Associate, Cybersecurity Incident Response, Threat

12 hours ago


Gurugram Haryana, India Ankura Full time

Ankura is a team of excellence founded on innovation and growth.

Join Ankura's rapidly growing cybersecurity practice and become a key player in protecting our clients from the ever-evolving threat landscape.

Practice Overview:
Our diverse team is comprised of seasoned security veterans, including professionals from the intelligence community and leading private security firms, alongside talented early-career professionals. This unique blend of experience and fresh perspectives allows us to offer insightful and innovative solutions.

We are equipped and prepared to provide services across a range of areas that include: Proactive Preparedness, Incident Response, Investigations, Cyber Resilience, Data Privacy, Managed Advisory Services and Managed Data Protection Services.

The Role:
As an Associate within our Data & Technology segment, you will play a vital role in tackling our clients' critical information security challenges. Client engagements are both reactive/incident response and managed detection and response in nature. You will be at the forefront of Managed Data Protection Services proactively safeguarding our clients’ critical data assets.

Key Responsibilities:
- Lead and participate in endpoint security monitoring engagements, both reactive and managed.- Become the eyes and ears of our clients, diligently monitoring endpoint devices, reviewing alerts, investigating incidents, and recommending effective remediation strategies.- Collaborate closely with client security teams, IT staff, management, legal counsel, and Ankura colleagues to ensure swift and coordinated responses to identified threats.- Prepare daily reports for clients, keeping them informed of their security posture and potential issues.- Serve as the primary point of contact for a diverse range of client stakeholders, building trust and fostering strong relationships.- Leverage your expertise to advise client organizations on endpoint security best practices and optimal response strategies in the event of a cyber incident.- Develop your analytical skills and employ deductive reasoning to draw informed conclusions and make critical decisions.- Maintain and adhere to established standard operating procedures, ensuring consistency and quality in our service delivery.- Demonstrate flexibility and willingness to work nights, weekends, and holidays as needed, recognizing the critical nature of our work.

Your Qualifications:
- Bachelor's Degree in Cybersecurity, IT, Computer Science, or a related field.- 3-6 years of experience in cybersecurity, preferably within threat detection or incident response.- Proven experience and proficiency in deploying and utilizing endpoint security monitoring solutions, including: Next-generation Anti-Virus (NGAV), Endpoint Detection and Response (EDR), Host-based Firewall, Network Traffic Analysis (NTA) tools, Security Information and Event Management (SIEM) systems- Working knowledge of Security Operations Center (SOC) operations and procedures.- Strong interpersonal and communication skills, enabling you to collaborate effectively across diverse teams and build trust with clients.

Preferred Certifications:
- Network +- Security +- GIAC Certified Incident Handler (GCIH)- GIAC Certified Forensic Examiner (GCFE)- GIAC Network Forensic Analyst (GNFA)- GIAC Certified Intrusion Analyst (GCIA)

Why Ankura:
- Join a team of passionate and innovative experts protecting clients from the threat landscape.- Work on cutting-edge projects that make a real impact on businesses and the world at large.- Enjoy a collaborative and supportive work environment that fosters professional growth and pathways for advancement.- Receive competitive compensation and benefits, including opportunities for travel and training.- We are committed to providing our employees with the resources and support they need to succeed and make a lasting impact.

LI-JK1



  • Gurugram, Haryana, India Ankura Full time

    Ankura is a team of excellence founded on innovation and growth. - Practice Overview: - Our diverse team is comprised of seasoned security veterans, including professionals from the intelligence community and leading private security firms, alongside talented early-career professionals. This unique blend of experience and fresh perspectives allows us to...


  • Delhi, Gurgaon / Gurugram, Noida, India beBeeCybersecurity Full time ₹ 15,00,000 - ₹ 28,00,000

    Job Opportunity: Cybersecurity SpecialistRequired Skills and Qualifications:Minimum 2-12 years of professional experience in cybersecurity, with expertise in a Security Operations Center (SOC) environment.Strong understanding of networking fundamentals, system administration, cloud platforms (AWS/Azure/GCP), and security architecture principles.Experience...


  • Gurugram, Haryana, India Valvoline Global Full time

    **Why Valvoline Global Operations?** At **Valvoline Global Operations**, we’re proud to be **The Original Motor Oil**, but we’ve never rested on being first. Founded in 1866, we introduced the world’s first branded motor oil, staking our claim as a pioneer in the automotive and industrial solutions industry. Today, as an affiliate of **Aramco**, one...


  • Gurugram, Noida, India Oculus IT Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    We are looking for a dynamic and detail-oriented Command Center Incident Response Engineer to join our 24x7 Security Operations team. The ideal candidate will have hands-on experience in incident response, network security administration, and Wintel (Windows + Intel) security operations at an L2 level. This role is critical in ensuring real-time monitoring,...


  • Gurgaon / Gurugram, Delhi NCR, Noida, India beBeeCybersecurity Full time ₹ 1,50,000 - ₹ 28,00,000

    Job Description:Our organization is seeking a highly skilled and experienced Cybersecurity professional to join our team in the Security Operations Center (SOC). As a key member of our SOC, you will be responsible for monitoring and analyzing security-related data from various sources, identifying potential threats, and implementing measures to prevent or...

  • Incident response

    1 week ago


    Delhi, Gurugram, NCR, New Delhi, India Deloitte Consulting Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Role & responsibilitiesOverall experience of at least 5+ years in SIEM monitoring and Cyber security Incident response and Management.Core Incident Response Knowledge: Deep understanding of the incident response lifecycle, cyber kill chain, and MITRE ATT&CK framework.Operating Systems: Expertise in Windows, Active Directory, DNS, and Linux platforms.SIEM...


  • Gurugram, Haryana, India Ankura Full time

    Ankura is a team of excellence founded on innovation and growth. - Location: Conditional Remote / Gurgaon - Hours: 40 hours a week - Reporting: Director - Threat Detection Operations (TDO) - Duties include continuous monitoring of Security Information Event Management (SIEM), EDR, XDR, DLP and related platforms for correlated events and alerts and working...


  • Gurugram, Haryana, India Evalueserve Full time

    **Elevate Your Impact Through Innovation and Learning** We have 4,500+ talented professionals operating across 45 countries, including India, China, Chile, Romania, the US, and Canada. Our global network also extends to emerging markets such as Colombia, the Middle East, and the rest of Asia-Pacific. Recognized by Great Place to Work® in India, Chile,...


  • Gurgaon / Gurugram, Noida, Delhi, India beBeeCybersecurity Full time ₹ 15,00,000 - ₹ 28,00,000

    Mission Overview:Our organization requires a cybersecurity professional with in-depth knowledge and expertise in protecting our networks, systems, and cloud environments.Required Skills and Qualifications:Minimum 2-12 years of professional experience in cybersecurity with focus on SOC operations.Deep understanding of networking, system administration, cloud...


  • Gurugram, Haryana, India McDermott Full time

    **Job Overview**: The Associate Technology Spec (IT) is responsible for utilizing existing Technology procedures to solve routine or standard problems. They receive instruction, guidance, and direction from others within the team, and they will leverage their conceptual knowledge of theories, practices, and procedures related to Technology and Information...