Cyber Security Senior Analyst

2 months ago


Hyderabad, Telangana, India Evernorth Full time

About Evernorth:

Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people.

Position Summary:

Evernorth Information Protection is looking for a Senior Analyst, Incident Response (IR). The Incident Response Senior Analyst is responsible for handling and coordinating lower severity cybersecurity incidents as part of a 24x7 operation. The IR Senior Analyst acts as a supporting role to the major incident management process in the event of High or Critical Severity cybersecurity incidents. The IR Senior Analyst also acts as a point of escalation to lower tier analysts and provides mentorship.

Job Description & Responsibilities:

  • Monitor and respond to security alerts generated by the Managed Security Service Provider (MSSP), Cignas SIEM and/or SOAR platforms.
  • Analyze, document, and communicate security events based on priority given by MSSP or SOC Team Lead and according to SOC protocol.
  • Provide escalation support for security events from SOC Analysts.
  • Participate in CSIRT functions supporting investigative requests and/or to assist with the development of containment/mitigation strategies.
  • Perform host and network-based log analysis to identify potentially infected hosts and escalate to appropriate team according to SOC protocol.
  • Correlate IOCs with data from information security systems/tooling to identify attacks and/or potentially compromised systems and escalate to appropriate team according to SOC protocol.
  • Collaborate with Cignas Threat Intelligence, Threat Hunt, and Adversary Simulation teams to refine and/or improve threat detections and/or security controls and configurations for security monitoring systems.
  • Contribute to the evaluation, testing, and implementation of new detections, security tools and processes.
  • Develop and maintain documentation for all assigned responsibilities. Develop and report on trends and provide focus and situational awareness on all issues to SOC leadership.
  • Required to perform duties outside of normal work hours based on business needs.

Experience Required:

  • Overall 3-5 years of I.T. and/or information security experience.
  • Minimum 1-3 years of experience detecting and responding to cyber intrusions.
  • Experience leveraging the Cyber Kill Chain and MITRE Attack Framework.
  • Experience using IR tools such as Splunk, Tanium, Volatility, Encase, FTK, SIFT, REMnux, etc.
  • Deep understanding of the cyber threat landscape, attack surfaces, and threats associated with each.
  • Deep understanding of enterprise security controls in Active Directory/Windows and UNIX environments.
  • Knowledgeable and experienced with Cloud security concepts and tooling.

Experience Desired:

  • Automating and/or scripting ability in one or more of the following: Python, Perl, Bash and/or Powershell.
  • Experience de-obfuscating potentially malicious content.
  • Experience doing static and dynamic malware analysis.

Education and Training Required:

  • A degree (bachelors degree preferred) from an accredited college and four years of satisfactory full-time experience required by the particular position; OR
  • Education and / or experience which is equivalent to the above
  • Relevant certifications such as Security+, CEH, CASP or similar

Primary Skills:

  • Ability to conduct memory and disk forensics, network traffic analysis, log correlations in support of Incident Response investigations.
  • Thorough knowledge of operating systems, networking, and host analysis.
  • Detailed understanding of attacker tactics, tools, and techniques.
  • Strong communication skills, both written and oral.
  • Strong analytical and investigative mindset

Additional Skills:

  • Ability to successfully interface with internal clients.
  • Ability to document and explain technical details in a concise, understandable manner.
  • Ability to manage and balance own time among multiple tasks, lead junior staff when required, and to work independently and as part of a team.


  • Hyderabad, Telangana, India Castellum Labs Full time

    About the RoleCastellum Labs is a Next Gen Cyber Security Technology Venture that started in 2018, from Hyderabad, India with global ambitions. Their vision is to change the cybersecurity value model in the industry. The company uses SaaS platforms, advanced lab infrastructure in the cloud and a team of specialized experts to deliver long-term value. Focus...

  • IT Security Analyst

    6 days ago


    Hyderabad, Telangana, India NTT Full time

    We are seeking an IT Security Analyst to join our Cyber Defence team. This role involves working with security tools and other security teams to monitor, analyse, interpret and report on client data.About the RoleThis is an entry-level position within the Managed Services Information Security Analyst team. The successful candidate will work under the...


  • Hyderabad, Telangana, India MAI Labs Full time

    Cyber Security Analyst Job DescriptionMai Labs is a pioneering startup dedicated to empowering the next billion users and democratizing the creation of value on the Internet. As a Senior VAPT Analyst, you will be instrumental in maintaining the security of systems, applications, and infrastructure.Job SummaryWe are seeking a skilled Cyber Security Analyst to...


  • Hyderabad, Telangana, India Micron Full time

    Job Title: Cyber Security Operations AnalystJob Summary:Micron Technology is seeking a highly skilled Cyber Security Operations Analyst to join our team. As a key member of our Global Security Organization, you will be responsible for triaging, investigating, and responding to security-related incidents. Your expertise in security operations, threat...


  • Hyderabad, Telangana, India Castellum Labs Full time

    Job Title: Cyber Security Operations Center AnalystCompany Description: Castellum Labs is a Next Gen Cyber Security Technology Venture that started in 2018, from Hyderabad, India with global ambitions, to change the cybersecurity service model. The company's vision is to change the cybersecurity value model in the industry. They use SaaS platforms, advanced...


  • Hyderabad, Telangana, India Micron Full time

    Job DescriptionThe Cyber Security Operations Analyst will be the main point of contact for all Security related incidents for the Cyber Security Operations team within the Global Security Organization. This position requires a highly skilled and detail-oriented individual who can effectively communicate technical information to non-technical stakeholders.Key...


  • Hyderabad, Telangana, India Micron Full time

    Job SummaryMicron Technology is seeking a highly skilled Cyber Security Operations Analyst to join our Global Security Organization. As a key member of our Cyber Security Operations team, you will be responsible for triaging, investigating, and performing the first line response to all security-related incidents.Key ResponsibilitiesPerform daily detect and...


  • Hyderabad, Telangana, India Castellum Labs Full time

    Job DescriptionCompany OverviewCastellum Labs is a pioneering Next Gen Cyber Security Technology Venture, established in 2018, with a global ambition to revolutionize the cybersecurity service model.Role DescriptionThis exciting opportunity is for a talented SOC Analyst / Sr. SOC Analyst (L1 and L2) to join our team in Hyderabad, India.Key...


  • Hyderabad, Telangana, India Micron Full time

    About the Role:We are seeking a highly skilled Cyber Security Operations Lead Analyst to join our team at Micron Technology. In this role, you will be responsible for leading the day-to-day operations of our Security Operations Center (SOC) and will be the main point of contact for all security-related incidents.Key Responsibilities:Lead the SOC team in...


  • Hyderabad, Telangana, India SkySys Full time

    Job DescriptionAt SkySys, we are seeking aCyber Security Analyst L4 to join our team.Main Responsibilities* Designing and architecting network security solutions using Palo Alto Networks' and Checkpoint firewall products.* Implementing and configuring Palo Alto Networks firewall and Checkpoint Firewalls according to the design specifications.*...


  • Hyderabad, Telangana, India NTT DATA Full time

    Role OverviewWe are seeking a talented Cyber Security Threat Analyst to join our team in a hybrid working environment.


  • Hyderabad, Telangana, India Evernorth Health Services Full time

    About EvernorthEvernorth Health Services, a division of The Cigna Group, is a leading provider of pharmacy, care, and benefits solutions to improve health and increase vitality.Job Title: Cyber Security Associate Advisor - Data Loss PreventionWe are seeking a highly skilled Cyber Security Associate Advisor to join our team. As a key member of our Information...


  • Hyderabad, Telangana, India WELLS FARGO BANK Full time

    About UsWells Fargo India enables global talent capabilities for Wells Fargo Bank NA., by supporting business lines and staff functions across Technology, Operations, Risk, Audit, Process Excellence, Automation and Product, Analytics and Modeling.Job OverviewOur Cyber Security team is seeking a Senior Information Security Analyst to join our Data Loss...


  • Hyderabad, Telangana, India Micron Full time

    Cyber Security Operations Manager RoleThe Cyber Security Operations Manager will be responsible for leading and managing the Cyber Security Operations Center (CSOC) team within the Global Security Organization. The CSOC manager will be primarily responsible for security event monitoring, management and response activities performed by the CSOC team. The CSOC...


  • Hyderabad, Telangana, India FedEx Full time

    Job Description:Interested in the possibilities to develop your career? We value our talented team members, and whenever possible, promote internal recruitment by giving first priority to existing team members when a position is vacant. FedEx was built on a philosophy that puts people first, one we take seriously.We are an equal opportunity employer and we...


  • Hyderabad, Telangana, India HighRadius Full time

    About HighRadiusHighRadius is a leading provider of cloud-based software solutions for the Office of the CFO. With a remarkable valuation of $3.1B and an annual recurring revenue exceeding $100M, we are poised for rapid growth.We're expanding our Cyber Security Team to include a dynamic Audit professional as an Associate Cyber Security Engineer/Cyber...


  • Hyderabad, Telangana, India CliqHR Full time

    Job Title: Senior Cyber Security ConsultantJob Description:We are seeking a highly experienced Senior Cyber Security Consultant to join our team at CliqHR. As a key member of our security team, you will be responsible for leading hands-on engagements and delivering results that address critical security concerns.Key Responsibilities:Leadership in Execution &...


  • Hyderabad, Telangana, India Micron Full time

    Job SummaryThe Cyber Security Operations Manager will be responsible for leading and managing the Cyber Security Operations Center (CSOC) team within the Global Security Organization. This role will be primarily focused on security event monitoring, management, and response activities performed by the CSOC team.ResponsibilitiesKey responsibilities include...


  • Hyderabad, Telangana, India Micron Full time

    Job SummaryWe are seeking a highly skilled Cyber Security Operations Analyst to join our team at Micron Technology. This is an exciting opportunity to work in a fast-paced environment, responsible for triaging, investigating, and responding to security-related incidents.


  • Hyderabad, Telangana, India FedEx Full time

    Job SummaryWe are seeking a highly skilled Cyber Security Analyst-Senior II to join our team at FedEx. This role will be responsible for ensuring consistent state across the enterprise by supporting Business Unit (BU) and Service Provider activities encompassing endpoint security, network security, perimeter security, and data security.Key...