Cyber Defense Sr Specialist | Digital Forensics
7 days ago
We help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging – but it matters. You'll find a place where you can be yourself, prioritize your wellbeing, and truly belong. What's in it for you? Constant learning, skill growth, great benefits, and a team that wants you to grow and succeed. What you'll build Our Global Cyber Security Incident Response and Recovery Investigator are our first line of response for security event and incidents with a global scope. They are responsible for triaging security alerts detected by Enterprise Detection and SIEM, analysing available data to determine scope, severity, and priority to determine follow on actions. In escalation cases, they then work in a supportive capacity to further validate if a cyber-attack is occurring, scoping the extent of a suspected attack, coordinating efforts to contain attacks, supporting forensic investigations to determine the details around an attack, and providing guidance on remediation actions. In this role, you will: • Conduct initial assessments and help drive root cause analysis. • Contribute to the development of attack remediation and response strategies. • Coordinate escalation handling and communication across teams. • Triage operational security processes, including phishing response. • Assist in maintaining and improving incident handling documentation—such as playbooks, runbooks, and standard operating procedures. • Collaborate with Detection and SIEM teams to enhance detection logic and alert accuracy. • Support forensic investigations with technical insights and evidence collection. • Analysing cloud logs and telemetry for signs of compromise (e.g., CloudTrail, VPC Flow Logs, Azure Activity Logs). • Leverage your offensive knowledge to identify gaps, simulate attacks, and drive improvements in detection, response, and hardening strategies. • We value hands-on practitioners—our environment includes sandboxing, red vs. blue testing, or adversary emulation frameworks (e.g., MITRE ATT&CK, CALDERA, Atomic Red Team) and opportunities to build tooling or simulate attack chains. What you bring We are seeking analytical and detail-oriented critical thinkers who are solution-focused and thrive in dynamic environments. The ideal candidate should be a fast learner with the ability to adapt quickly and respond effectively to changing circumstances. Preferred Technical Skills and Experience: • Experience of 8–14+ years in a cyber incident investigation role or equivalent combination of education, certifications, and relevant training. • Certifications - Industry-recognized certifications such as Security+, GCIA, GCIH, GCFA, GCFE, GREM, CISSP (or equivalent). • Strong understanding of Advanced Persistent Threat (APT) actors, their tools, techniques, and procedures (TTPs), as well as threat modelling frameworks. • Proficiency in TCP/IP communications and knowledge of core network protocols and applications such as DNS, HTTP, and SMB. • Security Infrastructure Tools: (SIEM, IDS, EDR, DNS, other Deception technologies) • Proficiency in scripting languages such as PowerShell, Python, or Bash. • Core Forensic Competencies: • Expertise in memory, disk, and file system forensics across multiple OS platforms (Windows, Linux, macOS). • Experience performing volatile memory acquisition and analysis (e.g., using Volatility, Plaso, Sleuth Kit, Velociraptor, KAPE). • Proficient in analysing logs, timelines, and system artifacts to reconstruct attacker activity. • Proficiency in forensic toolsets such as EnCase, FTK, X-Ways, Autopsy/other. • Knowledge of file carving, metadata analysis, and data recovery. • Cloud Forensics & Logging: • Experience analysing cloud logs (e.g., CloudTrail, Azure Activity Logs, GCP Audit Logs). • Familiarity with cloud storage and compute forensics (e.g., EC2, Lambda, S3, Blob Storage). • Ability to investigate container and orchestration layers (e.g., Docker, Kubernetes, EKS/AKS/GKE) Where you belong An SAP Global Cyber Senior Incident Response and Recovery Investigator plays a critical role in safeguarding SAP’s digital enterprise. As a front-line defender, the Investigator is responsible for triaging security events identified by monitoring tools, analysing data to assess severity and urgency, and conducting initial evaluations to determine whether a cyberattack is underway. When a potential incident is identified, the Investigator works closely with Global Security Operations to scope the impact, coordinate containment efforts, and support forensic investigations to uncover the nature and details of the attack #SAPInternalT3 Bring out your best SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, you can bring out your best.
-
Cyber Defense Sr Specialist | Digital Forensics
2 weeks ago
Bengaluru, India SAP Full timeWe help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging – but it matters. You'll find a place where you can be yourself, prioritize your...
-
Digital Forensics Incident Response
2 weeks ago
Bengaluru, Karnataka, India b312d2b8-7ab1-49e9-949a-00deb5c23278 Full time ₹ 4,00,000 - ₹ 7,00,000 per yearWe're Hiring – DFIR Specialist | Ssquad GlobalLocation: Whitefield, BangaloreType: Full-time,Salary : As per Market Standard , 5 days Work from OfficeInterview Mode : First Round Virtual , 2nd Round Face to Face in Bangalore OfficeSsquad Global is looking for an experienced Digital Forensics & Incident Response (DFIR) Specialist to join our cybersecurity...
-
Associate - Digital Forensics
2 weeks ago
Bengaluru, India Proaxis Scitech Private Limited Full time**Associate - Digital Forensics** **Responsibilities** - Conduct remote, on-site, and in-lab forensic collections of digital evidence using best practices. - Conduct preliminary investigations and manage case intake. - Provide technical guidance and assistance to the team involved in the investigation. - Provide operational and administrative support. -...
-
Cyber Defense Specialist
3 days ago
Bengaluru, India SAP Full timeWe help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging – but it matters. You'll find a place where you can be yourself, prioritize your...
-
Cyber Security Forensics Sme
2 weeks ago
Bengaluru, Karnataka, India Unilever Full time**Job Title: Cyber Security Forensics SME** **Location: UniOps Bangalore** **ABOUT UNILEVER**: Be part of the world’s most successful, purpose-led business. Work with brands that are well-loved around the world, that improve the lives of our consumers and the communities around us. We promote innovation, big and small, to make our business win and grow;...
-
Digital Forensics Incident Response
2 weeks ago
Bengaluru, Karnataka, India Ssquad Global Full time ₹ 12,00,000 - ₹ 36,00,000 per yearWe're Hiring – DFIR Specialist | Ssquad GlobalLocation: Whitefield, BangaloreType: Full-time,Salary : As per Market Standard , 5 days Work from OfficeInterview Mode : First Round Virtual , 2nd Round Face to Face in Bangalore OfficeSsquad Global is looking for an experienced Digital Forensics & Incident Response (DFIR) Specialist to join our...
-
Cyber Defense Specialist
3 days ago
Bengaluru, India SAP Full timeWe help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging – but it matters. You'll find a place where you can be yourself, prioritize your...
-
Cyber Defense Specialist
2 days ago
Bengaluru, India SAP Full timeJob Description We help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging but it matters. You'll find a place where you can be yourself,...
-
Assistant Professor- Cyber Forensic
7 days ago
Bengaluru, India JGI & Jain(Deemed-to-be University) Full timeSchool Of science - Department of Forensic Sciecne(Cyber Forensic ) Qualification:Msc,UGC NET Qualified **Salary**: ₹15,394.39 - ₹30,000.00 per month Schedule: - Day shift Ability to commute/relocate: - Bangalore, Karnataka: Reliably commute or planning to relocate before starting work (required) **Education**: - Master's...
-
Forensic Analyst
5 days ago
Bengaluru, Chennai, Hyderabad, India ti Steps Full time ₹ 9,00,000 - ₹ 12,00,000 per yearJob Summary:We are seeking a meticulous and skilled Forensic Analyst to collect, analyze, and interpret physical or digital evidence to support criminal investigations and legal proceedings. The Forensic Analyst will use scientific methods and specialized techniques to uncover facts, maintain evidence integrity, and prepare detailed reports for law...