Security Expert for Advanced Threat Hunting

4 days ago


Delhi, Delhi, India DigitalCube Consultancy Full time

Job Description:

 

We are seeking a highly skilled and experienced Security Analyst - L3 to join our team at DigitalCube Consultancy. As a Security Analyst, you will be responsible for monitoring, analyzing, and interpreting security/system logs for events, operational irregularities, and potential incidents, and escalating issues as appropriate.

 

Responsibilities:

  • Monitor and Analyze Security Logs: You will monitor and analyze security logs to detect potential threats and vulnerabilities in our systems and networks. This includes identifying unusual patterns of activity, suspicious behavior, and potential security breaches.
  • Threat Intelligence: You will gather, analyze, and disseminate threat intelligence from various internal and external sources to stay ahead of emerging threats and vulnerabilities.
  • Advanced Threat Hunting: You will conduct proactive threat hunting activities to identify advanced threats that may evade existing security controls.
  • Incident Response: You will support malware analysis, host and network log analysis, triage in support of incident response, and coordinating with internal and external stakeholders to contain and remediate threats.
  • Security Tools: You will monitor, detect, and analyze through various input tools and systems (SIEM, IDS/IPS, Firewalls, EDR, etc.).
  • Red Team Exercises: You will conduct basic red team exercises to test the effectiveness of preventive and monitoring controls.
  • System Exploitation and Defense: You will provide support for complex system/network exploitation and defense techniques, including deterring, identifying, and investigating system and network intrusions.
  • Maintenance and Improvement: You will maintain and improve the security technologies deployed, including creating use cases, customizing or better configuring the tools based on past and current threats.
  • Threat/Vulnerability Landscape: You will continuously monitor the security alerts and escalation queue, triage security alerts, monitor and tune SIEM (content, parsing, maintenance), and monitor cloud infrastructure for security-related events.
  • Reporting: You will deliver scheduled and ad-hoc reports.
  • Ticket Lifecycle: You will work the full ticket lifecycle; handle every step of the alert, from detection to remediation.
  • Documentation: You will generate end-of-shift reports for documentation and knowledge transfer to subsequent analysts on duty.
  • Continuous Learning: You will perform threat-intel research, learn new attack patterns, actively participate in security forums.

 

Qualifications:

  • Education: Bachelor's degree in Engineering or closely related coursework in technology development disciplines.
  • Certifications: Certifications like CISSP, CEH, CISM, GCIH, GCIA are desirable.
  • Tools Experience: Experience with the following or related tools: SIEM Tools such as Splunk, IBM QRadar, Securonix; Case Management Tools such as Swimlane, Phantom, etc.; EDR tools such as Crowdstrike, Sentinel, VMware, McAfee, Microsoft Defender ATP, etc.; Network Analysis Tools such as Darktrace, FireEye, NetWitness, Panorama, etc.
  • Skills: Full understanding of SOC L1, L2 responsibilities/duties and how the duties feed into L3. The ability to take lead on incident research when appropriate and be able to mentor junior analysts. Advanced knowledge of TCP/IP protocols and event log analysis. Strong understanding of Windows, Linux and networking concepts. Experience analyzing both log and packet data to include the use of WireShark, tcpdump and other capture/analysis tools. Good understanding of security solutions including SIEMs, Web Proxies, EDR, Firewalls, VPN, authentication, encryption, IPS/IDS etc. Functional understanding of Cloud environments. Ability to conduct research into IT security issues and products as required. Working in a TAT based IT security incident resolution practice and knowledge of ITIL. Knowledge and experience with scripting and programming (Python, PERL, etc.) are also highly preferred. Malware analysis and reverse engineering is a plus.

 

Salary:

The estimated salary range for this position is $120,000 - $160,000 per annum, depending on qualifications and experience.

 

Benefits:

We offer a comprehensive benefits package, including health insurance, retirement plan, paid time off, and professional development opportunities.



  • Delhi, Delhi, India NTT Full time

    Security Managed Services Engineer (L3) Role OverviewThe Security Managed Services Engineer (L3) plays a vital role in ensuring the highest level of service delivery to clients. This seasoned engineering position is responsible for proactively identifying and resolving technical incidents and problems, maintaining a high level of service to clients.Key...


  • Delhi, Delhi, India NTT Full time

    About This RoleThis Senior Security Analyst (L3) - Proactive Incident Response role is responsible for providing expert-level technical assistance to clients by proactively identifying and resolving complex security incidents and problems. The primary objective of this role is to ensure zero missed service level agreement (SLA) conditions and is responsible...


  • Delhi, Delhi, India NTT DATA Full time

    Job DescriptionSecure Our Clients' Digital FutureNTT DATA seeks a seasoned Cybersecurity Specialist to lead our threat hunting and response efforts. As a key member of our team, you will identify and resolve complex technical incidents, ensuring our clients' digital assets remain secure.About Our Ideal CandidateProven experience in threat hunting, incident...


  • Delhi, Delhi, India NTT Full time

    About the RoleThe Security Managed Services Engineer (L3) is a highly skilled engineering position responsible for delivering top-notch service to clients by proactively identifying and resolving complex technical incidents and problems.Key objectives of this role include ensuring zero missed service level agreement (SLA) conditions, managing high-complexity...


  • Delhi, Delhi, India Microsoft Full time

    Job Title: Senior Threat ResearcherMicrosoft is seeking a highly skilled Senior Threat Researcher to join our Detection Research team. As a key member of our team, you will be responsible for developing cutting-edge detection mechanisms through advanced analytics, encompassing the exploration and correlation of extensive datasets.Responsibilities:Design and...


  • Delhi, Delhi, India NTT DATA Full time

    About the RoleWe are seeking a skilled Security Managed Services Engineer to join our team. As a seasoned engineer, you will be responsible for providing proactive incident resolution and technical problem-solving to our clients.Your Key ResponsibilitiesConduct daily threat hunting to identify advanced threats.Analyze log sources to identify potential...


  • Delhi, Delhi, India Nouryon Full time

    Job Purpose:As a Threat Intelligence Analyst at Nouryon, you will play a crucial role in enhancing our Cyber resilience and ensuring our organization can detect and respond to present threats. You will work closely with a team of Cyber specialists in the Office of the CISO and collaborate with the IT department on security-related matters.About the...


  • Delhi, Delhi, India NTT Full time

    Job Title: Security Threat AnalystJob Summary: N TT DATA is seeking a skilled Security Threat Analyst to join our team. As a Security Threat Analyst, you will be responsible for monitoring and analyzing security threats to our client's infrastructure. You will work closely with our team to identify and mitigate potential security risks, ensuring the...

  • Security Expert

    3 weeks ago


    Delhi, Delhi, India CryptoMize Full time

    Job Description:CryptoMize is seeking a highly skilled Security Expert to join our team. As a Security Expert, you will be responsible for developing and implementing security measures that protect computer networks and systems.Responsibilities:Identify and solve potential and actual security problemsDefine access privileges, control structures, and...


  • Delhi, Delhi, India Altered Security Full time

    About Altered SecurityAltered Security is an innovative information security startup with a focus on edtech, hands-on learning, and focused security assessments. Our team of experts has successfully trained over 30,000 information security professionals from more than 130 countries worldwide through our in-person and online trainings.We are seeking...


  • Delhi, Delhi, India Boston Consulting Group Full time

    ROLE SUMMARYWe are seeking a highly skilled Cybersecurity Specialist to join our team at Boston Consulting Group. As a key member of our Information Security team, you will be responsible for detecting, assessing, and communicating cyber threats. Your expertise in threat hunting methodologies and tools, including SIEM platforms, EDR solutions, and threat...


  • Delhi, Delhi, India Qlotech Full time

    Job Title: Senior Application Security ExpertAt Qlotech, we are seeking an experienced Senior Application Security Expert to join our team. As a key member of our Information Security and Compliance department, you will play a critical role in developing and implementing our S-SDLC Program.Key Responsibilities:• Collaborate with senior IT leaders and...


  • Delhi, Delhi, India Microsoft Full time

    Job DescriptionAt Microsoft, we're committed to making the world a safer place for all by empowering every user, customer, and developer with a security cloud that protects them with end-to-end, simplified solutions.We're looking for a skilled Senior Threat Researcher to join our Detection Research team. As a key member of our organization, you'll use your...


  • Delhi, Delhi, India CryptoMize Full time

    Information Security AnalystWe are seeking a highly skilled and detail-oriented Information Security Analyst to join our team at CryptoMize. As an Information Security Analyst, you will be responsible for monitoring and analyzing network activity to identify potential security threats and vulnerabilities. You will also be responsible for implementing and...


  • Delhi, Delhi, India NTT Full time

    Role OverviewThe Security Managed Services Engineer (L3) is a seasoned professional responsible for providing proactive incident response and technical support to clients. This role involves identifying and resolving complex technical issues, maintaining high service levels, and ensuring zero missed service level agreement (SLA) conditions.Key...

  • Cybersecurity Expert

    2 weeks ago


    Delhi, Delhi, India CryptoMize Full time

    About the RoleCryptoMize is seeking a highly skilled Cybersecurity Expert to join our team. As a Cybersecurity Expert, you will be responsible for designing and implementing secure computer systems and networks to protect against cyber threats.Key ResponsibilitiesDesign and implement secure computer systems and networksMonitor and analyze network traffic to...


  • Delhi, Delhi, India Hirein5 Full time

    Job Summary:We are seeking a highly skilled Cybersecurity Threat Analyst to join our team at Hirein5. The ideal candidate will have a strong understanding of cybersecurity principles, threat analysis, and incident response.Key Responsibilities:Monitor security systems and tools to detect and respond to security threats and incidents.Analyze security events...


  • Delhi, Delhi, India CloudSEK Full time

    About CloudSEKCloudSEK is an innovative Cybersecurity product company focused on building the world's fastest and most reliable AI technology for real-time threat detection and resolution. Our goal is to leverage Artificial Intelligence and Machine Learning to create a quick and efficient analysis and alert system that provides rapid detection across...


  • Delhi, Delhi, India TAC Security Full time

    Job Title: Application Security ManagerLocation: Delhi, IndiaCompany Description:TAC Security is a global leader in vulnerability management, specializing in protecting Fortune 500 companies and governments worldwide. Our AI-based Vulnerability Management Platform, ESOF, manages over 5 million vulnerabilities. Recognized as Gartner's Customer First Choice...


  • Delhi, Delhi, India RiskProfiler Inc Full time

    Job OpportunityThis is a remote position at RiskProfiler Inc.A Threat Intelligence Researcher is a temporary position, typically designed for students or recent graduates seeking hands-on experience in the field of threat intelligence research. The researcher will collaborate with a team of experienced professionals and researchers to investigate and analyze...