Sr. Cloud Threat Research Engineer

2 months ago


pune, India Qualys Full time

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world

Be a member of the Cloud Detection and response team to rapidly respond to new and emerging threats. The candidate will have expertise in analyzing cloud platform logs, to detect security threats, unauthorized access, and suspicious activities within cloud environments. The candidate should have a deep understanding of cloud services, security configurations, and the ability to develop custom detection rules and alerts based on cloud platform logs. This role requires strong analytical skills, attention to detail, and the ability to work collaboratively in a dynamic and fast-paced environment to continuously enhance product detection capabilities

Key Responsibilities:

Analyze cloud platform logs (CloudTrail, Audit Logs, etc.) and Logs to identify patterns and anomalies indicative of security threats or unauthorized access. Develop implement and maintain detection rules based on cloud platform logs to identify specific activities and events within cloud environment. Create and optimize alerts and notifications for security incidents identified through log analysis. Perform adversary emulation activities to identify detection gaps in the environment. Stay updated with cloud service changes and ensure detection mechanisms are adjusted accordingly. Tune detection rules to enhance threat detection capabilities according to threat intelligence reports. Knowledge and implementation of MITRE ATT&CK to map use cases across the initial points of exposure, alert mapping, and incident reporting. Collaborate with security teams to refine detection rules based on the latest threat intelligence. Work closely with teams to discover new detection capabilities. Integrate cloud platform log data with SIEM systems for centralized monitoring and correlation with other security events. Document detection rules, processes, and methodologies for cloud platform log analysis. Generate regular reports on security findings, incidents, and remediation activities for stakeholders and management.

Experience :

5+ years of experience in cybersecurity as a Threat Detection Analyst or a Threat Detection Engineer.

Qualifications:

Bachelor’s degree in computer science, Information Security, or related field (or equivalent work experience). Relevant certifications are nice to have such as AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate, or Google Cloud Professional Cloud Security Engineer are a plus.

Technical Qualifications:

Solid experience in analyzing cloud service providers' log formats like AWS CloudTrail, Azure Audit Logs, and GCP Audit Logs and Logs In-depth knowledge and experience with cloud-native security tools, security configurations, services, and best practices. Developing custom detection rules. Knowledge of threat intelligence sources and indicators of compromise (IOCs). Proficiency in programming/scripting languages such as Python, PowerShell, or similar languages for log analysis. Experience with SIEM systems and log integration. Understanding of DevOps and CI/CD pipelines in cloud environments.

Soft Skills:
 

Excellent communication and collaboration skills Adapt to changing priorities and quickly come up with innovation solutions. 'Can-do' attitude and strong analytical, problem-solving skills. Self-driven. Ability to take initiatives and work with minimal supervision. Act as a go-to person for your area of expertise Provide timely updates and reports.

  • Pune, India Qualys Full time

    Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!Be a member of the Cloud Detection and response team to rapidly respond to new and emerging threats. The candidate will have expertise in analyzing cloud platform logs, to detect security threats, unauthorized access, and suspicious activities...


  • Pune, India Qualys Full time

    Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Be a member of the Cloud Detection and response team to rapidly respond to new and emerging threats. The candidate will have expertise in analyzing cloud platform logs, to detect security threats, unauthorized access, and suspicious...


  • Pune, India TransUnion LLC Full time

    What We'll Bring: This role is a senior GCC member of the TransUnion Global Threat Detection Service Operations team, which includes TDS/SOC analysts, incident handlers as well as folks responsible for red teaming, intelligence analysis, and technical threat researchers. This role will focus on proactive monitoring and alert enhancements for TDS, DLP and...


  • pune, India Forescout Technologies Inc Full time

    What We Do Managing cyber risk, together – As the world is becoming more and more connected so is the need for Forescout’s solutions. Forescout is at the forefront of one of the largest needs in the security space. Forescout delivers automated cybersecurity across the digital terrain, maintaining continuous alignment of customers’ security frameworks...


  • Pune, India Forescout Technologies Inc Full time

    What We Do Managing cyber risk, together – As the world is becoming more and more connected so is the need for Forescout’s solutions. Forescout is at the forefront of one of the largest needs in the security space. Forescout delivers automated cybersecurity across the digital terrain, maintaining continuous alignment of customers’ security frameworks...

  • Threat Researcher Ii

    1 month ago


    Pune, Maharashtra, India CrowdStrike Full time

    #WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We’re looking for people with limitless passion, a relentless focus on innovation and a...


  • pune, India Qualys Full time

    Description : Qualys is looking for threat researchers who can leverage their experience and expertise to identify and analyze threats, produce original research publications, and work with engineering teams to provide a feedback and related insights into a multitude of Qualys products.You will be a member of the Qualys Threat Research Team, a team...


  • Pune, India Qualys Full time

    Description : Qualys is looking for threat researchers who can leverage their experience and expertise to identify and analyze threats, produce original research publications, and work with engineering teams to provide a feedback and related insights into a multitude of Qualys products. You will be a member of the Qualys Threat Research Team, a team...


  • Pune, India Forescout Technologies Inc Full time

    What We DoManaging cyber risk, together – As the world is becoming more and more connected so is the need for Forescout’s solutions. Forescout is at the forefront of one of the largest needs in the security space. Forescout delivers automated cybersecurity across the digital terrain, maintaining continuous alignment of customers’ security frameworks...

  • Cyber Threat Research

    4 weeks ago


    Pune, India Fortinet Full time

    **About Fortinet** Fortinet is a worldwide provider of network security appliances and the market leader in unified threat management (UTM).Our products and subscription services provide broad, integrated and high performance protection against dynamic security threats while simplifying the IT security infrastructure.We develop and sell cybersecurity...

  • Threat Researcher Ii

    1 month ago


    Pune, Maharashtra, India Quick Heal Full time

    **Threat Researcher II**: Marvel Edge 8th Floor, Pune, Maharashtra, India - Sub Department- SEQRITE LABS- Job posted on- Apr 29, 2024- Employee Type- Full Time- Experience range (Years)- 3 years - 6 years- Functional Area- N.A.- Research & understanding latest Vulnerabilities, exploits, Malware CnC and write quality network detections in network Security...


  • Pune, India IT Full time

    Job Description :- Minimum 8 years combined experience in either incident response, threat intelligence or threat hunting.- Strong understanding of network protocols, traffic analysis techniques, and network forensics tools.- Thorough understanding of Windows OS and Linux internals.- Proficient coding skills specifically in Python, Powershell, and Bash.-...

  • Sr. Cloud

    1 month ago


    Pune, India IBN Technologies Limited Full time

    Pune, Maharashtra.Industry :IT/ ITeSRelevant Experience required:3+ years’ experience.Position :Sr. Cloud & Network Security Engineer (VAPT)Mandatory:3-5+ years of hands on experience in Cloud and Network Security -vulnerability assessment and penetration testing (VAPT)Graduate in Computer Science, IT, Cyber Security or MCA.Certified in Cloud Security...


  • Pune, India Dew Software Full time

    Dew Software, a global leader in digital transformation solutions, is looking for a skilled Sr. Info Security Engineer to join their talented team. With a strong presence in the digital landscape and a reputation for excellence, Dew Software collaborates with Fortune 500 companies to drive innovation and deliver exceptional results.As a Sr. Info Security...


  • Hyderabad/Pune, IN IT Full time

    Job Description :- Minimum 8 years combined experience in either incident response, threat intelligence or threat hunting.- Strong understanding of network protocols, traffic analysis techniques, and network forensics tools.- Thorough understanding of Windows OS and Linux internals.- Proficient coding skills specifically in Python, Powershell, and Bash.-...


  • pune, India Dew Software Full time

    Dew Software, a global leader in digital transformation solutions, is looking for a skilled Sr. Info Security Engineer to join their talented team. With a strong presence in the digital landscape and a reputation for excellence, Dew Software collaborates with Fortune 500 companies to drive innovation and deliver exceptional results. As a Sr. Info Security...


  • Pune, India Dew Software Full time

    Dew Software, a global leader in digital transformation solutions, is looking for a skilled Sr. Info Security Engineer to join their talented team. With a strong presence in the digital landscape and a reputation for excellence, Dew Software collaborates with Fortune 500 companies to drive innovation and deliver exceptional results.As a Sr. Info Security...

  • Sr. Cloud

    2 months ago


    pune, India IBN Technologies Limited Full time

    Pune, Maharashtra.Industry :  IT/ ITeS Relevant Experience required:  3+ years’ experience. Position :  Sr. Cloud & Network Security Engineer (VAPT) Mandatory: 3-5+ years of hands on experience in Cloud and Network Security -vulnerability assessment and penetration testing (VAPT) Graduate in Computer Science, IT, Cyber Security or MCA. Certified in...

  • Sr. Cloud

    2 months ago


    Pune, India IBN Technologies Limited Full time

    Pune, Maharashtra.Industry : IT/ ITeSRelevant Experience required: 3+ years’ experience.Position : Sr. Cloud & Network Security Engineer (VAPT)Mandatory:3-5+ years of hands on experience in Cloud and Network Security -vulnerability assessment and penetration testing (VAPT)Graduate in Computer Science, IT, Cyber Security or MCA.Certified in Cloud...


  • Pune, Maharashtra, India Quick Heal Full time

    Department - DETECTION & THREAT REASEARCH - Job posted on - May 29, 2024 - Employee Type - Full Time - Experience range (Years) - 2 years - 5 years - Functional Area - N.A. Security Researcher (Threat Intelligence) **Job Description**: **About the Role** In this dynamic role, you'll be at the forefront of our security operations, leading the charge in...