Crowdstrike EDR Engineer

1 week ago


Bengaluru, Karnataka, India World Wide Technology Full time

L2 onsite experts with a minimum of 5 years' experience to manage Crowdstrike EDR, Forcepoint DLP, and Arcon PAM during business hours. Each expert must be skilled in at least 2 out of the 3 platforms and certified by the respective OEMs. The vendor must ensure continuous certification updates at their expense. Replacement resources are needed for planned leaves exceeding 2 days. All experts must work from AOL Office and receive technical support from vendor backend senior resources when needed. Only tenured resources from the vendor are acceptable; no fresh hires are allowed.

Following is the list of indicative activities that the resource needs to perform in various technologies on-site:

1. DLP (Data Loss Prevention):

Configuration and management of DLP tools and policies.

Monitoring and analysis of data flows across networks, endpoints, and storage systems.

Incident response for DLP alerts and violations.

2. EDR (Endpoint Detection and Response):

Deployment and configuration of EDR agents on endpoints (workstations, servers, etc.).

Continuous monitoring of endpoint activities for signs of malicious behavior or compromise.

3. PAM (Privileged Access Management):

Deployment and configuration of PAM solutions to manage privileged accounts and access.

Inventory and management of privileged accounts across systems and applications.

Implementation of least privilege access principles to restrict access rights.

Following is the list of indicative activities that the resource needs to perform in various technologies on-site:

1. DLP (Data Loss Prevention):

Configuration and management of DLP tools and policies.

Monitoring and analysis of data flows across networks, endpoints, and storage systems.

Incident response for DLP alerts and violations.

2. EDR (Endpoint Detection and Response):

Deployment and configuration of EDR agents on endpoints (workstations, servers, etc.).

Continuous monitoring of endpoint activities for signs of malicious behavior or compromise.

3. PAM (Privileged Access Management):

Deployment and configuration of PAM solutions to manage privileged accounts and access.

Inventory and management of privileged accounts across systems and applications.

Implementation of least privilege access principles to restrict access rights.



  • Bengaluru, Karnataka, India Capgemini Full time

    Job Description:- Monitor EDR & AV logs:- Monitor dashboard for compliance, threats and troubleshoot:- Check if any incidents are missed by L1 and follow up for the cause:- Basic level of fine tune policies and provide service improve plans:- Maintain the SOP for the new events:- Supporting L1 & L2 for unresolved tickets:- Raise case and follow up with...


  • Bengaluru, Karnataka, India CrowdStrike Full time

    #WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We're looking for people with limitless passion, a relentless focus on innovation and a fanatical...


  • Bengaluru, Karnataka, India Trellix Full time

    EDR Detection EngineerJob Summary:We are looking for a skilled EDR (Endpoint Detection and Response) Detection Engineer to focus on our preparation for the 2024 MITRE ATT&CK Enterprise evaluation. Your primary responsibility will be to evaluate and improve our EDR product's detection capabilities in preparation for the evaluation. You will leverage your...


  • Bengaluru, Karnataka, India Trellix Full time

    EDR Detection EngineerJob Summary:We are looking for a skilled EDR (Endpoint Detection and Response) Detection Engineer to focus on our preparation for the 2024 MITRE ATT&CK Enterprise evaluation.Your primary responsibility will be to evaluate and improve our EDR product's detection capabilities in preparation for the evaluation.You will leverage your...


  • Bengaluru, Karnataka, India Capgemini Full time

    Monitor EDR & AV logs. Monitor dashboard for compliance, threats and troubleshoot. Check if any incidents are missed by L1 and follow up for the cause. Basic level of fine tune policies and provide service improve plans. Maintain the SOP for the new events. Supporting L1 & L2 for unresolved tickets. Raise case and follow up with support for any issue. Policy...


  • Bengaluru, Karnataka, India Trellix Full time

    Sr Solutions EngineerEDR Detection EngineerSolutions EngineerCustomer Success Manager - Poland (German Speaking)Industrial Security Specialist (CSSO/FSO)Sr. Product Certification Program ManagerAccountantSoftware Development Engineer in TestSoftware EngineerSoftware EngineerCustomer Success ManagerEnterprise Solutions EngineerCustomer Success...


  • Bengaluru, Karnataka, India Trellix Full time

    Sr Solutions EngineerEDR Detection EngineerSolutions EngineerCustomer Success Manager - Poland (German Speaking)Industrial Security Specialist (CSSO/FSO)Sr. Product Certification Program ManagerAccountantSoftware Development Engineer in TestSoftware EngineerSoftware EngineerCustomer Success ManagerEnterprise Solutions EngineerCustomer Success...


  • Bengaluru, Karnataka, India TECPLIX TECHNOLOGIES PRIVATE LIMITED Full time

    Engineer main duties and responsibilities: Develop and implement content for SIEM platforms, including Google Chronicle, Sumologic, and Splunk. Configure and fine-tune use cases, correlation, grouping, and logical rules in SIEM tools. Integrate new log sources, assets with SIEM, and incremental threat intelligence feeds. Draft, test, and deploy YARA and...


  • Bengaluru, Karnataka, India BirlaSoft Full time

    Cyber Security Team leadJob Responsibilities:ØIncident and Data breach handling experience(example Ransomware, Malware attack etc.)ØAlerts identification (example identify false positive) and incident triagingØAct as SME for Security Incident Event Management(SIEM) and SOC OperationsØMonitor, detect and respond to threats in customer environments using...


  • Bengaluru, Karnataka, India Publicis Re:Sources India Full time

    Job Description 6+ years working in a dedicated SOC environment. Hands-on experience in working on SIEM tools like SumoLogic ,Splunk etc. Experience in working on XDR/EDR tools like SentinelOne, Crowdstrike etc. Hands-on experience in use case creation in SIEM. Working knowledge of cloud security (AWS, Azure). Well versed with information...


  • Bengaluru, Karnataka, India BirlaSoft Full time

    Cyber Security Team lead Job Responsibilities: Ø Incident and Data breach handling experience (example Ransomware, Malware attack etc.) ØAlerts identification (example identify false positive) and incident triaging ØAct as SME for Security Incident Event Management (SIEM) and SOC Operations ØMonitor, detect and respond to threats in...

  • SOC Analyst

    1 week ago


    Bengaluru, Karnataka, India [24]7 Full time

    SOC Analyst - 1:POSITION SUMMARY:The Level One SOC Monitoring analyst will fit into a global team providing 24/7 monitoring and first line of response for incidents, as L1 Engineer you are expected to conduct investigations, monitor for alerts, triage, and mitigation of detected threats/issues, also to start and track security investigations for...


  • Bengaluru, Karnataka, India IT Full time

    Job description: Expertise in leading and managing security operations, specifically utilizing CrowdStrike technologies. Proficient in implementing and managing CrowdStrike Falcon platform for endpoint protection. Indepth knowledge of threat intelligence, incident response, and vulnerability management. Strong understanding of security best practices,...

  • Bengaluru

    1 week ago


    Bengaluru, Karnataka, India Qualitest Full time

    Acknowledge, analyse, and validate incidents triggered from correlated events through SIEM solutionoCollection of necessary logs that could help in the incident containment and security investigationoEscalate validated and confirmed incidents to SOC LeadoUndertake first stages of false positive and false negative analysisoOpen incidents in ITSM Platform to...

  • Analyst, SOC

    1 week ago


    Bengaluru, Karnataka, India News Corp Full time

    Job Description:Equal Opportunity Employer:All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, protected veteran status, or disability status EEO/AA/M/F/Disabled/VetsJob Title:SOC AnalystJob Location: Bengaluru, KarnatakaWork Arrangement: Hybrid (3 days per week in office)The...

  • IT Support Engineer

    1 week ago


    Bengaluru, Karnataka, India Mercari, Inc. (India) Full time

    RequirementsAs an IT and Security Specialist, you will manage, operate, and provide technical support for Mercari India's systems and IT assets. You will play an active role in building out Mercari India's IT and security culture, optimizing the internal IT environment, and creating the foundation for resilient IT operations.You will help drive business...


  • Bengaluru, Karnataka, India Opalforce Inc Full time

    KeyResponsibilities: Deliver the comprehensive solution for Identity Access Managementover 5G core on AWS EC2 cloud especially customed to telcoapplications.Deliver the comprehensive solution for End system Detection andResponse over 5G core on AWS EC2 with minimum impacting on the 5Gcore callprocessing.Deliver the comprehensive solution for security logging...

  • Soar (Rm 2209)

    1 week ago


    Bengaluru, Karnataka, India Source-right Full time

    Job Descriptions:JD is attached. Please advise if we can give a resource 4+ year with attached skill set. Mentioned below for your reference. 4+ years of technical experience in the Information Security field with direct experience with SOAR or other automation solutions. Minimum 2 years of handson SOC / IR experience. Experience with SOAR or other...

  • Solution Engineer

    1 week ago


    Bengaluru, Karnataka, India Cyware Full time

    Cyware is where you belongCyware offers the technology organizations need to build a virtual cyber fusion center. With separate but integrated solutions including an advanced threat intel platform (TIP), vendor-agnostic security automation (SOAR), and security case management, organizations are able to increase speed and accuracy while reducing costs and...

  • Solution Engineer

    1 week ago


    Bengaluru, Karnataka, India Cyware Full time

    About CywareCyware delivers an innovative approach to cybersecurity that unifies threat intelligence, automation, threat response, and vulnerability management with data insights gleaned from assets, users, malware, attackers, and vulnerabilities. Cyware's Cyber Fusion platform integrates SOAR and TIP technology, enabling collaboration across siloed security...