Threat Analyst- Team Lead

3 weeks ago


Bangalore Karnataka, India Sophos Full time

About Us Sophos is a global leader and innovator of advanced security solutions for defeating cyberattacks The company acquired Secureworks in February 2025 bringing together two pioneers that have redefined the cybersecurity industry with their innovative native AI-optimized services technologies and products Sophos is now the largest pure-play Managed Detection and Response MDR provider supporting more than 28 000 organizations In addition to MDR and other services Sophos complete portfolio includes industry-leading endpoint network email and cloud security that interoperate and adapt to defend through the Sophos Central platform Secureworks provides the innovative market-leading Taegis XDR MDR identity threat detection and response ITDR next-gen SIEM capabilities managed risk and a comprehensive set of advisory services Sophos sells all these solutions through reseller partners Managed Service Providers MSPs and Managed Security Service Providers MSSPs worldwide defending more than 600 000 organizations worldwide from phishing ransomware data theft other every day and state-sponsored cybercrimes The solutions are powered by historical and real-time threat intelligence from Sophos X-Ops and the newly added Counter Threat Unit CTU Sophos is headquartered in Oxford U K More information is available at www sophos com Role Summary Sophos is seeking an experienced and motivated Security Operations Manager to support its Managed Detection and Response MDR customers The successful candidate will be responsible for the operational management and effectiveness of the Security Operations Center and its personnel This involves overseeing the day-to-day security operations and ensuring the strategic and operational mission of the MDR Team is fulfilled What you will do Maintain supervision over operational tasks and provide day-to-day oversight for threat analysts Oversee analysts in their investigation and response Activities when security incidents arise to determine possible root cause and resolution Effectively communicate information to stakeholders of all levels Demonstrate experience in network and host-based intrusion analysis incident response processes and procedures digital forensics and or handling malware Acting as a lead throughout incident scenarios and provide subject matter expertise in cybersecurity incident response Successfully executing incident handling procedures as well as direct response to cyber security incidents Maintaining current knowledge and recognition of attacker tools tactics and procedures to produce indicators of compromise IOCs that can be utilized during active and future investigations Assessing cyber threat intelligence open source intelligence and operationalizing that information Demonstrating real-world hands-on experience dealing with sophisticated malware and dynamic cyber threat actors Identifying current and emerging threats and application of such research What you will bring 7 years of experience within a cybersecurity environment with some experience in a leadership role is required Bachelor s in information technology Computer Science or a related field or relevant commensurate work experience Experience in a security operations center or similar environment and identifying indications of compromise or attack and responding to incidents Endpoint and network security experience required IDS IPS EDR ATP Malware defenses and monitoring experience Threat hunting and threat intelligence experience Knowledge of common adversary tactics and techniques e g obfuscation persistence defense evasion etc Knowledge of Mitre ATT CK framework Working knowledge of incident response procedures Experience with SQL query construction preferred Experience with OSQuery is a plus Experience administering and supporting Windows OS both workstations and server and one of the following Apple or Linux-based operating systems e g XP Windows 7 2003 2008 OS X Fundamental understanding of network traffic analysis including TCP IP routing switching protocols etc LI-Remote B2 Ready to Join Us At Sophos we believe in the power of diverse perspectives to fuel innovation Research shows that candidates sometimes hesitate to apply if they don t check every box in a job description We challenge that notion Your unique experiences and skills might be exactly what we need to enhance our team Don t let a checklist hold you back - we encourage you to apply What s Great About Sophos Sophos operates a remote-first working model making remote work the primary option for most employees However some roles may necessitate a hybrid approach While we are a remote first organization applicants must have legal authorization to work in the jurisdiction where the position is posted without requiring employer sponsorship Our people - we innovate and create all of which are accompanied by a great sense of fun and team spirit Employee-led diversity and inclusion networks that build community and provide education and advocacy Annual charity and fundraising initiatives and volunteer days for employees to support local communities Global employee sustainability initiatives to reduce our environmental footprint Global fitness and trivia competitions to keep our bodies and minds sharp Global wellbeing days for employees to relax and recharge Monthly wellbeing webinars and training to support employee health and wellbeing Our Commitment To You We re proud of the diverse and inclusive environment we have at Sophos and we re committed to ensuring equality of opportunity We believe that diversity combined with excellence builds a better Sophos so we encourage applicants who can contribute to the diversity of our team All applicants will be treated in a fair and equal manner and in accordance with the law regardless of gender sex gender reassignment marital status race religion or belief color age military veteran status disability pregnancy maternity or sexual orientation We want to give you every opportunity to show us your best self so if there are any adjustments we could make to the recruitment and selection process to support you please let us know Data Protection If you choose to explore an opportunity and subsequently share your CV or other personal details with Sophos these details will be held by Sophos for 12 months in accordance with our Privacy Policy and used by our recruitment team to contact you regarding this or other relevant opportunities at Sophos If you would like Sophos to delete or update your details at any time please follow the steps set out in the Privacy Policy describing your individual rights For more information on Sophos data protection practices please consult our Privacy Policy



  • bangalore, India ZeroFox Full time

    ZeroFox is a leading external cybersecurity company that provides enterprises with a comprehensive platform to protect against threats outside the perimeter. We combine artificial intelligence with human expertise to deliver advanced threat intelligence, digital risk protection, and adversary disruption.We are seeking a highly motivated and experienced...


  • bangalore, India StoneX Group Full time

    OverviewAs a Threat Intelligence Analyst, you will be responsible for supporting the threat intelligence function at StoneX. You will work closely with the Exposure Management Manager and Threat Intelligence Lead Analyst to provide timely situational awareness, translate cyber threats into actionable information to ensure resources are focused on the right...


  • Bangalore, Karnataka, India BD Full time

    Summary We are seeking a talented Product Security and Threat Analyst Engineer to join our Post-Market Vulnerability Team You will be at the forefront of our product security cybersecurity defense This role will focus on identifying analyzing and mitigating cyber threats and vulnerabilities affecting BD s medical products The successful candidate will...


  • bangalore, India NTT DATA, Inc. Full time

    Role : Threat Intelligence Analyst - L2 Location: Mumbai– Client Site Work Mode: Work from Office Payroll: NTT Data Budget: ₹15 LPA (Including 5% variable) Notice Period: Immediate to 30 days only Requirement Brief : · Minimum 5 years of experience in Threat intelligence. · Only candidates who are expert on Threat Intelligence platform. · CTIA/CEH/CSA...


  • bangalore, India ZeroFox Full time

    As an Lead Intelligence Analyst -Deep and Darkweb Desk, you will join ZeroFox's Intelligence Team: a group of analysts who dedicate themselves to protecting customers and their assets from digital and physical security threats. With our proprietary hybrid intelligence platforms and methodologies, you will utilize your collection, analysis, and scripting...


  • Bangalore, Karnataka, India Pinkerton Full time

    Overview 170 Years Strong Industry Leader Global Impact At Pinkerton the mission is to protect our clients To do this we provide enterprise risk management services and programs specifically designed for each client Pinkerton employees are one of our most important assets and critical to the delivery of world-class solutions Bonded together we share a...

  • Cyber Security

    4 weeks ago


    bangalore, India Sanganan IT Solutions Pvt Ltd. Full time

    Job Title: Team Lead - Security Operations Center (SoC) Location : Noida/Singapore Office WORK FROM NOIDA OFFICE, PLEASE DON'T APPLY IF YOU ARE LOOKING FOR HYBRID OR WORK FROM HOME Short notice period or immediate joiners are preferred. Job Overview: As the SOC Team Lead, you will oversee the daily operations and strategic direction of a multi-tiered...


  • Bangalore, India Smarsh Full time

    Smarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. top 8 European, top 5 Canadian, and top 3 Asian banks. The Smarsh advantage is customers stay ahead of compliance and uncover patterns and relationships hidden within...


  • Bangalore, India Jobted IN C2 Full time

    Overview: 170+ Years Strong. Industry Leader. Global Impact. At Pinkerton, the mission is to protect our clients. To do this, we provide enterprise risk management services and programs specifically designed for each client. Pinkerton employees are one of our most important assets and critical to the delivery of world-class solutions. Bonded together, we...


  • bangalore, India Smarsh Full time

    Smarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...