Advanced Threat Detection Specialist

7 days ago


Bengaluru, Karnataka, India MindBridge Consulting Full time

MindBridge Consulting is a leading consulting firm specializing in driving impactful transformations and guiding businesses through today's dynamic landscape. With an unwavering dedication to excellence and innovation, we offer a diverse range of consulting services designed to empower organizations and unleash their full potential.

About the Role

We are seeking an experienced Elastic Security Engineer to join our cybersecurity team. In this role, you will leverage Elastic's Security solutions to design, implement, and maintain advanced security monitoring, threat detection, and incident response capabilities.

Key Responsibilities:
  • Elastic Security Deployment & Management
    • Design, deploy, and configure the Elastic Stack (Elasticsearch, Logstash, Kibana, Beats) for security monitoring and threat detection.
    • Maintain, optimize, and scale Elastic deployments, ensuring high availability, performance, and scalability.
  • Security Monitoring & Threat Detection
    • Develop, implement, and tune detection rules, alerts, and anomaly detection models to identify potential threats in real time.
    • Create dashboards and visualizations in Kibana to enhance situational awareness and support proactive threat hunting.
  • Integration & Data Ingestion
    • Integrate Elastic Security with various log sources, including firewalls, IDS/IPS, endpoint protection, and cloud environments.
    • Work with Logstash and Beats agents to ingest security event data from multiple sources, maintaining data quality and integrity.
  • Incident Response Support
    • Assist the security team in investigating and responding to security incidents by providing data and insights from Elastic Security.
    • Conduct root-cause analysis and forensic investigations using Elastic's capabilities to identify and mitigate risks.
  • Configuration & Rule Management
    • Develop custom detection rules, queries, and dashboards tailored to the organization's threat landscape.
    • Continuously refine detection strategies based on threat intelligence, threat landscape changes, and feedback from security incidents.
  • Performance Tuning & Optimization
    • Monitor and optimize the performance of the Elastic Stack, ensuring efficient use of resources and rapid query responses.
    • Conduct regular maintenance, upgrades, and troubleshooting to maximize the effectiveness of Elastic Security.
  • Collaboration & Documentation
    • Collaborate with cross-functional teams, including security, IT, and DevOps, to ensure integration with other tools and alignment with overall security objectives.
    • Create and maintain documentation for the Elastic Security infrastructure, configurations, detection rules, and operational procedures.
  • Training & Knowledge Sharing
    • Educate and train security analysts and other stakeholders on using Elastic Security for incident detection, analysis, and response.
    • Stay up-to-date with new Elastic Security features, industry best practices, and emerging security threats.
Requirements
  • Experience: 3+ years of experience in cybersecurity, with at least 2 years of experience working with the Elastic Stack, specifically Elastic Security (SIEM).
  • Technical Skills: Strong proficiency in Elasticsearch, Kibana, Logstash, and Beats; experience configuring and tuning Elastic Security for threat detection and analysis.
  • Security Knowledge: Understanding of cybersecurity frameworks (NIST, MITRE ATT&CK), SIEM principles, threat detection, and incident response.
  • Data Management: Skilled in managing log ingestion, data parsing, filtering, and enrichment within the Elastic Stack.
  • Scripting: Proficiency in scripting languages (e.g., Python, Bash) for data manipulation and automation.
  • Analytical Skills: Strong analytical and problem-solving skills with the ability to analyze large volumes of data for insights and anomaly detection.
  • Communication: Excellent verbal and written communication skills to document processes and collaborate across teams.

The estimated salary for this position is $120,000 - $180,000 per year, depending on location and experience.



  • Bengaluru, Karnataka, India Barracuda Full time

    Job Summary: Join Barracuda's cybersecurity team as a Threat Research and Detection Specialist. In this role, you will be responsible for developing and implementing threat detection and mitigation strategies to protect our customers' networks and systems. Main Responsibilities:Develop and implement threat detection and mitigation strategies to protect...


  • Bengaluru, Karnataka, India Maersk Full time

    Maersk is seeking a highly skilled Cyber Threat Detection and Automation Specialist to join its team. The successful candidate will play a crucial role in enhancing the company's cybersecurity posture by leveraging automation to improve the efficiency and effectiveness of threat detection and response processes.About the RoleThe Cyber Threat Detection and...


  • Bengaluru, Karnataka, India Trellix Full time

    We are seeking a skilled Cybersecurity Engineer to join our team at Trellix. As a key member of our security research team, you will be responsible for evaluating and improving our EDR product's detection capabilities by identifying detection coverage gaps and developing signatures to address these gaps effectively.About the Role:Reverse engineer malware to...


  • Bengaluru, Karnataka, India Qtek Systems Full time

    Job Description:The Cybersecurity Analyst Specialist will play a crucial role in our company, Qtek Systems, as we strive to protect our systems and data from internal and external threats.About the Role:We are seeking a highly skilled Cybersecurity Analyst Specialist who can contribute to the detection and analysis of potential security threats. The ideal...


  • Bengaluru, Karnataka, India ScaleneWorks Full time

    **Job Title:** Cybersecurity Specialist - Threat Detection and ResponseAt ScaleneWorks, we are seeking an experienced Cybersecurity Specialist to join our Security Operations Center (SOC) team. As a key member of our team, you will be responsible for detecting and responding to security threats in a dynamic and fast-paced environment.**Key...


  • Bengaluru, Karnataka, India DigiCert Full time

    Job OverviewDigiCert is seeking a highly skilled Cybersecurity Engineer to join our team. The ideal candidate will have expertise in advanced threat detection and security operations automation.About the RoleWe are looking for an experienced professional with a deep understanding of security operations and automation. The successful candidate will be...


  • Bengaluru, Karnataka, India reddit Full time

    Job Title: Senior Threat Detection AnalystRewarding opportunity to join Reddit, a global community of shared interests and passion, as a Senior Threat Detection Analyst. In this role, you will be part of the Security, Privacy, And Compliance Engineering (SPACE) team, defending Reddit's employees and compute assets to make it the most trustworthy place for...


  • Bengaluru, Karnataka, India Capgemini Full time

    About the Role:The company is seeking a skilled Security Specialist to join its team. The ideal candidate will have in-depth knowledge of threat detection and mitigation techniques. This role involves analyzing security threats, identifying vulnerabilities, and implementing defensive measures to protect the company's network and systems.


  • Bengaluru, Karnataka, India ScaleneWorks Full time

    Job Description:We are seeking a highly skilled Cybersecurity Specialist - Threat Detection to join our team at ScaleneWorks. This role requires a strong understanding of cyber security principles, tools, methodologies, and best practices.Key Responsibilities:Develop and fine-tune detection rules and threat hunting playbooks to identify and mitigate...


  • Bengaluru, Karnataka, India reddit Full time

    At Reddit, we're committed to creating a safe and trustworthy online environment for our users. As an Information Security Specialist - Threat Detection, you'll play a critical role in helping us achieve this goal.We're seeking a highly skilled and experienced security professional to join our SPACE (Security, Privacy, And Compliance Engineering) team. In...


  • Bengaluru, Karnataka, India Trellix Full time

    About the Role:Lead efforts to reverse engineer sophisticated malware, identifying malicious code, obfuscation techniques, and communication protocols.Author advanced detection rules for behavior-based detection engines.Conduct comprehensive research on attacker campaigns and techniques to support detection investments and enhance customer experience.Develop...


  • Bengaluru, Karnataka, India Maersk Full time

    Job SummaryA Detection and Automation Engineer at Maersk plays a crucial role in enhancing the company's cybersecurity posture by leveraging automation to improve the efficiency and effectiveness of threat detection and response processes.Main ResponsibilitiesThreat Detection:Monitoring: reviewing networks, systems, and applications via the logs/data...


  • Bengaluru, Karnataka, India ADCI - Karnataka Full time

    About the RoleWe are seeking an experienced Senior Technical Lead to join our team at ADCI - Karnataka. As a key member of our technical leadership, you will be responsible for driving the development and implementation of advanced threat detection systems.Key ResponsibilitiesLead the design, development, and deployment of threat detection systemsCollaborate...


  • Bengaluru, Karnataka, India Trellix Full time

    About the Role:As a key member of our Threat Research team, you will lead efforts to reverse engineer sophisticated malware, identifying malicious code, obfuscation techniques, and communication protocols.Develop and optimize generic threat detections based on static and dynamic detection engines.Conduct comprehensive research on attacker campaigns and...


  • Bengaluru, Karnataka, India reddit Full time

    At Reddit, we're committed to building a secure and trustworthy platform for online human interaction. As a Threat Detection Engineer, you'll play a critical role in defending our employees and computer assets from emerging threats. You'll analyze security events, build runbooks and automations, and hunt for indicators of compromise to stay one step ahead of...


  • Bengaluru, Karnataka, India Maersk Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Threat Detection and Automation Specialist to join our team. In this role, you will be responsible for identifying potential security threats and automating processes to enhance the efficiency and effectiveness of our cybersecurity measures.Key ResponsibilitiesMonitor networks, systems, and...


  • Bengaluru, Karnataka, India CareerXperts Consulting Full time

    Company OverviewCareerXperts Consulting is a leading cybersecurity consulting firm that helps organizations protect themselves from evolving threats.SalaryThe estimated salary for this role is $140,000 - $200,000 per year, depending on experience.Job DescriptionWe are seeking a Senior Security Engineer to join our team as a Security Architect and Threat...


  • Bengaluru, Karnataka, India ScaleneWorks Full time

    We are seeking a skilled Cyber Security Specialist to join our team at ScaleneWorks. This role is ideal for an individual with a strong background in information security and experience working in a Security Operations Center (SOC).The ideal candidate will have 5+ years of experience working with email security solutions, such as Proofpoint and Mimecast, as...


  • Bengaluru, Karnataka, India Trellix Full time

    About the RoleWe are seeking a skilled EDR Security Researcher to join our team at Trellix. As a key member of our cybersecurity team, you will be responsible for evaluating and improving our EDR product's detection capabilities.Key ResponsibilitiesReverse engineer malware to identify malicious code, obfuscation techniques, and communication protocols.Author...


  • Bengaluru, Karnataka, India Tata Consultancy Services Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Specialist to join our team at Tata Consultancy Services. In this role, you will be responsible for implementing and managing SIEM tools, creating use cases, and responding to security incidents.Key ResponsibilitiesImplement SIEM tool configurations and fine-tune them for optimal performanceCreate and...