Incident Response
10 hours ago
Role & responsibilities
- Detect, Analyze, Investigate, and report qualified security incidents to the Client as per the defined SLA
- Provide recommendations to the security incidents reported as per SLA
- Investigates incidents using various security event sources (FW, IDS, PROXY, AD, EDR, DLP etc.).
- Investigations into non-standard incidents and execution of standard scenarios.
- Provide dashboard and data related to Incidents/Offenses for governance reports.
- Escalates to L3 if investigations uncover unusual or atypical situations.
- Monitoring unhealthy log source/data source and escalate to engineering team to fix them.
- Participate in incident response (IR) efforts; detect, identify, respond, contain and remediate all information security incidents.
- Rapidly and accurately determine the source of a security incident and moving quickly to identify and apply containment, mitigation, and remediation steps.
- Contribute to the execution of Cyber Security operations, incident response, and investigations spanning across all functions of the Corporate Security organization.
- Track, monitor incident actions while applying intelligence, situational awareness to prioritise incident actions based on risk
- Responsible for Incident and Breach communications, assessments, and reports and customer facing, to include leadership and executive management for the purpose of enabling Senior Management to make decisions in a crisis.
- Develop and document processes to ensure consistent and scalable response operations.
- Deliver tabletop IR assessments and real-life IR simulations at a technical and executive level.
- Conduct in-depth root cause analysis on complex malware and user/system behaviour event
- Gather and analyse forensic evidence for cyber security incidents and investigations.
- Develop and document enhanced event analysis and incident response processes and procedures.
Preferred candidate profile
- Deep understanding of computer intrusion activities, incident response techniques, tools, and procedures
- Knowledge of Windows, Active Directory, DNS & Linux operating systems,
- Overall experience of at least 3+ years in SIEM monitoring and Cyber security Incident response and Management
- Good Experience in SIEM monitoring (QRadar, Sentinel, Splunk, Chronicle)
- Knowledge of SOAR technologies, working with playbooks (Cortex, chronicle, Splunk SOAR)
- Experience handling malware incidents and detections from EDR (MS Defender, Crowdstrike, SenitnelOne etc..)
- Working experience and knowledge of ITSM tools for incident management.
- Must be action oriented and have a proactive approach to solving issues.
- Knowledge of security logs, log quality review.
- Knowledge on IT (Operating systems, networking, databases) and IT security knowledge (system and network security) including IT security tools.
Good knowledge of office collaboration tools
-
Associate - Incident Response
6 days ago
Delhi, Gurugram, NCR, New Delhi, India Unitedlex Full time ₹ 2,00,000 - ₹ 6,00,000 per yearWe are hiring for Associate in Incident Response Team with UnitedLex India Private Limited.Location: Gurgaon (Work from Office).Shift Timings: Gurgaon:Morning Shift 8:30AM - 5:30PMNight Shift 6:30 PM to 3:30 AMWorking Days: 5 Days.Cab facilities : Both side cabs, if location will be in our transport .Work Type: Fixed Time Hire.Work Duration: One Month...
-
Incident Response Analyst
4 weeks ago
New Delhi, India Vontier Full timeHi,As the Information Security Senior Global Incident Response Analyst, you will play a critical role in the organization's cybersecurity efforts. The position is responsible for acting as a senior analyst during security incidents, coordinating efforts with various members of the Incident Response Team, ensuring Preparation, Identification, Containment,...
-
Incident Response Analyst
7 hours ago
Bengaluru, Karnataka, India Autodesk Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Requisition ID #25WD92064Position OverviewThe Incident Response Analyst is responsible for monitoring, identifying, assessing, containing, and responding to various information security events in a large and complex environment, as well as analyse, triage, and report on these incidents and investigations. The candidate must have knowledge of system...
-
Associate, Cybersecurity Incident Response
2 weeks ago
Gurugram, Haryana, India Ankura Full timeAnkura is a team of excellence founded on innovation and growth. - Practice Overview: - Our diverse team is comprised of seasoned security veterans, including professionals from the intelligence community and leading private security firms, alongside talented early-career professionals. This unique blend of experience and fresh perspectives allows us to...
-
Incident Response Engineer
2 days ago
Bengaluru, Karnataka, India Rockwell Automation Full time ₹ 12,00,000 - ₹ 36,00,000 per yearRockwell Automation is a global technology leader focused on helping the world's manufacturers be more productive, sustainable, and agile. With more than 28,000 employees who make the world better every day, we know we have something special. Behind our customers - amazing companies that help feed the world, provide life-saving medicine on a global scale,...
-
Incident Response Associate
2 weeks ago
Bengaluru, Karnataka, India ZeroFOX Full time**OPPORTUNITY OVERVIEW** - ZeroFox seeks an Incident Response Associate to leverage their experience and skills to deliver cybersecurity guidance and services to customers who are preparing and responding to cyber incidents. In this role, you will use your deep understanding of both existing and emerging threat actors, as well as experience identifying...
-
Incident Response Coordinator
7 days ago
Delhi, Kolkata, Mumbai, India Proarch Technology Services Full timeJob Description - Coordinate the investigation, containment, recovery, and remediation of cybersecurity incidents, collaborating with IT, legal, communications, and third parties as needed - Serve as the primary contact during incidents, providing status updates and coordinating activities with leadership, internal teams, and external partners - Monitor and...
-
Manager - Incident Response
2 weeks ago
Bengaluru, India UnitedLex Full timePosition title: Manager Job Location: Bangalore Shift timing: 8:30AM – 5:30PM Role and responsibilities Responsible for overall performance and management of the team assigned Responsible for 2-3 projects, concurrently People management that includes responsibility of performance evaluation, training, discipline, career pathing of all team members...
-
Manager - Incident Response
2 weeks ago
Bengaluru, India UnitedLex Full timePosition title: ManagerJob Location: BangaloreShift timing: 8:30AM – 5:30PMRole and responsibilities- Responsible for overall performance and management of the team assigned- Responsible for 2-3 projects, concurrently- People management that includes responsibility of performance evaluation, training, discipline, career pathing of all team members-...
-
Manager - incident response
2 weeks ago
Bengaluru, India UnitedLex Full timePosition title: ManagerJob Location: BangaloreShift timing: 8:30 AM – 5:30 PMRole and responsibilities- Responsible for overall performance and management of the team assigned- Responsible for 2-3 projects, concurrently- People management that includes responsibility of performance evaluation, training, discipline, career pathing of all team members-...