Manager, Detection and Response

2 days ago


Hyderabad, Telangana, India Synchrony Full time ₹ 12,00,000 - ₹ 24,00,000 per year

Manager, Detection and Response-4

Job Description:

Role Title: Manager, Detection and Response (L09)

Company Overview:

Synchrony (NYSE: SYF) is a premier consumer financial services company delivering one of the industry's most complete digitally enabled product suites. Our experience, expertise and scale encompass a broad spectrum of industries including digital, health and wellness, retail, telecommunications, home, auto, outdoors, pet and more.

  • We have recently been ranked #2 among India's Best Companies to Work for by Great Place to Work. We were among the Top 50 India's Best Workplaces in Building a Culture of Innovation by All by GPTW and Top 25 among Best Workplaces in BFSI by GPTW. We have also been recognized by AmbitionBox Employee Choice Awards among the Top 20 Mid-Sized Companies, ranked #3 among Top Rated Companies for Women, and Top-Rated Financial Services Companies.

  • We offer Flexibility and Choice for all employees and provide best-in-class employee benefits and programs that cater to work-life integration and overall well-being.

  • We provide career advancement and upskilling opportunities, focusing on Advancing Diverse Talent to take up leadership roles.

Organizational Overview:

The core functionality of JSOC team within Synchrony is to provide continuous monitoring and response to cyber threats against Synchrony, its employees, its customers and partners. We do this by developing best in class detection, response and containment capabilities through automation, orchestrations and machine learning.

Role Summary/Purpose:

The Manger, Detection and Response​ is part of the Synchrony Joint Security Operations Center (JSOC) and is responsible for being a subject matter expert in cyber detection of information security alerts and assisting in the investigation/reporting of major information security incidents supporting all business units. The candidate would have a position focused on the detection and response program operation consisting of detection, response, mitigation, and reporting of cyber security incidents; documenting and implementing the rotation schedule and assignments for handling escalated incidents. The candidate is expected to have a strong understanding of both traditional on-premise security and cloud management plane (also known as cloud control plane) security.

Key Responsibilities:

The JSOC coordinates with IT, Legal, Human Resources, and other appropriate business units to gather incident details, assess impact, and coordinate response. This role requires experience in all phases of Cyber Detection and Incident Response including preparation, notification, response, recovery, analysis, and post-mortem. The candidate must be familiar with communication technologies, communications protocols and emerging cloud security practices. The candidate that fulfills this role will be expected to have process documentation experience and excellent intra-business relationship experience. This role interacts with all levels of the organization, particularly within the IT organization and is viewed as a subject matter expert. Specific responsibilities include:

  • Respond to security incidents across a wide array of technologies, mitigate and contain impacts, coordinate remediation efforts, summarize and make recommendations to Sr. Management for improvements. Security technologies utilized by the JSOC team includes: Security Incident and Event Management (SIEM), Security Orchestration Automation and Response (SOAR), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), network perimeter firewall, enterprise email security, User and Entity Behavioral Analytics (UEBA), and Cloud Access Security Broker (CASB) toolsets.

  • Provide technical subject matter expertise to enable proactive detection of potential security threats and recommendations for improvements in overall security posture.

  • Work with members of the Cyber Intelligence team to develop and implement threat detection logic to counter emerging cybersecurity threats.

  • Develop and enhance Detection and Incident Response processes and procedures leveraging relationships with front line operations teams and exploiting tools and systems.

  • Document findings and create detailed reports for constituency both in written and verbal formats.

  • Enumerate risks and prioritize mitigation efforts based on clear business priorities.

  • Coordinates IT resources to effectively perform incident response tasks.

  • Acts as the subject matter expert on incident response tasks and takes responsibility for successful execution of incident response plan.

  • Performs incident response tasks to contain exposures from an incident.

  • Identify and recommend process improvements.

Required Skills/Knowledge:

  • Bachelor's degree and a minimum 4 years of work experience or Computer Science or a related discipline OR in in lieu of a degree, a High School Diploma/GED and minimum 4 years equivalent work experience. Additional requirements include:

  • Minimum of 4 years of years of experience in information security or related technology experience required, experience in the securities or financial services industry is a plus.

  • ​Minimum 2 years of cyber security and incident response or security operations related to the detection, analysis, containment, eradication and recovery from cyber security incidents

Desired Skills/Knowledge:

  • Strong verbal and written communication skills.

  • Ability to perform logical problem solving.

  • Experience of working in high performing teams and understand the dynamics of teamwork in a SOC environment.

  • Industry certifications such as CISSP, GCIH, AWS Certified Cloud Practitioner, AWS Certified Security – Specialty, and other cybersecurity certifications are a plus.

Eligibility Criteria:

  • Bachelor's degree and a minimum 4 years of work experience or Computer Science or a related discipline OR in in lieu of a degree, a High School Diploma/GED and minimum 4 years equivalent work experience. Additional requirements include:

  • Minimum of 4 years of years of experience in information security or related technology experience required, experience in the securities or financial services industry is a plus.

  • ​Minimum 2 years of cyber security and incident response or security operations related to the detection, analysis, containment, eradication and recovery from cyber security incidents

WORK TIMINGS:

Rotational shifts

For Internal Applicants:

  • Understand the criteria or mandatory skills required for the role, before applying

  • Inform your manager and HRM before applying for any role on Workday

  • Ensure that your professional profile is updated (fields such as education, prior experience, other skills) and it is mandatory to upload your updated resume (Word or PDF format)

  • Must not be any corrective action plan (First Formal/Final Formal, LPP)

  • L4 to L7 Employees who have completed 12 months in the organization and 12 months in current role and level are only eligible.

  • L8+ Employees who have completed 18 months in the organization and 12 months in current role and level are only eligible.

  • L04+ Employees can apply

    Grade/Level: 09

Job Family Group:

Information Technology Experience LevelMid Level

  • Hyderabad, Telangana, India Synchrony Full time

    Role Title AVP Detection and Incident Responder L10 Company Overview COMPANY OVERVIEW Synchrony NYSE SYF is a premier consumer financial services company delivering one of the industrys most complete digitally enabled product suites Our experience expertise and scale encompass a broad spectrum of industries including digital health and wellness ...

  • Incident Response- L3

    5 hours ago


    Hyderabad, Telangana, India CyberWark LLC Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Role Overview: The Cybersecurity Specialist is responsible for the Incident Response Activity. This role will help develop innovative and effective procedures for the Security Operations Center to enhance response time, coordination, and incident response operations, and built a world class team of Cyber Security Incident Response. Train staff on security...

  • Benefits Manager

    3 weeks ago


    Hyderabad, Telangana, India Response Informatics Full time

    We are seeking a highly experienced Senior PBM Professional to join our India GCC as PBM domain expert. This individual will play a pivotal role in building PBM domain capabilities in India by training and mentoring staff, aligning them to U.S. healthcare and pharmacy benefit management standards, and ensuring seamless integration of domain knowledge into...

  • Benefits Manager

    3 weeks ago


    Hyderabad, Telangana, India Response Informatics Full time

    We are seeking a highly experienced Senior PBM Professional to join our India GCC as PBM domain expert . This individual will play a pivotal role in building PBM domain capabilities in India by training and mentoring staff, aligning them to U.S. healthcare and pharmacy benefit management standards, and ensuring seamless integration of domain knowledge into...


  • Hyderabad, Telangana, India Phenom Full time

    Job DescriptionJob descriptionWhat We Offer:- Monitor and analyze security events and incidents to identify potential threats and vulnerabilities- Develop and maintainincident responseplans and procedures- Conduct regular security assessments and audits to identify potential risks and vulnerabilities- Investigate and respond to security incidents, including...


  • Hyderabad, Telangana, India beBeeProduction Full time ₹ 25,00,000 - ₹ 35,00,000

    Job OpportunityResponsibilities include handling processes to manufacture intermediate and API finish products.Cleaning of equipment including batch-to-batch cleaning, periodic cleaning, and changeover cleaning is also a part of the job.Accurate record-keeping of batch processing, equipment cleaning, and product changeover cleaning is essential.Control of...


  • Hyderabad, Telangana, India NopalCyber Full time

    Job Statement:NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Managed extended detection and response (MXDR), attack surface management (ASM), breach and attack simulation (BAS), and advisory services fortify your cybersecurity across both offense and defense. AI-driven...


  • Hyderabad, Telangana, India NopalCyber Full time

    Job Statement: NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Managed extended detection and response (MXDR), attack surface management (ASM), breach and attack simulation (BAS), and advisory services fortify your cybersecurity across both offense and defense. AI-driven...


  • Hyderabad, Telangana, India NTT Ltd. Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATAThe Senior...


  • Hyderabad, Telangana, India beBeeArtificialIntelligence Full time US$ 90,000 - US$ 1,20,000

    We are seeking a highly skilled professional to lead our Artificial Intelligence (AI) Program and ensure its responsible integration across our organization.This role requires a strong legal background, excellent analytical skills, and experience in managing key initiatives with significant business impact. The ideal candidate will provide objective and...