Cyber Incident Handler
22 hours ago
3Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services. Solutions include managed security services, offensive security services, cybersecurity consulting, and professional services to help customers deploy all the necessary controls. The core services delivered by the SOC are Managed Detection and Response and Incident Response. About the Role: 3Columns is seeking a Cyber Incident Handler to join their team remotely. They will be responsible for working with the MDR team and leading escalated incidents, updating customers and stakeholders, and assisting the MDR team with investigations. Incident responders will work with SOC team, develop playbooks and update existing as required. The successful applicant will become integral to each client's cybersecurity strategy, developing strong relationships and becoming a trusted partner within each organisation. Please Note: - To save you time with rejections and save our time, if you do not have experience in Incident response, Stakeholder communication, investigation or Log analysis, you will be rejected. Candidates who will apply without any SOC experience just for the sake of applying will be blacklisted for the next 10 years. Cyber Incident Handler - Work with MDR analysts on escalated Incidents. Understand the incident, generate possible scenarios and work with Digital Forensics and Level 1 and Level 2 analysts and assist them with the investigation Perform triage and validation of suspicious activity, determining urgency and potential impact. Execute containment, eradication, and recovery actions during active cybersecurity incidents. Assist with Digital forensic analysis on endpoints, cloud services, and network artifacts to determine root cause and scope. Lead incident investigations and collaborate with internal stakeholders to minimise business disruption. Provide technical guidance to junior analysts during escalations and complex cases. Develop incident timelines, collect evidence, and ensure proper chain of custody for investigations. Document incidents, lessons learned, and produce high-quality incident reports for leadership. Maintain and tune detection content, response playbooks, and automation workflows (SOAR/XDR/SIEM). Participate in proactive threat hunting activities based on emerging threat intelligence. Support ongoing improvement of SOC maturity, readiness exercises, and incident response processes. Qualifications Bachelor’s degree in Cybersecurity / Information Technology / Computer Science (or equivalent experience). Industry certifications such as GIAC (GCIA / GCIH / GCFA) , CEH , Security+ , CySA+ , or Azure/AWS security credentials. Strong understanding of cybersecurity frameworks (MITRE ATT&CK, NIST CSF, ISO 27035). Proficiency with SIEM, EDR/XDR, and SOAR platforms (e.g., SentinelOne, CrowdStrike, Microsoft Defender, Splunk, Rapid7). Knowledge of TCP/IP networking, common protocols, and security tools (firewalls, IDS/IPS, proxies). Solid grasp of Windows, Linux, Active Directory, identity security, and cloud security fundamentals. Ability to interpret malware behaviour, logs, network traffic, and forensic artifacts. Strong written communication skills for executive and technical reporting. Relevant Experience 2–5 years working in a SOC or Cyber Incident Response function. Hands-on experience with threat detection, containment, and remediation activities. Involvement in major or moderate security incidents, including ransomware, BEC, insider threats, or phishing. Experience conducting forensic analysis on hosts (memory, disk) and cloud environments (M365, Azure, AWS). Development or optimisation of incident response playbooks and automation. Collaboration with IT teams to implement security controls and corrective actions. Exposure to red team scenarios, threat hunting operations, or purple team exercises. Real-world experience leveraging threat intelligence to improve detection capability.
-
Cyber Incident Handler
24 hours ago
Pune, India 3Columns Full time3Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services. Solutions include managed security services, offensive security services, cybersecurity consulting, and professional services to help customers deploy all the necessary controls....
-
Cyber Incident Handler
1 day ago
Pune, India 3Columns Full time3Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services. Solutions include managed security services, offensive security services, cybersecurity consulting, and professional services to help customers deploy all the necessary controls....
-
Cyber Incident Handler
16 hours ago
Pune, India 3Columns Full time3Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services. Solutions include managed security services, offensive security services, cybersecurity consulting, and professional services to help customers deploy all the necessary controls....
-
Cyber Incident Handler
2 days ago
Pune, Maharashtra, India 3Columns Full time ₹ 12,00,000 - ₹ 36,00,000 per year3Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services. Solutions include managed security services, offensive security services, cybersecurity consulting, and professional services to help customers deploy all the necessary controls....
-
Cyber Incident Handler
21 hours ago
Pune, India 3Columns Full time3Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services. Solutions include managed security services, offensive security services, cybersecurity consulting, and professional services to help customers deploy all the necessary controls....
-
Incident Handler
6 days ago
Pune, India Barclays Full timeJob Title: Incident Handler Location: Pune About Barclays Barclays is a British universal bank. We are diversified by business, by different types of customers and clients, and by geography. Our businesses include consumer banking and payments operations around the world, as well as a top-tier, full service, global corporate and investment bank, all of...
-
Incident Handler
1 week ago
Pune, Maharashtra, India TransUnion Full timeTransUnion's Job Applicant Privacy Notice **What We'll Bring**: This role is a member of the larger Threat Detection Services team, which includes security analysts and incident handlers who work alongside teams responsible for red teaming, intelligence analysis, and technical threat researchers. The individual filling this role will join our Special...
-
Cyber Security Trainer
2 weeks ago
Pune, Maharashtra, India Matfly Education Pvt. Ltd. Full time ₹ 4,20,000 - ₹ 6,00,000 per yearKey Responsibilities:Deliver training sessions on key topics in Cyber Security, including:Network Security and FirewallsEthical Hacking & Penetration TestingIncident Response & ForensicsSecurity Information and Event Management (SIEM)Cryptography and EncryptionMalware Analysis and Reverse EngineeringCloud Security and DevSecOpsSecurity Compliance (GDPR,...
-
Incident response with Scripting Professional
7 hours ago
Pune, Maharashtra, India Contactx Resource Management Pvt. Ltd. Full time ₹ 15,00,000 - ₹ 25,00,000 per year8+ years of experience in incident response and/or computer forensicsExtensive experience within an enterprise scale organisation ; including hands-on experience of complex data centre environments, preferably in the finance or similarly regulated sectorIndustry recognised cyber security related certifications including; CEH, EnCE , CRISC, SANS GSEC, GCIH,...
-
Incident Response L3
2 weeks ago
Pune, India Whatjobs IN C2 Full timeJob description We are seeking a Cyber Security Specialist to join the Security Operations team. The specialist will serve on the front lines of Security team and will lead and support security investigations across the companys global infrastructure as well as respond to escalations from different entities. The specialist will leverage an armory of tools to...