Senior Incident Responder
5 days ago
Job Description
SecurityHQ is a global cybersecurity company. Our specialist teams design, engineer and manage systems that promote clarity and an inclusive culture of trust, build momentum around improving security posture, and increase the value of cybersecurity investment. Around the clock, 365 days per year, our customers are never alone. Were SecurityHQ. Were focused on engineering cybersecurity, by design
Responsibilities
- Lead response to complex, high-impact security incidents in AWS, including unauthorized access, data breaches, malware infections, DDoS attacks, phishing, APTs, zero-day exploits, and cloud misconfigurations.
- Perform in-depth analysis of security incidents, including advanced log analysis, digital forensic investigation, and root cause analysis.
- Develop and implement containment, eradication, and recovery plans for complex security incidents, minimizing disruption and improving security posture.
- Coordinate with internal and external stakeholders during incident response activities.
- Document incident details, analysis findings, and remediation actions, including detailed forensic reports and security posture assessments.
- Identify and recommend security improvements to prevent future incidents and enhance cloud security posture, including:
- AWS security best practices
- Security tool implementation and configuration (with a focus on CSPM tools)
- Vulnerability management
- Security awareness training
- Threat hunting strategies
- Security architecture enhancements
- CSPM implementation and optimization
- Develop and maintain AWS-specific incident response plans, playbooks, and procedures, emphasizing automation, orchestration, and continuous security posture improvement.
- Stay current on cloud security, digital forensics, and cloud security posture management.
- Mentor junior security analysts in incident response and security posture management.
- Participate in on-call rotation, providing expert-level support and guidance on security posture.
- Develop and deliver training on incident response, forensic best practices, and cloud security posture management.
- Conduct proactive threat hunting and security posture assessments.
- Contribute to the development of security tools and automation to improve incident response efficiency, effectiveness, and security posture.
Essential Skills
- Expert-level understanding of AWS services, including:
- EC2, S3, RDS, VPC, Lambda
- CloudTrail, CloudWatch, Config, Security Hub, GuardDuty
- IAM, KMS
- AWS Organizations, AWS Control Tower
- Extensive experience with SIEM systems (e.g., Datadog, Qradar, Azure Sentinel) in a cloud environment, with a focus on security posture monitoring.
- Mastery of log analysis, network analysis, and digital forensic investigation techniques, including experience with specialized forensic tools (e.g., EnCase, FTK, Autopsy, Velociraptor) and CSPM tools.
- Strong experience with scripting (e.g., Python, PowerShell) for automation, analysis, tool development, and security posture management.
Deep familiarity with security tools and technologies, including:
- IDS/IPS
- EDR
- Vulnerability scanners
- Firewalls
- Network forensics tools
- CSPM tools
- Excellent communication and interpersonal skills, with the ability to convey highly technical information to technical and non-technical audiences, including executive leadership and legal counsel, regarding incident response and security posture.
- Exceptional problem-solving and analytical skills; ability to remain calm, focused, and decisive under high-pressure situations, including those involving significant security posture deficiencies.
- Ability to work independently, lead a team, and collaborate effectively to improve the organization's security posture.
Expert-level understanding of AWS services, including:
- EC2, S3, RDS, VPC, Lambda
- CloudTrail, CloudWatch, Config, Security Hub, GuardDuty
- IAM, KMS
- AWS Organizations, AWS Control Tower
- Extensive experience with SIEM systems (e.g., Datadog, Qradar, Azure Sentinel) in a cloud environment, with a focus on security posture monitoring.
- Mastery of log analysis, network analysis, and digital forensic investigation techniques, including experience with specialized forensic tools (e.g., EnCase, FTK, Autopsy, Velociraptor) and CSPM tools.
- Strong experience with scripting (e.g., Python, PowerShell) for automation, analysis, tool development, and security posture management.
Deep familiarity with security tools and technologies, including:
- IDS/IPS
- EDR
- Vulnerability scanners
- Firewalls
- Network forensics tools
CSPM tools
Excellent communication and interpersonal skills, with the ability to convey highly technical information to technical and non-technical audiences, including executive leadership and legal counsel, regarding incident response and security posture.
- Exceptional problem-solving and analytical skills; ability to remain calm, focused, and decisive under high-pressure situations, including those involving significant security posture deficiencies.
- Ability to work independently, lead a team, and collaborate effectively to improve the organization's security posture.
Education Requirements &
Experience
- Master's degree in Computer Science, Cybersecurity, or a related field.
- AWS Security certifications (e.g., AWS Certified Security - Specialty).
- Relevant security certifications (e.g., CISSP, GCIH, GCIA, GREM, GNFA, OSCP).
- Experience leading incident response teams and security posture improvement initiatives.
- Experience with cloud automation and orchestration (e.g., AWS Systems Manager, Lambda) for incident response and security posture management.
- Knowledge of DevSecOps principles and practices, including security integration into CI/CD pipelines and infrastructure as code (IaC) security.
- Experience with container security (e.g., Docker, Kubernetes) in AWS, including forensic analysis and security posture assessment.
- Experience with reverse engineering and malware analysis, focused on identifying threats that impact cloud security posture.
- Strong understanding of legal and regulatory issues related to digital forensics, incident response, and cloud security posture (e.g., data privacy, chain of custody, compliance requirements).
-
Pune, Maharashtra, India Hansen Full time ₹ 5,00,000 - ₹ 12,00,000 per yearJob Description : Key Responsibilities : - Act as Incident Commander, coordinating security incident response within your time zone. - Monitor security platforms and alerts, triaging and prioritizing investigations. - Collaborate with MDR partners and internal teams for timely detection and alerting. - Develop, maintain, and test incident...
-
Senior Technical Incident Manager
1 day ago
Pune, Maharashtra, India Cerence AI Full time ₹ 12,00,000 - ₹ 36,00,000 per yearA Moving Experience.Principal Duties and ResponsibilitiesProvide oversight and strategic coordination of end-to-end service delivery across critical platforms and systems.Proactively identify service trends, recurring issues, and systemic failures, and lead efforts to drive permanent resolutions.Lead root cause analysis (RCA) and post-incident reviews with...
-
Senior Technical Incident Manager
2 weeks ago
Pune, Maharashtra, India Cerence Full time ₹ 10,00,000 - ₹ 25,00,000 per yearA Moving Experience.Principal Duties and ResponsibilitiesProvide oversight and strategic coordination of end-to-end service delivery across critical platforms and systems.Proactively identify service trends, recurring issues, and systemic failures, and lead efforts to drive permanent resolutions.Lead root cause analysis (RCA) and post-incident reviews with...
-
Senior Incident Manager
2 weeks ago
Pune, Maharashtra, India FIS Full time ₹ 1,04,000 - ₹ 1,30,878 per yearSenior Incident Manager - 24/7 Rotational Shifts - 8 to 12 Yrs ExperienceAre you curious, motivated, and forward-thinking? At FIS you'll have the opportunity to work on some of the most challenging and relevant issues in financial services and technology. Our talented people empower us, and we believe in being part of a team that is open, collaborative,...
-
Senior Incident Manager
5 days ago
Pune, Maharashtra, India FIS Full time ₹ 12,00,000 - ₹ 36,00,000 per yearSenior Incident Manager - 24/7 Rotational Shifts - Pune LocationAre you curious, motivated, and forward-thinking? At FIS you'll have the opportunity to work on some of the most challenging and relevant issues in financial services and technology. Our talented people empower us, and we believe in being part of a team that is open, collaborative,...
-
Cyber Incident Handler
1 day ago
Pune, Maharashtra, India 3Columns Full time ₹ 12,00,000 - ₹ 36,00,000 per year3Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services. Solutions include managed security services, offensive security services, cybersecurity consulting, and professional services to help customers deploy all the necessary controls....
-
Pune, Maharashtra, India VOIS Full time ₹ 40,00,000 - ₹ 1,20,00,000 per yearRequirements,3 to 5 years IT Incident Management, Stabilization & Release Management experience.Min ITIL V4 foundations certified.Strong communications skills & Stakeholder Management skills.Good experience in reporting skills using Power BI / MS Excel etc.Problem, change management knowledge would be an additional advantage.Job Description:Real Time &...
-
Senior Security Operations Analyst
2 days ago
Pune, Maharashtra, India ZS Full time ₹ 12,00,000 - ₹ 24,00,000 per yearSenior Security Operations AnalystWe are seeking an experienced professional to join our Pune, India office as a Senior Security Operations Analyst with a strong background in Security Information and Event Management (SIEM) platforms, specifically in Microsoft Sentinel and Wiz. The ideal candidate will be responsible for leading advanced threat detection,...
-
Pune, Maharashtra, India INCUBXPERTS TECHNOCONSULTING PRIVATE LIMITED Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescription : Job Title : Tier 2 Support Engineer. Type : Full-time. Shift : 24x7 rotational (including weekends). Working hours : 2 Shifts between 8 PM EST to 8 AM EST (i. 5 : 00 AM IST to 6 : 00 pm IST). About the Role : We are looking for a Tier 2 Support Engineer to join our engineering and support team. This...
-
Pune, Maharashtra, India BNY External Career Site Full time ₹ 12,00,000 - ₹ 24,00,000 per yearSenior Associate, Information Security Analyst:At BNY, our culture allows us to run our company better and enables employees' growth and success. As a leading global financial services company at the heart of the global financial system, we influence nearly 20% of the world's investible assets. Every day, our teams harness cutting-edge AI and breakthrough...