Information Security Operations Engineer
4 days ago
Information Security Operations Engineer | Vulnerability Management |Threat hunting
What Youll Do
As a senior incident response engineer, you will combine deep technical ability with strong collaboration and leadership skills to provide technical thought leadership across the various security operations disciplines including incidence response, threat detection and vulnerability management.
Core Responsibilities:
Incident Detection and Triage : Monitor SIEM for alerts and anomalies. Identify and triage potential security incidents (e.g., malware infections, phishing, data exfiltration).
Incident Response and Mitigation : Lead investigations into confirmed incidents. Contain, eradicate, and recover from security events. Coordinate with internal stakeholders to implement remediation. Collect and preserve evidence for internal investigations or potential legal action. Contribute to incident response teams, maintaining relevant communication in emails, ticket summaries, analysis and reporting. Work with Incident handlers to provide recommendations for remediation of compromised systems and any relevant countermeasures.
Threat Analysis and Hunting : Perform threat hunting to proactively identify risks. Analyze indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs).
Playbook and Automation Development : Develop and enhance incident response playbooks. Identify opportunities for automation to streamline incident handling.
Post-Incident Activities : Lead post-incident reviews (PIRs), documenting lessons learned. Recommend and track corrective actions to prevent recurrence.
Be able to translate incident response outcomes into documentation and reports to satisfy audit and compliance reviews.
Other Responsibilities
o Monitor various security blogs, alerts and notifications, RSS feeds and forums to keep abreast of the latest security news, attacks, threats, vulnerabilities and exploits.
o Applying the output of threat hunts into new detections and gap assessment
o Monitor various security blogs, alerts and notifications, RSS feeds and forums to keep abreast of the latest security news, attacks, threats, vulnerabilities and exploits.
o Build automated log correlations in Splunk or a similar tool to identify anomalous and potentially malicious behavior.
o Review, create or document standard operating procedures, recommendations, projects specific documents and resource guides as needed.
o Supervise vulnerabilities and work with engineering teams to drive proper mitigations.
o Supervise security operations queues to ensure timely triage of operations events and requests
o Supervise global vulnerability feeds, assess impact to the business and respond promptly
o Participate in security incident investigations and retrospect on security events
o Ensure all required logging is enabled and collected in SIEM tool
o Participate in on-call rotations as needed to support continuous monitoring needs that may lay outside of business hours
Who You Are
You have broad and deep knowledge and experience in providing security operations services including Incident Response, Vulnerability mgmt., and Threat Hunting, in various cloud native environments. You are motivated to work with multi-functional teams and drive things together to accomplish role objectives. You thrive in a fast-paced environment and seek ownership of large, critical projects. We're looking for people who enjoy crafting solutions to tackle problems rather than focusing on completing tasks as fast as possible.
Required Qualifications
o Bachelors or Masters degree in information security or equivalent with minimum 10 years of Security Operations experience
o Demonstrated ability administering and operating security tooling such as Nessus, OSQuery, Splunk, Burpsuite, Nmap, Wireshark, Falco, Tenable, , etc.
o Thorough technical expertise in administrating/operating and supporting various public cloud technologies including AWS, Azure and GCP
o Ability to create custom correlation rules to detect known or suspected malware traffic patterns within security tools
o Packet-level knowledge of TCP/IP protocols and network applications and an understanding of TCP/IP routing behaviors
o Certifications such as CEH, Splunk, CISSP, Cloud Certs AWS/GCP/Azure
o Understanding of regular expression and expertise in various query languages including for Splunk and Jira
o Demonstrated experience operating in regulated environments and ensuring incident response activities are aligned with compliance requirements.
o Familiarity with and ability to support incident response practices aligned with SOC 2, IRAP, ISO/IEC 27001, NIST 800-53, HIPAA, and other relevant regulatory standards.
o Experience analyzing events or incidents to triage the issue, find the root cause through log and forensic analysis, and determine security vulnerabilities, attacker exploit techniques and methods to construct the appropriate
remediation.
Experience developing playbooks, run books, solve technical issues, and recognize and identify patterns to reduce ticket volume
Ability to write scripts (e.g., Python, PowerShell, Bash) to automate tasks.
o Strong knowledge of security standard methodologies, principles, and common security frameworks. Such as MITRE ATT&CK, NIST, ISO 27001, OWASP-Top 10, CIS benchmarks.
o Knowledge of TCP/IP, AI tools, CVSS, Linux, Virtualization, Containers
o Strong communication, organizational, and problem-solving skills in a dynamic environment
o Effective documentation skills, to include technical diagrams and written descriptions
o Ability to work independently and as part of a team with professional demeanor.
-
Information Security Engineer
2 weeks ago
Bengaluru, Karnataka, India Cisco Full time ₹ 12,00,000 - ₹ 36,00,000 per yearInformation Security Engineer - Network Security Engineer, CISSP, CISM, CCNA Security *Meet the Team* Cisco InfoSec seeks an Information Security Engineer to join some of the industry''s brightest minds in Network Security, managing access decisions based on Cisco''s security policies, assessment of security risks at various PINs in one of the world''s...
-
Information Security Engineer
7 days ago
Bengaluru, Karnataka, India Zscaler Full time ₹ 6,00,000 - ₹ 18,00,000 per yearAbout ZscalerServing thousands of enterprise customers around the world including 45% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world's largest security cloud, Zscaler accelerates digital...
-
SOC Manager
1 week ago
Bengaluru, Karnataka, India Sisa Information Security Full time ₹ 20,00,000 - ₹ 25,00,000 per yearRoles and Responsibilities:Serve as an escalation point for all Threat Analysts on shift for complex/unusual alerts/cases/requests/incidents.Daily review of security alerts/logs with follow-up on any suspicious activity.Basic understanding of Forensics / hands on experience of sandboxingHands on experience and rule revisions of security solutions on phishing...
-
Information Security Engineer
20 hours ago
Bengaluru, Karnataka, India Employ Full time ₹ 12,00,000 - ₹ 36,00,000 per yearEmploy is transforming how hiring gets done. With our three ATS solutions - Jobvite, Lever, and JazzHR - plus cutting-edge AI Companions, we free recruiters from admin work and give them more time for what matters: connecting with people. More than 23,000 global customers rely on Employ to make millions of candidate connections each year, helping them hire...
-
Information Security
22 hours ago
Bengaluru, Karnataka, India Alteryx Full time ₹ 5,00,000 - ₹ 8,00,000 per yearWe're looking for problem solvers, innovators, and dreamers who are searching for anything but business as usual. Like us, you're a high performer who's an expert at your craft, constantly challenging the status quo. You value inclusivity and want to join a culture that empowers you to show up as your authentic self. You know that success hinges on...
-
Information Security Engineer
2 weeks ago
Bengaluru, Karnataka, India Collegedunia Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRole : Information Security Engineer GolangOverviewThe Information Security Engineer will be responsible for the automation and delivery of network security within global public cloud initiatives.This role is critical in ensuring secure, scalable, and automated deployments across AWS and GCP environments, with a strong emphasis on Terraform and Golang-based...
-
Sr Information Security Engineer, SAAS Security
22 hours ago
Bengaluru, Karnataka, India ServiceNow Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCompany Description It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500. Our intelligent cloud-based...
-
Sr Information Security Engineer, SAAS Security
20 hours ago
Bengaluru, Karnataka, India ServiceNow Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCompany Description It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500. Our intelligent cloud-based...
-
Junior Information Security Engineer
24 hours ago
Bengaluru, Karnataka, India Onity Group Inc. Full time ₹ 9,00,000 - ₹ 12,00,000 per yearPosition Summary:Security operations team is responsible for ensure that the Confidentiality, Integrity and availability of the organization is always protected. The person working in L1 SOC team operates the security monitoring solutions, reacting timely to security events as identified. The role requires working in shift schedule to cover 24/7.Job...
-
Junior Information Security Engineer
24 hours ago
Bengaluru, Karnataka, India Onity External Career Site Full time ₹ 9,00,000 - ₹ 12,00,000 per yearPosition Summary:Security operations team is responsible for ensure that the Confidentiality, Integrity and availability of the organization is always protected. The person working in L1 SOC team operates the security monitoring solutions, reacting timely to security events as identified. The role requires working in shift schedule to cover 24/7.Job...