Manager Threat Hunting Information Security Group-ISG
1 week ago
Job Description Job Description - Manage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight. - Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications. - Develop and maintain alert rules and logic within SIEM to ensure accurate detection of security events. - Assist senior personnel in managing complex security incidents and improving incident response times. Security Event Management - Monitor and respond to security events from SIEM systems (Azure Sentinel & ArcSight preferred). - Analyze and respond to events from various data sources including firewalls, IDS/IPS, AV, DAM, web servers, proxies, and banking applications. Threat And Incident Management - Develop and implement alert rules and logic in SIEM to detect events of interest. - Perform accurate, real-time analysis and correlation of logs and alerts from multiple sources. - Utilize established policies, standards, and procedures to determine which alerts should be classified as security incidents. - Assist in the resolution of complex security incidents and enhance incident response efficiency. Security Improvements And Collaboration - Improve incident response times, reduce false positives, and enhance threat detection capabilities. - Contributes to the design, implementation, and documentation of security awareness programs. - Update and refine existing processes and policies (SOPs, playbooks, runbooks) in line with cybersecurity best practices. - Work collaboratively with compliance, audit, and regulatory teams to provide necessary information and support. - Educational Background: Graduate/Postgraduate degree in Science, Engineering, or IT. - Certifications: Minimum of 2 Professional certifications from CISSP, CISM, CRISC, CISA, or equivalent. - Exprience: - Proficient in SIEM Policy reviews and implementation, with experience in Cyber Defense Center or Security Operations Center roles. - Over 10 years of experience in SOC & CDC, with strong analytical skills and experience in managing security operations. - Skills: - Proficiency in SIEM design and implementation. - Ability to work with various teams to enhance security awareness. - Strong documentation and report writing skills. - Knowledge of the banking environment is advantageous. The leading financial institution in MENA While more than half a century old, we proudly think like a challenger, startup, and innovator in banking and finance, powered by a diverse and dynamic team who put customers first. Together, we pioneer key innovations and developments in banking and financial services. Our mandate To help customers find their way to Rise Every Day, partnering with them through the highs and lows to help them reach their goals and unlock their unique vision of success. Delivering superior service to clients by leading with innovation, treating colleagues with dignity and fairness while pursuing opportunities that grow shareholders value. We actively contribute to the community through responsible banking in our mission to inspire more people to Rise. Job Details Role Level: Mid-Level Work Type: Full-Time Country: India City: Bengaluru ,Karnataka Company Website: https://www.mashreqbank.com/uae/en/corporate/home Job Function: Information Technology (IT) Company Industry/ Sector: Banking What We Offer About The Company Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand. Report Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at [Confidential Information].
-
Threat Hunting Analyst
3 days ago
Pune, India METRO Global Solution Center IN Full timeJob Description Metro Global Solution Center (MGSC) is internal solution partner for METRO, a 29.8 Billion international wholesaler with operations in 31 countries through 661 stores & a team of 93,000 people globally. Metro operates in a further 10 countries with its Food Service Distribution (FSD) business and it is thus active in a total of 34 countries....
-
Security Analyst
3 weeks ago
Bengaluru, India Terralogic Software Solutions Private Limited. Full timeAbout the job :Overview :- Seeking a Security Analyst with expertise in Microsoft Sentinel and the Microsoft Defender Suite (EDR, XDR, SIEM, SOAR).- Role involves threat detection, incident response, threat hunting, and automation using KQL, PowerShell, Defender for Cloud, Defender for Office 365, MDVM, Copilot for Security, and ServiceNow SecOps SIR for...
-
Bengaluru, India FalconX Full timeResponsibilities :- Monitor, detect, and respond to security incidents across on-premise and cloud environments.- Analyze security alerts from security tools to identify potential threats.- Conduct forensic investigations and deep-dive analysis of security events to identify trends, attack techniques, and areas for improvement.- Conduct proactive threat...
-
Threat Hunting Sr. Analyst
1 week ago
Pune, India METRO Global Solution Center IN Full timeJob Description Metro Global Solution Center (MGSC) is internal solution partner for METRO, a 29.8 Billion international wholesaler with operations in 31 countries through 661 stores & a team of 93,000 people globally. Metro operates in a further 10 countries with its Food Service Distribution (FSD) business and it is thus active in a total of 34 countries....
-
Threat Hunting Investigator
4 days ago
Bengaluru, India Cisco Systems Full timeWho We Are Cisco's Security Visibility and Incident Command (SVIC) forms part of the monitoring & response branch of Cisco's Security and Trust Organization (S&TO) and is Cisco's cyber investigations and forensics team. We provide Cisco with security threat detection, compliance monitoring, vulnerability discovery and response services to protect Cisco's...
-
Senior Technical Analyst
6 days ago
Bengaluru, India Computacenter Full timeJob Description Life on the team Placed within our Security Operations function, our Cyber Threat Operations Team play an essential role in protecting Computacenter from the latest threats and threat actors. The Cyber Threat Operations Team work to ensure we have a forward-looking mentality to identify emerging threats and trends. Our team brings together a...
-
Bengaluru, India Mashreq Corporate & Investment Banking Group Full timeJob Description Job Description To develop, manage, and execute cyber security project across Mashreq to - Lead and oversee the strategic operations of the Cyber Defense Center (CDC) to ensure effective monitoring, detection, analysis, and response to advanced cybersecurity threats. - Develop and implement security strategies, policies, and procedures to...
-
Analyst, Information Security
1 week ago
Gurugram, Gurugram, India Connor, Clark & Lunn Financial Group (CC&L) Full timeJob Description Information Security Analyst Connor, Clark & Lunn Financial Group Ltd. Gurugram (Hybrid), India Connor, Clark & Lunn Financial Group (CCLFG), one of Canada's leading asset managers, is seeking an Information Security Analyst to join our Center of Excellence (CoE) Information Security in Gurugram. The Information Security Team is responsible...
-
Manager – Threat ation Security Group-ISG
2 weeks ago
Bengaluru, Karnataka, India Mashreq Bank Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescriptionManage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight.Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications.Develop and maintain alert rules and logic within SIEM...
-
Bengaluru, Karnataka, India Triune Infomatics Inc Full time ₹ 20,00,000 - ₹ 25,00,000 per yearRole: Senior Cybersecurity SOC Engineer – Threat Hunting & Incident ResponseWorking Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)Reporting To: Security Operations (SecOps) Leader – USAAbout the Role:We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven experience...