Principal Incident Response Analyst

4 weeks ago


Chennai, India Orion Innovation Full time
Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries including financial services, professional services, telecommunications and media, consumer products, automotive, industrial automation, professional sports and entertainment, life sciences, ecommerce, and education.
Job Description:
We are seeking a highly skilled Principal Incident Response Analyst to enhance our cybersecurity response capabilities in a Managed Security operations environment. The ideal candidate will have extensive experience in handling and resolving complex security incidents, with a strong background in Managed Detection and Response (MDR) and Managed SIEM environments. This role demands a hands-on approach to incident response, strong analytical skills, and effective communication with cross-functional teams.
Key Responsibilities:
Lead the response to complex security incidents, ensuring timely identification, analysis, and resolution.
Manage the daily operations of incident response, including the analysis of security alerts and the coordination of necessary response actions.
Utilize Managed SIEM and EDR solutions to effectively detect and respond to security threats, with a preference for expertise in IBM QRadar and Microsoft SentinelOne.
Collaborate with SOC analysts to refine SIEM rules, alerts, and correlation logic to enhance threat detection capabilities.
Support the ingestion and analysis of logs from various systems and applications into the SIEM platform to improve incident analysis.
Develop and refine incident response strategies, policies, and procedures to bolster the organization's security posture.
Monitor and analyze security events and incidents, ensuring comprehensive investigations and effective mitigations of potential threats.
Work closely with IT, Legal, and Risk Management teams to ensure cohesive incident response strategies and clear communication during and after incidents.
Drive continuous improvement of incident response processes and procedures to optimize efficiency and effectiveness.
Engage in Threat Intelligence and Threat Hunting activities to proactively identify and mitigate emerging security threats.
Build and maintain relationships with external partners, vendors, and industry peers to keep abreast of emerging threats, best practices, and new technologies.
Conduct assessments and audits of incident response activities and systems to identify improvement opportunities and ensure regulatory compliance.
Develop and deliver detailed reports on incident trends, response times, and the effectiveness of incident management.
Stay informed about the evolving cybersecurity landscape, including emerging threats and industry standards, to recommend proactive security measures.
Qualifications:
Proven experience (10+ years) in Managed security operations and incident response, preferably in a leading role.
Bachelor's degree in Computer Science, Information Security, or a related field (Master's degree preferred).
In-depth knowledge of incident response methodologies and security technologies (SIEM, IDS/IPS, EDR, etc.).
Strong understanding of TCP/IP protocols, network segmentation, VPNs, and firewall configuration.
Experience with Threat Intelligence, Threat Hunting, Vulnerability Management, and risk assessment frameworks.
Expertise in developing and refining SIEM rules, alerts, and correlation logic.
Ability to manage multiple security incidents in a fast-paced, dynamic environment.
Exceptional problem-solving and decision-making skills, with a proactive and results-driven mindset.
Excellent communication skills, capable of discussing complex security issues with both technical and non-technical stakeholders.
Relevant certifications such as CISSP, CISM, GCIH, GNFA or GIAC are highly desirable.
Orion is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, citizenship status, disability status, genetic information, protected veteran status, or any other characteristic protected by law.
Candidate Privacy Policy
Orion Systems Integrators, LLC and its subsidiaries and its affiliates (collectively, “Orion,” “we” or “us”) are committed to protecting your privacy. This (“Notice”) explains:
What information we collect during our application and recruitment process and why we collect it;
How we handle that information; and
How to access and update that information.
Your use of Orion services is governed by any applicable terms in this notice and our general .

  • Chennai, India Orion Innovation Full time

    Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries...


  • chennai, India Orion Innovation Full time

    Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries...


  • chennai, India Orion Innovation Full time

    Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries...


  • Chennai, Tamil Nadu, India Orion Innovation Full time

    Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries...


  • Chennai, India Orion Innovation Full time

    Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries...


  • Chennai, India Ford Motor Company Full time

    A Cyber Security Center Response Analyst with a current focus on structured and unstructured tasks associated with proactive identification and remediation of suspicious network and host based activity. Scope is for any Ford Motor Company asset or asset of any subsidiary or joint venture worldwide. The CSC Response Analyst is focused on addressing...


  • chennai, India Ford Motor Company Full time

    A Cyber Security Center Response Analyst with a current focus on structured and unstructured tasks associated with proactive identification and remediation of suspicious network and host based activity. Scope is for any Ford Motor Company asset or asset of any subsidiary or joint venture worldwide. The CSC Response Analyst is focused on addressing...


  • Chennai, Tamil Nadu, India Ford Motor Company Full time

    A Cyber Security Center Response Analyst with a current focus on structured and unstructured tasks associated with proactive identification and remediation of suspicious network and host based activity. Scope is for any Ford Motor Company asset or asset of any subsidiary or joint venture worldwide. The CSC Response Analyst is focused on addressing...


  • Chennai, India Freshworks Full time

    Job DescriptionWe are seeking a highly skilled and motivated Cybersecurity Incident Response Analyst to join our dynamic team at Freshworks. As a Cybersecurity Incident Response Analyst, you will play a crucial role in identifying, containing, and mitigating cyber threats and incidents to ensure the security and integrity of our organization's systems and...


  • Chennai, Tamil Nadu, India Freshworks Full time

    Job DescriptionWe are seeking a highly skilled and motivated Cybersecurity Incident Response Analyst to join our dynamic team at Freshworks. As a Cybersecurity Incident Response Analyst, you will play a crucial role in identifying, containing, and mitigating cyber threats and incidents to ensure the security and integrity of our organization's systems and...


  • Chennai, India Freshworks Full time

    Job DescriptionWe are seeking a highly skilled and motivated Cybersecurity Incident Response Analyst to join our dynamic team at Freshworks. As a Cybersecurity Incident Response Analyst, you will play a crucial role in identifying, containing, and mitigating cyber threats and incidents to ensure the security and integrity of our organization's systems and...


  • chennai, India Freshworks Full time

    Job DescriptionWe are seeking a highly skilled and motivated Cybersecurity Incident Response Analyst to join our dynamic team at Freshworks. As a Cybersecurity Incident Response Analyst, you will play a crucial role in identifying, containing, and mitigating cyber threats and incidents to ensure the security and integrity of our organization's systems and...


  • Chennai, Tamil Nadu, India Freshworks Full time

    Job DescriptionWe are seeking a highly skilled and motivated Cybersecurity Incident Response Analyst to join our dynamic team at Freshworks. As a Cybersecurity Incident Response Analyst, you will play a crucial role in identifying, containing, and mitigating cyber threats and incidents to ensure the security and integrity of our organization's systems and...


  • Chennai, India Freshworks Full time

    Company Description Freshworks makes it fast and easy for businesses to delight their customers and employees. We do this by taking a fresh approach to building and delivering software that is affordable, quick to implement, and designed for the end user. Headquartered in San Mateo, California, Freshworks has a global team operating from 13 global...


  • Chennai, India Freshworks Full time

    Company Description Freshworks makes it fast and easy for businesses to delight their customers and employees. We do this by taking a fresh approach to building and delivering software that is affordable, quick to implement, and designed for the end user. Headquartered in San Mateo, California, Freshworks has a global team operating from 13 global...


  • chennai, India Freshworks Full time

    Company Description Freshworks makes it fast and easy for businesses to delight their customers and employees. We do this by taking a fresh approach to building and delivering software that is affordable, quick to implement, and designed for the end user. Headquartered in San Mateo, California, Freshworks has a global team operating from 13...


  • chennai, India Freshworks Full time

    Company Description Freshworks makes it fast and easy for businesses to delight their customers and employees. We do this by taking a fresh approach to building and delivering software that is affordable, quick to implement, and designed for the end user. Headquartered in San Mateo, California, Freshworks has a global team operating from 13...

  • Principal IT Analyst

    2 weeks ago


    Chennai, Tamil Nadu, India zf india pvt ltd Full time

    Apply for Principal IT Analyst Systems Administration, Career Progress Consultants in Chennai for 3 - 9 Year of Experience on

  • Principal IT Analyst

    2 months ago


    Chennai, Tamil Nadu, India zf india pvt ltd Full time

    Apply for Principal IT Analyst Systems Administration, Career Progress Consultants in Chennai for 3 - 9 Year of Experience on


  • Chennai, India Databricks Full time

    RDQ324R4TheIncident Responseteam's mission is to respond to security threats, incidents and investigations to protect our customers, employees and enterprise data in an efficient and standardised manner. We're a tight-knit team of security incident responders and incident handlers doing "Security for Databricks on Databricks", using our own platform to...