. You will be collaborating closely with almost every part of the Meltwater organization and help create security impact across all teams with strong support from the business. Collaborate closely with teams to help identify and implement frictionless security controls throughout the software development lifecycle Propose and implement solutions to enhance the overall cloud infrastructure and toolset. Perform ongoing security testing, including static (SAST), dynamic (DAST), and penetration testing, along with code reviews, vulnerability assessments, and regular security audits to identify risks, improve security, and develop mitigation strategies. Educate and share knowledge around secure coding practices Identify applicable industry best practices and consult with development teams on methods to continuously improve the risk posture. Build applications that improve our security posture and monitoring/alerting capabilities Implement and manage security technologies including firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, and security information and event management (SIEM) tools. Conduct vulnerability assessments, penetration testing, and regular security audits to identify risks and develop mitigation strategies. Monitor and respond to security incidents and alerts, performing root cause analysis and incident handling. Participate in incident response and disaster recovery planning, testing, and documentation. Manage identity and access management (IAM) solutions to enforce least privilege and role-based access controls (RBAC). Assist in the development of automated security workflows using scripting (Python, Bash, or similar). What You'll Bring: Strong collaboration skills with experience working cross functionally with a diverse group of stakeholders Strong communication skills with the ability to provide technical guidance to both technical and non-technical audiences Experience in implementing security controls early in the software development life cycle Knowledge of industry accepted security best practices/standards/policies such as NIST, OWASP, CIS, MITRE&ATT@CK Software developer experience in one or more of the following languages: JavaScript, Java, Kotlin or Python Experience in at least one public cloud provider, preferably AWS, with experience in security, infrastructure, and automation. Hands-on experience with SIEM platforms such as Splunk, QRadar, or similar. Proficiency in Linux operating system, network security, including firewalls, VPNs, IDS/IPS, and monitoring tools. Experience with vulnerability management tools (Snyk, Nessus, Dependabot) and penetration testing tools (Kali Linux, Metasploit). Experience in forensics and malware analysis. Self-motivated learner that continuously wants to share knowledge to improve others The ideal candidate is someone from a Software Development background with a passion for security. If you’re someone who understands the value of introducing security early in the software development lifecycle, and want to do so by enabling and empowering teams by building tools they WANT to use, we want to hear from you! What We Offer: Enjoy flexible paid time off options for enhanced work-life balance. Comprehensive health insurance tailored for you. Employee assistance programs cover mental health, legal, financial, wellness, and behaviour areas to ensure your overall well-being. Complimentary CalmApp subscription for you and your loved ones, because mental wellness matters. Energetic work environment with a hybrid work style, providing the balance you need. Benefit from our family leave program, which grows with your tenure at Meltwater. Thrive within our inclusive community and seize ongoing professional development opportunities to elevate your career. Where You'll Work: Hitec city, Hyderabad. When You'll Join: As per the offer letter Our Story At Meltwater, we believe that when you have the right people in the right environment, great things happen. Our best-in-class technology empowers our 27,000 customers around the world to make better business decisions through data. But we can’t do that without our global team of developers, innovators, problem-solvers, and high-performers who embrace challenges and find new solutions for our customers. Our award-winning global culture drives everything we do and creates an environment where our employees can make an impact, learn every day, feel a sense of belonging, and celebrate each other’s successes along the way. We are innovators at the core who see the potential in people, ideas and technologies. Together, we challenge ourselves to go big, be bold, and build best-in-class solutions for our customers. We’re proud of our diverse team of 2,200+ employees in 50 locations across 25 countries around the world. No matter where you are, you’ll work with people who care about your success and get the support you need to unlock new heights in your career. We are Meltwater. We love working here, and we think you will too. "Inspired by innovation, powered by people." Equal Employment Opportunity Statement Meltwater is an Equal Opportunity Employer and Prohibits Discrimination and Harassment of Any Kind: At Meltwater, we are dedicated to fostering an inclusive and diverse workplace where every employee feels valued, respected, and empowered. We are committed to the principle of equal employment opportunity and strive to provide a work environment that is free from discrimination and harassment. All employment decisions at Meltwater are made based on business needs, job requirements, and individual qualifications, without regard to race, color, religion or belief, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, marital status, veteran status, or any other status protected by the applicable laws and regulations. Meltwater does not tolerate discrimination or harassment of any kind, and we actively promote a culture of respect, fairness, and inclusivity. We encourage applicants of all backgrounds, experiences, and abilities to apply and join us in our mission to drive innovation and make a positive impact in the world. Show more Show less
Posted 1 week ago
3.0 years
0 Lacs
Kanayannur, Kerala, India
On-site
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Cyber Managed Service -Threat Detection & Response - Security Orchestration, Automation and Response (Splunk SOAR) - Senior KEY Capabilities: Excellent teamwork skills, passion and drive to succeed and combat Cyber threats Working with the customer to identify security automation strategies and provide creative integrations and playbooks. Work collaboratively with other team members to find creative and practical solutions to customers’ challenges and needs. Responsible for execution and maintenance of Splunk SOAR related analytical processes and tasks Management and administration of Splunk SOAR platform Developing custom scripts and playbooks to automate repetitive tasks and response actions. Experienced developer with at least 2 + yrs of experience using Python programming language, REST API and JSON. Must have basic SQL knowledge. Knowledge on Incident Response and Threat Intelligence tools. Creation of reusable and efficient Python-based Playbooks. Use Splunk SOAR platform to enable automation and orchestration on various tools and technologies by making use of existing or custom integration Partner with security operations teams, threat intelligence groups and incident responders. Should have worked in a security operations center and gained understanding of SIEM solutions like Splunk, Microsoft Sentinel and other log management platforms. Having experience in Splunk content development will be an added advantage Willing to learn new technologies and take up new challenges. Assist in developing high-quality technical content such as automation scripts/tools, reference architectures, and white papers. Good grasp in conceptualizing and/or implementing automation for business process workflows Knowledge in Network monitoring technology platforms such as Fidelis XPS or others Knowledge in endpoint protection tools, techniques and platforms such as Carbon Black, Tanium, Microsoft Defender ATP, Symantec, McAfee or others Should be able to assist, support and mitigate production issues. Should have the capability to work with partners and client stack holders to full fill their asks Ability to Coordinate with Vendor to incident closure on according to the severity Review, assess, benchmark and develop issue remediation action plans for all aspects of an engagement. Qualification & experience: Minimum of 3+ years’ experience in cyber security with a depth of network architecture knowledge that will translate over to deploying and integrating Splunk SOAR solution in global enterprise environments. Experience working in ServiceNow SOAR is also an added advantage Strong oral, written and listening skills are an essential component to effective consulting. Strong background in network administration. Ability to work at all layers of the OSI models, including being able to explain communication at any level is necessary. Should have strong hands-on experience with scripting technologies like Python, REST, JSON, SOAP, ODBC, XML etc. Must have honours degree in a technical field such as computer science, mathematics, engineering or similar field Minimum 2 years of working in SOAR (Splunk) Experience in Process Development, Process Improvement, Process Architecture, and Training Quick to apprehend and adapt new applications. Knowledgeable in Cybersecurity and Incident Response Management Certification in Splunk will be an added advantage Certifications in a core security related discipline will be an added advantage. EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less
Posted 1 week ago
1.0 - 5.0 years
3 - 7 Lacs
Noida
Work from Office
Req ID: 327248 We are currently seeking a Archer IRM Developer to join our team in Noida, Uttar Pradesh (IN-UP), India (IN). Configure and develop solutions for customers on the Archer IRM platform Configure and develop integrated solutions for customers using the Archer IRM platform utilizing additional industry standard applications including SSO, web services integrations, import sets and table polling Design and configure complex configurations including advanced workflow, questionnaires, layouts, reports, data feeds and data imports, campaigns, dashboards, notifications, package installation and workflows, etc. Support and escalate issues and defects related to specific customer environments as required, provide incident support as required Perform system and unit testing, document results Develop documentation as required, per operational processes Follow the engagement model as determined by the engagement manager for projects, as needed Follow the standardized project implementation methodology
Posted 1 week ago
3.0 years
0 Lacs
Noida, Uttar Pradesh, India
On-site
Job title: IT Security Analyst (SOC) Location: Noida ( Hybrid ) Night Shift Job Overview: We are seeking an experienced and driven IT Security Analyst to join our Security Operations Center (SOC) team. This role is central to ensuring our organization's digital assets and infrastructure remain secure against threats. The ideal candidate brings a solid cybersecurity foundation, strong analytical instincts, and hands-on experience in incident detection, investigation, and response. Responsibilities: Work in rotational shifts with on-call availability outside of regular hours, as needed. Administer, configure, and troubleshoot security infrastructure devices. Manage and resolve service tickets assigned to the SOC queue in a timely manner. Detect, analyze, and respond to security incidents and alerts across multiple systems. Demonstrate initiative and ownership from incident identification through resolution. Monitor system and security logs for suspicious activities and ensure timely remediation. Continuously assess and improve existing security systems and detection capabilities. Collaborate with internal teams to report, track, and remediate vulnerabilities. Investigate malware, phishing, and exploit activity; prioritize and escalate as needed. Stay up-to-date with emerging threat vectors, TTPs, and known vulnerabilities. Contribute to the development and refinement of SOC playbooks and standard operating procedures (SOPs). Skills and Experience: 3+ years of proven experience in IT Security, ideally within a SOC environment. Strong grasp of information security principles and networking fundamentals. Hands-on experience with security tools such as SIEM platforms (e.g., Splunk), Endpoint Detection and Response (EDR) tools (e.g., CrowdStrike), IDS/IPS, firewalls, VPNs, antivirus, and MFA solutions. Familiarity with network traffic analysis, vulnerability triage, malware identification, and phishing detection. Ability to analyze and evaluate compromise indicators and security artifacts. Experience working in high-volume, fast-paced environments. Excellent critical thinking and problem-solving skills, especially under pressure. Preferred Certifications: CompTIA Security+, CySA+, CEH, GSEC, SSCP, CASP+, or equivalent. Key Competencies: Attention to detail and precision in documentation and response. Effective verbal and written communication skills. Strong team collaboration and interpersonal effectiveness. Ability to work calmly and make decisions in high-stress scenarios. Proactive mindset with a continuous improvement approach. Show more Show less
Posted 1 week ago
2.0 years
0 Lacs
Bengaluru, Karnataka, India
Remote
Job Overview: We are looking for a full-time, remote IT Operations Analyst to join our Managed Service Provider (MSP) team. In this role, you will be responsible for providing 24/7 monitoring and management of client server, network, and security systems. You will act as the first line of defense in detecting, troubleshooting, and resolving issues that affect system performance and security. This position involves working with multiple technologies, addressing technical incidents, performing routine maintenance tasks, and ensuring that client environments remain secure, optimized, and compliant with industry standards. Location: Bengaluru, India (Remote) Schedule: Monday to Friday 40 hours per week Day Shift Night Shift Weekend Availability* Experience: Server: 2 years (Required) Monitoring: 2 years (Required) IT Support: 2 years (Required) Key Responsibilities: 1. Server Operations & Management: Monitor Server Health: Continuously monitor the health and performance of client servers, both physical and virtual, including CPU, memory, disk space, and network utilization. Patch Management: Manage and apply operating system and application patches in a timely manner to mitigate security vulnerabilities and ensure system stability. Troubleshooting: Quickly diagnose and resolve issues related to server functionality, performance degradation, or hardware failures. 2. Network Operations & Management: Network Monitoring: Monitor client networks, including routers, switches, firewalls, and VPNs, ensuring optimal performance and minimal downtime. Incident Response: Respond to network issues such as outages, slow performance, or security threats, applying appropriate mitigation strategies. 3. Security Operations & Incident Management: Security Monitoring: Use security tools (SIEM, IDS/IPS, endpoint security) to monitor security incidents such as malware, unauthorized access, or vulnerabilities. Incident Detection & Response: Identify, investigate, and respond to security incidents, following established protocols to mitigate risks and minimize impact. Patch & Vulnerability Management: Ensure timely security patching and remediation of vulnerabilities across client networks, servers, and endpoints. 4. Monitoring & Alert Management: Proactive Monitoring: Use monitoring tools to identify and address performance or security issues before they impact end users. Alert Management: Manage and triage alerts, ensuring critical issues are resolved swiftly while non-critical items are handled within acceptable timeframes. Escalation Procedures: Follow proper escalation procedures for incidents that cannot be resolved within the NOC/SOC team, ensuring issues are addressed by appropriate teams or management. 5. Documentation & Reporting: Incident Documentation: Accurately document all incidents, issues, and resolutions within the ticketing system for future reference and tracking. Client Reporting: Generate regular reports on system performance, security status, and incident resolution for clients, providing recommendations for improvements or optimizations. Knowledge Base Maintenance: Contribute to the knowledge base by documenting common issues, troubleshooting steps, and best practices to improve internal efficiency. 6. Service Continuity: Backup Monitoring: Ensure regular backups are being performed for client systems and that recovery procedures are tested and documented. 7. Client Collaboration & Support: Client Communication: Provide clear and timely updates to clients about system performance, incidents, and resolution status. Collaboration with Internal Teams: Work closely with other MSP teams (e.g., support, engineering, security) to resolve complex issues and implement client solutions. Proactive Recommendations: Suggest improvements to client systems and security posture, enhance performance, scalability, and protection. Qualifications, Education, Certification Requirements: Associate's Degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent professional experience. Relevant certifications such as: CompTIA Network+, CompTIA Security+, Microsoft Certified Solutions Associate (MCSA), or Certified Information Systems Security Professional (CISSP) are a plus. Cloud certifications (e.g., AWS Certified Solutions Architect, Microsoft Certified: Azure Administrator) are beneficial. Experience: 2+ years of experience in a SOC/NOC, systems administration, or IT support role, preferably in a managed service provider (MSP) environment. Experience with server management (Windows, Linux), network devices (firewalls, routers, switches), and security tools (SIEM, IDS/IPS, endpoint protection). Hands-on experience with cloud services (AWS, Azure) and virtual environments (VMware, Hyper-V) is a plus. Skills & Competencies: Technical Knowledge: Strong understanding of server management, network protocols (TCP/IP, DNS, DHCP), and security measures. Security Awareness: Familiarity with security threats, vulnerabilities, and mitigation strategies. Troubleshooting Skills: Ability to identify, analyze, and resolve complex technical issues quickly and effectively. Analytical & Detail-Oriented: Strong analytical skills with a focus on accuracy and attention to detail. Communication: Excellent communication skills, both verbal and written, to interact effectively with clients and internal teams. Customer Service Orientation: Strong client-facing skills, providing timely updates and ensuring high level of customer satisfaction. Time Management: Ability to handle multiple priorities and manage time efficiently in a fast-paced environment. Benefits: Paid sick time Paid time off Provident Fund Work from home Show more Show less
Posted 1 week ago
3.0 years
0 Lacs
Trivandrum, Kerala, India
On-site
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Cyber Managed Service -Threat Detection & Response - Security Orchestration, Automation and Response (Splunk SOAR) - Senior KEY Capabilities: Excellent teamwork skills, passion and drive to succeed and combat Cyber threats Working with the customer to identify security automation strategies and provide creative integrations and playbooks. Work collaboratively with other team members to find creative and practical solutions to customers’ challenges and needs. Responsible for execution and maintenance of Splunk SOAR related analytical processes and tasks Management and administration of Splunk SOAR platform Developing custom scripts and playbooks to automate repetitive tasks and response actions. Experienced developer with at least 2 + yrs of experience using Python programming language, REST API and JSON. Must have basic SQL knowledge. Knowledge on Incident Response and Threat Intelligence tools. Creation of reusable and efficient Python-based Playbooks. Use Splunk SOAR platform to enable automation and orchestration on various tools and technologies by making use of existing or custom integration Partner with security operations teams, threat intelligence groups and incident responders. Should have worked in a security operations center and gained understanding of SIEM solutions like Splunk, Microsoft Sentinel and other log management platforms. Having experience in Splunk content development will be an added advantage Willing to learn new technologies and take up new challenges. Assist in developing high-quality technical content such as automation scripts/tools, reference architectures, and white papers. Good grasp in conceptualizing and/or implementing automation for business process workflows Knowledge in Network monitoring technology platforms such as Fidelis XPS or others Knowledge in endpoint protection tools, techniques and platforms such as Carbon Black, Tanium, Microsoft Defender ATP, Symantec, McAfee or others Should be able to assist, support and mitigate production issues. Should have the capability to work with partners and client stack holders to full fill their asks Ability to Coordinate with Vendor to incident closure on according to the severity Review, assess, benchmark and develop issue remediation action plans for all aspects of an engagement. Qualification & experience: Minimum of 3+ years’ experience in cyber security with a depth of network architecture knowledge that will translate over to deploying and integrating Splunk SOAR solution in global enterprise environments. Experience working in ServiceNow SOAR is also an added advantage Strong oral, written and listening skills are an essential component to effective consulting. Strong background in network administration. Ability to work at all layers of the OSI models, including being able to explain communication at any level is necessary. Should have strong hands-on experience with scripting technologies like Python, REST, JSON, SOAP, ODBC, XML etc. Must have honours degree in a technical field such as computer science, mathematics, engineering or similar field Minimum 2 years of working in SOAR (Splunk) Experience in Process Development, Process Improvement, Process Architecture, and Training Quick to apprehend and adapt new applications. Knowledgeable in Cybersecurity and Incident Response Management Certification in Splunk will be an added advantage Certifications in a core security related discipline will be an added advantage. EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less
Posted 1 week ago
3.0 - 5.0 years
0 Lacs
Trivandrum, Kerala, India
On-site
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. STS Service Provisioning - Senior Security Analyst Today’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team help protect the EY brand and build client trust. In Information Security, we combine risk strategy, digital identity, cyber defense, application security, and technology solutions throughout the security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting, and enabling the business through innovative, secure solutions that provide speed to market and business value. The opportunity The Security Technology Services (STS) group is a division of Information Security that ensures secure access to systems and information for more than 390,000 people in over 150 countries. You will be part of STS DLP Engineering Team specifically to support the Enterprise Data Loss Prevention (DLP) solution. The STS team is responsible for the delivery of DLP Services and the maintenance of the global DLP applications. The team is geographically dispersed and comprises of all disciplines required to deliver Data Security Services for our customers. Your Key Responsibilities The Senior Analyst will be primarily responsible for configuring Data Security Solutions like the enterprise Data Loss Prevention System. The main duties of this role will include helping to translate business requirements to secure data with our technical capabilities, especially overseeing the configuration of the DLP environments in a heterogenous global environment. This role requires strong hands-on experience in leading data security solutions with a strong focus on DLP. It will also participate in Data Access Governance Program development and assist in administering the program. The Senior Analyst will help to supervise and mentor junior analysts on the team. The role will also interface with internal customers, stakeholders and support teams at various levels within the organization including Legal, Data Protection, IT Operations and Engineering. Skills And Attributes For Success Technical knowledge in Data Protection technology (DLP, SIEM, SOAR, Data Access Governance, Networking) Administration of the DLP tools which includes configuring policies, upgrading, and patching, etc Proven effective verbal and written communication skills Ability to independently research and solve technical issues Demonstrated integrity in a professional environment Knowledge of core Information Security concepts related to Governance, Risk & Compliance Excellent teaming skills Ability to work in and adapt to a changing environment Flexibility to adjust to multiple demands, shifting priorities, ambiguity and rapid change Ability to efficiently handle customer concerns and difficult situations with ease and professionalism Essential Functions Of The Job Work with vendors to support the different security technologies Configuration of the Security tools which includes configuring policies, response rules & notifications Work with Monitor & Response team to analyse alerts generating from various systems to tune their configuration Understand and follow the incident response process through event escalations Work with Senior level stakeholders (Risk Management, Compliance & Data Protection) Understand Business requirements and translate into technical controls Ability to work within and alongside diverse, global and virtual teams To qualify for the role you must have Degree in Computer Science, Information Systems, Engineering or a related field. Knowledge of security controls: data classification; data labeling and data loss 3-5 years of experience in one or more of the following: Data Loss Prevention (DLP) Technology support and Event Handling Information Security concepts related to Governance, Risk & Compliance Supporting Information Security Technology English language skills - excellent written and verbal communication Exceptional judgement, tact and decision-making ability Ideally, you’ll also have Demonstrated integrity in a professional environment Ability to work within diverse, global, virtual teams Ability to appropriately balance firm security needs with business impact and benefit What We Look For Good interpersonal, communication and presentation skills Ability to deal with ambiguity and change, and exercise appropriate time management to meet deliverables Prioritization of work items to ensure timelines are achieved Good judgment, tact, and decision-making ability Deep critical thinking skills demonstrating analytical and systematic approach to problem solving Experience working in a global virtual environment Ability to work independently but also within a team environment What We Offer As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer: Continuous learning: You will develop the mindset and skills to navigate whatever comes next. Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way. Transformative leadership: We will give you the insights, coaching and confidence to be the leader the world needs. Diverse and inclusive culture: You will be accepted for who you are and empowered to use your voice to help others find theirs. EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less
Posted 1 week ago
10.0 - 15.0 years
0 Lacs
Gurugram, Haryana, India
On-site
Who We Are We are an organisation that exists to drive progress. That's the “red thread” that connects everyone at The Economist Group (TEG). Our businesses share a devotion to innovation, independence and rigour in their fields of expertise. We empower people to understand and tackle the critical challenges and changes facing the world. Our analytical rigour, global expertise and evidence-based insights enable individuals and organisations to make sense of these shifts and chart a course through them. We deliver analysis and insights in many formats to subscribers and clients in 170 countries through our four businesses, The Economist, Economist Impact, Economist Intelligence and Economist Education, which uphold our global reputation for excellence and integrity. Job Summary The Cyber Security Team Lead will support the Head of Information Security in the development, implementation, and management of the organisation’s information security strategy. This role involves overseeing daily operations, ensuring the security of information assets, managing security incidents, and fostering a security-conscious culture within the organisation. Key Responsibilities Strategic Support: Assist in the development and execution of the organisation's information security strategy and policies. Provide strategic guidance and leadership in all areas of information security. Operational Management: Oversee day-to-day security operations, including monitoring, threat management, and incident response. Ensure effective 24/7 monitoring and incident handling. Risk Management: Identify and assess security risks, and develop mitigation strategies. Conduct regular security audits and vulnerability assessments. Incident Response: Lead the response to security incidents and breaches, ensuring timely and effective resolution. Develop and maintain the incident response plan, including conducting regular drills. Compliance and Governance: Ensure compliance with relevant security standards, regulations, and frameworks (e.g., ISO 27001, NIST, GDPR). Maintain up-to-date documentation of security policies, procedures, and incidents. Team Leadership: Supervise and mentor the information security team, providing guidance and support. Foster a collaborative and high-performance team environment. Training and Awareness: Develop and deliver security training and awareness programs for employees. Promote a culture of security awareness throughout the organisation. Stakeholder Collaboration: Collaborate with IT, legal, HR, and other departments to ensure cohesive security practices. Serve as a key point of contact for security-related matters with external partners and vendors. Qualifications Education: Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field. Master’s degree is a plus. Certifications: Relevant certifications such as CISSP, CISM, CISA, or equivalent. Experience: Minimum of 10 -15 years of experience in information security, with at least 3 - 5 years in a leadership role. Proven experience in managing security operations, incident response, and risk management. Skills And Competencies Technical Expertise: Strong knowledge of information security principles, technologies, and best practices. Experience with security tools and technologies such as SIEM, firewalls, IDS/IPS, and endpoint protection. Analytical Skills: Ability to analyse complex security issues and develop effective solutions. Strong risk assessment and management skills. Leadership and Communication: Excellent leadership and team management skills. Strong verbal and written communication skills, with the ability to convey complex security concepts to non-technical stakeholders. Problem-Solving: Strong critical thinking and problem-solving abilities. Ability to remain calm and effective in high-pressure situations. Additional Requirements Availability for on-call duties and to respond to security incidents outside regular working hours. Willingness to travel as needed. Hybrid Policy - 2 to 3 days in a month work from Office* Benefits What we offer We offer excellent benefits including an incentive programme, generous annual and parental leave policies, volunteering days and well-being support throughout the year, as well as free access to all Economist content. Country specific benefits are also offered. Our Values Our values are a collective set of beliefs and behaviours that strengthen The Economist Group's purpose and demonstrate where we want to be as an organisation. They reflect on our mission to pursue progress for individuals, organisations and the world. Independence We are not bound to any party or interest and encourage exploration and free-thinking. We champion freedom, both within our organisation and around the world. Integrity We are bold in our efforts to uncover the truth and stand up for what we believe in. We inspire trust through our rigour, fact-checking and transparency. Excellence We aspire to the highest standards in all we do. We are ambitious and inquisitive in our pursuit of continuous progress and innovation. Inclusivity We value diversity in thought and background and encourage healthy debate with a breadth of perspectives. We treat our colleagues and customers fairly and respectfully. Openness We foster a collaborative and empathetic culture conducive to the interests, wit and initiative of our colleagues. New ideas are our lifeblood. The Economist Group values diversity. We are committed to equal opportunities and creating an inclusive environment for all our colleagues and potential colleagues regardless of ethnic origin, national origin, gender, gender identity, race, colour, religious beliefs, disability, sexual orientation, age, marital status or any other status. Show more Show less
Posted 1 week ago
5.0 - 8.0 years
5 - 12 Lacs
Bengaluru
Work from Office
https://zrec.in/jXrSD?source=CareerSite
Posted 1 week ago
3.0 years
0 Lacs
Pune, Maharashtra, India
On-site
About The Role We are seeking a proactive and detail-oriented Cybersecurity Analyst with 1–3 years of experience to help safeguard our digital assets and protect our IT infrastructure from security threats. The ideal candidate will have hands-on experience in monitoring security systems, analyzing threats, and contributing to the organization's overall cyber defense strategy. Key Responsibilities Monitor security systems (SIEM, firewalls, IDS/IPS) for unusual activity or potential threats. Analyze and respond to security alerts, incidents, and breaches. Conduct regular vulnerability assessments and assist in remediation efforts. Support incident response processes, including investigation, documentation, and root cause analysis. Help implement and maintain cybersecurity policies, procedures, and best practices. Conduct user access reviews and manage security configurations across systems. Research and recommend security enhancements, tools, and techniques. Collaborate with IT and DevOps teams to ensure secure system deployments. Required Qualifications Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field. 1–3 years of hands-on experience in a cybersecurity or IT security role. Working knowledge of cybersecurity principles, tools, and frameworks (e.g., NIST, ISO 27001). Experience with SIEM tools (e.g., Splunk, IBM QRadar, ELK), firewalls, and endpoint protection. Familiarity with networking concepts, system administration (Windows/Linux), and cloud environments (AWS/Azure/GCP). Strong analytical, investigative, and problem-solving skills. Ability to work independently and in cross-functional teams. Preferred Qualifications Industry certifications such as CompTIA Security+, CEH, SSCP, or similar. Experience with scripting or automation (e.g., Python, Bash, PowerShell). Familiarity with DevSecOps practices or CI/CD pipelines. Understanding of regulatory standards (e.g., GDPR, HIPAA, PCI-DSS). What We Offer Competitive salary. Professional development opportunities and training support. Flexible work environment (including hybrid). Insurance Opportunity to work with modern security technologies in a dynamic team. Show more Show less
Posted 1 week ago
7.0 - 12.0 years
10 - 14 Lacs
Kolkata, Chennai, Delhi / NCR
Work from Office
Role: Regional Sales Manager Job Type: Full Time, Permanent Location: Kolkata (East Region), Chennai (South Region), Delhi (North Region) Number of Openings : 3 Experience Required: Minimum 5 years experience in cyber security Field Qualification: Bachelor’s degree in Business Administration, Marketing, Engineering, or a related field. MBA or equivalent postgraduate qualification is preferred. Brief Role Description We are seeking a highly experienced and driven Sales Professional having 7–12 years of experience in B2B sales with minimum 5 years’ experience in cyber security field. The ideal candidate will take ownership of the complete sales cycle - from lead generation to deal closure - while building strong relationships with clients and driving business growth. Responsibilities: Formulate and implement strategic sales plans to meet revenue targets and drive customer base expansion within the East / South / North Indian region. Proactively identify and pursue new business opportunities through market research, networking and cold callings. Coordinate with operations and technical teams and educate, empower the team to capture cybersecurity services opportunity at the end customer. Foster strong post-sales relationships to ensure customer satisfaction and identify opportunities for upselling and cross-selling. Deliver accurate sales forecasts and provide timely, detailed reports to Executive. Skills Required: Ability to handle complex sales cycles and decision-making units. Self-motivated with a high level of accountability and initiative. Extensive professional network and comprehensive market knowledge of East / South / North India Corporate sector. Thorough understanding of CRM systems with the ability to generate and analyze sales reports effectively. Engage with clients in strategic discussions to provide best in class cybersecurity. Proficiency in delivering impactful presentations to clients, showcasing cybersecurity solutions with clarity and compelling manner. Conduct market research and identify leads. Proven track record in the sales of cybersecurity technologies or enterprise software solutions. Experience in engaging and collaborating with government entities and PSU clients. About Company Innspark is the fastest-growing Deep-tech Solutions company that provides next-generation products and services in Cybersecurity and Telematics. The Cybersecurity segment provides out-of-the-box solutions to detect and respond to sophisticated cyber incidents, threats, and attacks. The solutions are powered by advanced Threat Intelligence, Machine Learning, and Artificial Intelligence that provides deep visibility of the enterprise’s security. We have developed and implemented solutions for a wide range of customers with highly complex environments including Government Organizations, Banks & Financial institutes, PSU, Healthcare Providers, Private Enterprises. Website : https://innspark.in/
Posted 1 week ago
5.0 years
0 Lacs
Hyderabad, Telangana, India
On-site
JOB DESCRIPTION: Job Title: Infrastructure Security Engineer Location: Hyderabad Job Summary: We are seeking a skilled Infrastructure Security Engineer to join our team and help secure our IT infrastructure. The ideal candidate will have hands-on experience in designing, implementing, and maintaining security controls across both on-premises and cloud environments. Key Responsibilities: Design and implement security measures to protect infrastructure, systems, and data Monitor network traffic, investigate security incidents, and coordinate response efforts Manage firewalls, VPNs, and IDS/IPS systems Conduct regular vulnerability assessments and penetration tests Harden cloud environments (AWS, Azure, GCP) following best practices Work with DevOps and IT teams to integrate security into CI/CD pipelines Maintain and enforce security policies, procedures, and standards Ensure compliance with regulatory frameworks (ISO 27001, NIST, SOC 2, etc.) Manage identity and access controls (IAM, LDAP, Active Directory) Automate security processes using scripting and tools like Terraform, Ansible Required Skills & Qualifications: Bachelor’s degree in computer science, Information Security, or a related field 3–5+ years of experience in infrastructure or information security Strong knowledge of networking, operating systems (Linux/Windows), and cloud security Hands-on experience with SIEM, IDS/IPS, and vulnerability scanning tools Proficiency in scripting (Python, Bash, PowerShell) and Infrastructure-as-Code (IaC) tools Security certifications preferred (CISSP, CISM, CEH, AWS Security Specialty) Please share your updated resume at Pravin.b@datasysamerica.com Show more Show less
Posted 1 week ago
0 years
0 Lacs
Ambattur, Tamil Nadu, India
On-site
Primary Responsibilities: Coordinates and assists with security activities for the enterprise Operate, maintain, and validate vulnerability scanning of Infrastructure, Applications, and APIs Review daily threat intelligence. Ensures compliance to security standards for assigned sites Schedules and administers internal security audits for Client and Physical Site Audits Follows up on remediation plans Support the management and maintenance of security tools with an emphasis on Security Information and Event Monitoring (SIEM) tools. Assist with the review of technical deployments for risk prior to deployment across the campus. Recommends risk mitigation solutions based on audit findings Maintains Security and Compliance Metrics monthly Assists in the development and delivery of IT risk and security awareness and compliance training programs Willingness to travel to DATAMARK global sites as necessary Other duties as assigned Minimum Qualifications: · Education Requirements: o Bachelor’s degree in Computer Science or related field, experience in lieu of degree can be considered · Field Experience: o At least four years of experience in Information Security · Position Experience: o At least four years of experience in an Information Security Analyst position, or similar position o Demonstrated experience with traditional vulnerability analysis: identify, categorize, prioritize, track, and validate remediation of known vulnerabilities by accountable IT teams · Other Qualifications: o Certification in IT Security required o Knowledge in Information Security policies and practices o Knowledge of third-party auditing and risk assessment methodologies o Experience in an IT Security related environment preferred Required Skills: Extremely organized and detail oriented. Capable of holding team members accountable to timely delivery of audit evidences. Practices and methods of IT strategy, enterprise architecture and security architecture Excellent analytical and problem-solving abilities to identify and remediate security risks Team-work mentality to develop security solutions in collaboration with other IT professionals Show more Show less
Posted 1 week ago
0 years
3 - 8 Lacs
Hyderābād
On-site
Job Description: Job Purpose Intercontinental Exchange is looking for a Senior IT Auditor for our Hyderabad, India office. This position will be responsible for developing, leading, performing information technology (IT) audits, Sarbanes-Oxley controls testing and assist in automating controls testing. This candidate must be able to assist in the planning of technology audits, including performing walkthroughs and tests of IT controls. Responsibilities Perform control testing to support the IT Audit plan, and the SOX 404 internal control assessment. Develop a thorough understanding of the Company’s business, technology, and operations. Assist with the testing design and create test automation as needed. Assist in the risk assessment process for various functional areas. Assist in the audit planning activities, including technical research on ongoing projects. Effectively communicate identified control deficiencies/issues to management. Facilitate documentation requests to auditees in a timely manner. Assist in administration activities for IA tools such as Teammate and ServiceNow Assist in the development of junior staff by providing peer reviews. Knowledge and Experience Undergraduate degree (BSc/BBA/BCA/ BE or equivalent) or higher required. Active CISA, CISM, CISSP certification preferred. Five (5) or more years of experience in IT audit, Risk or Infosec roles. Good verbal and written communication skills. Big Four audit experience is preferred A good understanding of IT processes, ITGCs and Information Security is highly preferred. A good understanding of three or more of the following areas: Cloud Security Networking and Telecommunications Data Protection and Privacy Risk Assessments Information Security (Vulnerability Management, Threat Detection and Analysis, SIEM etc.) Incident Management Identity Access Management Hands on experience in scripting or programming is a plus. Familiarity with data analytics tools: IDEA, Power BI, Tableau or Splunk is a plus. Familiarity with TeamMate+ or similar audit systems. Proficient in Microsoft Office (Excel) and Office 365.
Posted 1 week ago
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
The Security Information and Event Management (SIEM) job market in India is thriving, with a growing demand for professionals who can monitor, analyze, and respond to security incidents in real-time. SIEM jobs offer lucrative career opportunities for individuals with a strong understanding of cybersecurity concepts and technologies.
The average salary range for SIEM professionals in India varies based on experience level: - Entry-level: INR 4-6 lakhs per annum - Mid-level: INR 8-12 lakhs per annum - Experienced: INR 15-20 lakhs per annum
Career progression in the SIEM field typically follows a path from: - SIEM Analyst - SIEM Engineer - SIEM Consultant - SIEM Architect
In addition to SIEM expertise, professionals in this field are often expected to have knowledge of: - Network Security - Incident Response - Threat Intelligence - Security Operations Center (SOC) operations
As you explore SIEM jobs in India, remember to continuously upgrade your skills, stay informed about the latest cybersecurity trends, and practice answering interview questions to showcase your expertise confidently. With the right preparation and dedication, you can excel in the dynamic field of SIEM and carve out a successful career for yourself. Good luck!
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.