Architect - Threat Hunting

6 days ago


Navi Mumbai Maharashtra, India Reserve Bank Information Technology Private Limited (ReBIT) Full time

**Reporting Structure**
- Reports to Chief Manager - Security Operations - Cyber Security

**Designation**
- Architect - Threat hunting

**Education**:

- University degree in the field of computer science Or IT is preferable. However, any graduate with relevant experience and technical certifications in the domain can be considered for the Vacancy.

**Desired Experience/Exposure**
- Minimum 10 years of experience in a technical role in the areas of Security Operations, Cyber Incident Response with extensive experience performing Threat hunting on IT Systems, Network and Endpoints. With at least 7 years in threat hunting, incident response, or SOC roles.
- Proficiency in SIEM platforms (Splunk, Sentinel, QRadar, etc.) XDR and EDR tools (CrowdStrike, Carbon Black, etc.).
- Experience with scripting (Python, PowerShell, etc.) and automating threat detection or hunting tasks.
- Strong understanding of Windows, Linux, and network protocols.
- Familiarity with threat intelligence sources and frameworks (MITRE ATT&CK, Diamond Model, Cyber Kill Chain).
- Ability to proactively find cybersecurity threats and mitigate them.
- Knowledge about Advanced persistent threats and treat actors, their TTPs. Ability to recognize attack patterns and corelate them with specific threat actors.
- Ability to obtain as much information on threat behaviour, goals and methods as possible.
- Knowledge of Analytics platforms for carrying out detailed analytics of obtained telemetry.

**Industry**
- Financial Domain (Banking / NBFC experience is desirable)

**Responsibilities**
- Use Various available Security controls and the telemetry data within to conduct proactive threat hunts using a hypothesis-based approach.
- Coordinate with various stakeholders to obtain the data as required.
- Conduct proactive threat hunting across systems, networks, and endpoints using a variety of tools and data sources.
- Analyse large datasets (logs, packet captures, alerts) to identify anomalies, malicious activity, and Indicators of Compromise (IOCs).
- Develop and test hunting hypotheses based on threat intelligence, adversary emulation, and red team activities.
- Create custom detection logic and fine-tune SIEM/EDR alerts.
- Provide detailed reports and briefings to stakeholders about findings and mitigation strategies.
- Continuously improve hunting methodologies, automation, and use of threat hunting frameworks (e.g., MITRE ATT&CK).
- Stay current on emerging threats, vulnerabilities, and cyber-attack techniques.
- Identify Risks and Threats based on threat hunts undertaken.
- Communicate with Senior Management and other stakeholders about the findings and to take necessary actions.
- Work with Security Operations to take the identified anomalies to a conclusion.
- Prepare monthly reports on threat hunts and able to showcase ROI of the overall threat hunting program.

**Certifications**
- Security certifications such as GCFA, GCTI, GCIA, OSCP, CEH, or similar.
- Experience using threat hunting platforms or custom-built hunting environments.



  • Navi Mumbai, Maharashtra, India Reserve Bank Information Technology Private Limited (ReBIT) Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Reporting StructureReports to Chief Manager - Security Operations • Cyber SecurityDesignationArchitect – Threat huntingEducation:University degree in the field of computer science Or IT is preferable. However, any graduate with relevant experience and technical certifications in the domain can be considered for the Vacancy.Desired...

  • Threat Hunting(2)

    1 week ago


    Mumbai, Maharashtra, India Locuz Enterprise Solutions Full time

    JD: Threat Hunting capabilities: >Perform quality threat hunting in identifying and analysing advanced persistent threats (APTs). >Develop and execute threat hunting based on threat intelligence, behavioural analytics. >Ability to form hypothesis and execute the same to identify the threats in the environment. >Understanding (working experience) of...


  • Mumbai, India CoreIT Services Pvt. Ltd. Full time

    Looking for an L3 resource with the following - L3 threat hunter profile - Can work remotely - Should have experience of approx 7 to 9 yrs. in SOC Ops and Threat Hunting - JD as below - 8+ years of experience in a technical role in the areas of Security Operations, Threat Intelligence & Cyber Incident Response - Conduct "Hunts" using threat intelligence,...


  • Navi Mumbai, India Riverforest Connections Full time

    **Job Description Summary** - As an SME, the resource will be part of the Endpoint Security Operations team responsible to administer Crowdstrike Falcon EDR & Threat Hunting. The professional skills for this level include but are not limited to: Ability to quickly acquire and utilize knowledge on new technologies and solutions, emerging threats and...


  • Pune, Maharashtra, India METRO Global Solutions Center Full time

    Company Description METRO Global Solution Center MGSC is internal solution partner for METRO a EUR31 6 Billion international wholesaler with operations in 32 countries through 625 stores a team of 93 000 people globally METRO operates in a further 10 countries with its Food Service Distribution FSD business and it is thus active in a total of 34 countries...

  • Security analyst

    2 weeks ago


    Mumbai, India SHI | Locuz - An SHI Company Full time

    Hi,We have an immediate requirement for Threat Hunting with our organizationSHI Locuz Enterprise Solutions Pvt Ltd.Job Details:Work Experience - 3+years(relevant)Work Location - MumbaiLooking for immediate joiners.J ob Description:JD:Work Location – Mumbai (Aeroli)Experience – 3-4yearsInstall, configure, and manage Fleet DM and OSQuery across the bank's...

  • Security analyst

    2 weeks ago


    Mumbai, India SHI | Locuz - An SHI Company Full time

    Hi,We have an immediate requirement for Threat Hunting with our organizationSHI Locuz Enterprise Solutions Pvt Ltd.Job Details:Work Experience - 3+years(relevant)Work Location - MumbaiLooking for immediate joiners.J ob Description:JD:Work Location – Mumbai (Aeroli)Experience – 3-4yearsInstall, configure, and manage Fleet DM and OSQuery across the


  • Mumbai, India 2coms Full time

    About the Company:Theclient is the captive technology arm of a leading German-headquartered global insurance group. With a substantial international footprint, this financial services giant operates across more than 50 countries and employs a workforce exceeding 50,000 professionals. To deliver seamless IT solutions and support its extensive worldwide...

  • SOC Analyst

    1 day ago


    Mumbai, India Innova ESI Full time

    Role : SOC LeadExp : 4 + Years.Location : Mumbai, WFOSkills : SOC Analyst, Good experience in SIEM, Qradar, Threat – Hunting.

  • SOC Analyst

    19 hours ago


    Mumbai, India Innova ESI Full time

    Role : SOC LeadExp : 4 + Years.Location : Mumbai, WFOSkills : SOC Analyst, Good experience in SIEM, Qradar, Threat – Hunting.