Threat Hunting Sr. Analyst

2 days ago


Pune India METRO Global Solution Center IN Full time

Job Description Metro Global Solution Center (MGSC) is internal solution partner for METRO, a 29.8 Billion international wholesaler with operations in 31 countries through 661 stores & a team of 93,000 people globally. Metro operates in a further 10 countries with its Food Service Distribution (FSD) business and it is thus active in a total of 34 countries. MGSC, location wise is present in Pune (India), Dsseldorf (Germany) and Szczecin (Poland). We provide IT & Business operations support to 31 countries, speak 24+ languages and process over 18,000 transactions a day. We are setting tomorrow's standards for customer focus, digital solutions, and sustainable business models. For over 10 years, we have been providing services and solutions from our two locations in Pune and Szczecin. This has allowed us to gain extensive experience in how we can best serve our internal customers with high quality and passion. We believe that we can add value, drive efficiency, and satisfy our customers. Website: https://www.metro-gsc.in Company Size: 600-650 Headquarters: Pune, Maharashtra, India Type: Privately Held Inception: 2011 Responsibilities Job Description - available, and focusing hunts on relevant behavioural tactics, techniques, and procedures (TTPs) identified as potential threats to the organization. - Contribute to detection engineering initiatives by identifying opportunities for, and implementation of new detections as an output of threat hunts completed. - Support other functions within security operations by responding to hunt requests and by applying expertise in advanced actors and TTPs for ongoing incidents, working closely with our incident responders. - Research new attack behaviours and TTPs used by threat actors, leading to new hunting and detection opportunities. - Assist in the development and maturity of the threat hunting process and team through development of cutting-edge hunting techniques and introduction of automation into the threat hunting process. - Develop threat hunting hypothesis in collaboration with the threat intelligence team, helping to track relevant threat actors, campaigns and emerging threats and the TTPs they use. - Help in defining the metrics, measurements and analytical tools to quantify surface area of risk, business impact and implement mechanisms to track progress on efforts to reduce those risks. - Cross-train and mentor wider analyst team in the development of threat hunting. - Represent threat hunting to the wider information security team, and to the wider business, including senior stakeholders, through reporting, presentations and knowledge sharing sessions. - Adapts quickly to changing priorities, seeks new ideas, and re-align with team's priority/roadmap to maximize business productivity. Technical & Soft Skills: - Deep understanding of cyber threats, attack vectors, and common exploitation techniques. - Proficiency in using threat intelligence platforms, open-source tools, and SOC technologies such as Google Chronicle SIEM, CrowdStrike EDR/EPP, Vectra NDR, Qualys VM, Recorded Future TI, etc. - Proficiency in multiple query languages such as YARA, CrowdStrike QL or SPS with an ability to manipulate and analyse large data sets. - Expertise in formulating threat hunting hypotheses and working with available data sets to determine conclusions. - Solid understanding of current TTPs used by threat actors and an ability to replicate behaviours in a lab environment to generate telemetry. - Direct experience working with the Mitre ATT&CK Framework or similar, with an ability to utilise the framework to identify detection gaps for threat hunting. - Strong competence being able to quickly respond to emerging threats, showcasing an ability to develop and perform hunts, while working under strict deadlines. - Strong understanding of Windows, Linux, and network protocols. - Strong knowledge of industry frameworks and standards, such as STIX/TAXII, MITRE ATT&CK, and threat intelligence sharing platforms. - Excellent written and verbal communication skills, including the ability to present complex technical information to both technical and non-technical audiences. - Strong analytical and critical thinking skills, with the ability to analyze complex data sets and identify actionable insights. Proven experience in collaborating with cross-functional teams and providing guidance on threat intelligence-related matters. Qualifications Qualifications - Bachelor's degree in computer science, Information Technology, Cybersecurity, or in a related field. A master's degree or Relevant Cyber Security certifications (e.g. CTIA, CREST PTIA, MITRE's MAD, CySA+) are a plus. - 4-7 years of total experience in SOC in a large multi-national organization or in a known MSSP. In addition to SOC Engineering experience, candidate should possess at least 2+ year of experience on Threat Hunting capabilities.



  • Pune, India METRO LOGISTICS Full time

    Company Description Metro Global Solution Center (MGSC) is internal solution partner for METRO, a € Billion international wholesaler with operations in 31 countries through 661 stores & a team of 93,000 people globally. Metro operates in a further 10 countries with its Food Service Distribution (FSD) business and it is thus active in a total of 34...


  • Pune, India METRO LOGISTICS Full time

    Company Description Metro Global Solution Center (MGSC) is internal solution partner for METRO, a € Billion international wholesaler with operations in 31 countries through 661 stores & a team of 93,000 people globally. Metro operates in a further 10 countries with its Food Service Distribution (FSD) business and it is thus active in a total of 34...


  • Pune, Maharashtra, India METRO Global Solutions Center Full time

    Company Description METRO Global Solution Center MGSC is internal solution partner for METRO a EUR31 6 Billion international wholesaler with operations in 32 countries through 625 stores a team of 93 000 people globally METRO operates in a further 10 countries with its Food Service Distribution FSD business and it is thus active in a total of 34 countries...


  • Pune, Maharashtra, India Gruve Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    About GruveGruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more...


  • Pune, Maharashtra, India GoAsia Talent Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Cybersecurity Threat Analyst - Incident Response LeadOur site in India is seeking a Lead Cyber Security Threat Analyst to join the team. The Lead Cyber Security Threat Analyst is responsible for monitoring, detecting, and responding to cybersecurity threats and incidents. This position requires advanced expertise in analyzing, triaging, responding to, and...


  • India ColorTokens Inc. Full time

    About ColorTokens At ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens XshieldTM platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...


  • India ColorTokens Inc. Full time

    About ColorTokens At ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens XshieldTM platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...

  • RCE Post

    1 week ago


    Pune, India Northern Trust Corporation Full time

    Description : Northern Trust is seeking a skilled Insider Threat Hunt Analyst to join our Security Operations team. In this role you will proactively detect insider threats and attack techniques that may be present within the bank’s environment. The Insider Threat Hunt Analyst will collaborate with Threat Intelligence, Cyber Threat Hunting and Insider Risk...


  • India Insight Global Full time

    ** 6 month contract with multi year extension** **25/LPA to 35/LPA**Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimization of advanced threat detection and response capabilities. This role requires deep expertise...


  • India Insight Global Full time

    ** 6 month contract with multi year extension** **25/LPA to 35/LPA** Exact compensation may vary based on several factors, including skills, experience, and education. We are seeking a highly experienced Senior Detection Engineer to lead the development and optimization of advanced threat detection and response capabilities. This role requires deep expertise...