Posted:10 hours ago|
Platform:
Work from Office
Full Time
Meet the Team
* Design, develop, and implement security detection rules, signatures, and use cases across various security platforms (SIEM, EDR, IDS/IPS, Cloud Native Security Tools)
* Translate threat intelligence and adversary tools, tactics & procedures (TTPs) into actionable detection logic
* Perform continuous tuning and optimization of existing detection rules to reduce false positives and improve detection efficacy
* Collaborate with Threat Hunters and Incident Responders to understand emerging threats and incident patterns, incorporating lessons learned into new detection strategies
* Engage with data source & business SMEs (subject matter experts) in SVIC and InfoSec to build & improve methods for detecting security incidents in cloud (IaaS, SaaS, PaaS) environments
* Research and deploy modern technologies or enhancements to support business objectives related to security detection, threat hunting, forensics, and response
* Study how attackers operate and their methods, and use your IT and networking expertise to build & improve detection logic and investigative procedures
* Collaborate with your peers to evolve our operational processes & procedures towards improving efficiency & efficacy
* Cultivate expertise in the technical subjects you are passionate about, to guide SVIC towards better ways in achieving our mission
* Teach, mentor and support your peers in areas you have specialized knowledge or experience
* Represent SVIC in collaboration with industry peers and in trusted working groups
* Participate in a follow-the-sun on-call rotation
Minimum Qualifications* Minimum of 5-6 years of hands-on experience in security detection engineering, incident handling, or a closely related cyber security role
* Self-Starter, Go-Getter & Self-Learner
* Superb communication (verbal and written) skills
* Reasonable scripting/coding abilities (e g , Python, PowerShell) and an eye for automation opportunities
* Networking Experience: A solid grasp of networking and core Internet protocols (e g TCP/IP, DNS, SMTP, HTTP, TLS and distributed networks)
* Security Technology Experience: Extensive experience with security detection platforms such as SIEM (e g , Splunk, Elastic, Sentinel), EDR (e g , Cisco Secure Endpoint, CrowdStrike, SentinelOne), IDS/IPS, and Cloud Security Posture Management (CSPM) tools
* Cloud Experience: Experience or familiarity with the usage of cloud computing platforms & components, like - AWS, GCP, Azure, Docker, Kubernetes, etc , specifically in the context of cloud native detection
* Dev-Sec-Ops Experience: Experience or familiarity with integrating security into CI/CD pipelines and automating security controls
* IT Infrastructure Experience: Extensive knowledge of IT infrastructure services, Operating systems (Windows, Linux), and networking
* Identity Management Experience: Experience or familiarity with protocols & products used for authentication & authorization, like - Radius, Active Directory, LDAP, NTLM, Kerberos, SAML, OAuth, JWT, etc , and detecting abuse
* Experience in developing and deploying detection rules using formats like YARA, Sigma, or custom SIEM queries
* Experience in one or more data analytics platforms or languages like - Splunk, Elastic Stack, Kusto Query Language (KQL), Structured Query Language (SQL), etc , for log analysis and rule creation
Preferred Qualifications* Agility in managing multiple detection projects concurrently and a curiosity to learn about new threats and technologies
* Proven track record of designing and implementing effective security detections
* Flexibility - willingness to pitch in where needed across program and team, and outside typical business hours
* Ability to work shift hours as well as on-call out of hours
* Leadership, influence, and collaboration skills; sound problem resolution, judgment, negotiating and decision-making skills
Cisco
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
Practice Python coding challenges to boost your skills
Start Practicing Python Now
bengaluru
7.0 - 12.0 Lacs P.A.
6.0 - 10.0 Lacs P.A.
hyderabad
9.0 - 14.0 Lacs P.A.
hyderabad
9.0 - 14.0 Lacs P.A.
17.0 - 22.5 Lacs P.A.
chennai
13.0 - 17.0 Lacs P.A.
25.0 - 30.0 Lacs P.A.
mumbai, mumbai suburban, mumbai (all areas)
5.5 - 11.0 Lacs P.A.
bengaluru
7.0 - 12.0 Lacs P.A.
5.0 - 8.0 Lacs P.A.