Incident Response Analyst

4 weeks ago


Gurugram, India Milliman Full time

Job Summary

This position functions as a member of the corporate information security team and will be an integral participant in drafting and reviewing incident response process documentation. The position shall monitor threat information sources, participate in the incident response, and root cause analysis, and produce metrics relevant to historical events and/or incidents. The position works with local offices and their administrators to assist in accomplishing incident triage and forensic activities consistent with documented procedures for confirmed incidents. The position shall report to and work with the Information Security Manager. In addition, the position shall work with peer team members, Aisa Head, Director of Operations & Security, and the corporate legal team.

Job Requirements

Participate in day-to-day operations of reviewing information security incidents from various sources, coordinate response, escalation, tracking and analysis of incidents Participate in drafting and reviewing incident response process documentation Development of Incident Response dashboard and metrics as directed by manager Conduct advanced computer and network forensic investigations relating to various forms of malware, computer intrusion, data breaches, etc. Participate in threat hunting activities to proactively search for threats in the enterprise environment Management and monitoring of data loss prevention (DLP) initiatives Keep up to date on latest information security threats and countermeasures Recommend security enhancements and purchases consistent with information security strategy and evolving threats Provide forensic analysis of network packet captures, DNS, proxy, Netflow, malware, host-based security and application logs, as well as logs from various types of security sensors Assist in identifying and remediating gaps as identified throughout the investigation Review log-based data, both in raw form and utilizing SIEM or aggregation tools Work with the Information Security Officer as integral member of incident response team Maintain an up-to-date understanding of industry best practices. Willingness to travel occasionally

Qualifications

Minimum 3-4 years of relevant experience in the information security field In depth knowledge of Information Security incident handling and investigation procedures Demonstrated skills in conducting forensic analysis of digital evidence, network traffic, managing event analysis/correlation and related incident investigations Technical skills proficiency in the following areas: security information event management, network communication using TCP/IP protocols, basic system administration, basic understanding of malware (malware communication, installation, malware types), intermediate knowledge of computer network defense operations (proxy, firewall, IDS/IPS, router/switch, open-source information collection Excellent teamwork skills and the ability to successfully interface with other organizational groups Candidate must be able to effectively communicate in English (written and presentation/verbal) Ability to clearly and effectively communicate Information Security matters to executives, auditors and end users Candidate should have a passion for research, and uncovering the unknown about cyber security threats and threat actors Candidate should have excellent time management skills including the ability to prepare prioritize and complete work plans. Candidate should have excellent decision making and problem-solving skills including the ability to clearly define and resolve issues. Ability to work effectively and organize priorities independently

Education & Experience

Appropriate education such as a Bachelor’s degree in Computer Science (or related engineering degree) Minimum 3-4 years of relevant experience in the information security field Working knowledge of security operations: perimeter defense, forensics, incident response, kill chain analysis, risk assessment and security metrics. Preferred Certifications: CISSP, CISM, CEH, CCFP Strong Understanding of risk-based and one or more of the following frameworks: HITRUST, NIST, PCI-DSS, Sarbanes Oxley, HIPAA, FISMA, ISO, or COBIT.

  • Gurugram, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...


  • Gurugram, India Valvoline Global Operations Full time

    About the job Why Valvoline Global Operations (VGO)? Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil. As an affiliate...


  • Gurugram, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...


  • Gurugram, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...


  • Gurugram, India Valvoline Global Operations Full time

    About the jobWhy Valvoline Global Operations (VGO)?Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil.As an affiliate of...


  • gurugram, India Valvoline Global Operations Full time

    About the job Why Valvoline Global Operations (VGO)? Valvoline Global is a worldwide leader in automotive and industrial solutions, creating future-ready products and best-in-class services for partners around the globe. Established in 1866, we introduced the world’s first branded motor oil, claiming our position as The Original Motor Oil. As an affiliate...


  • gurugram, India Milliman Full time

    Job Summary This position functions as a member of the corporate information security team and will be an integral participant in drafting and reviewing incident response process documentation. The position shall monitor threat information sources, participate in the incident response, and root cause analysis, and produce metrics relevant to historical...


  • gurugram, India Milliman Full time

    Job Summary This position functions as a member of the corporate information security team and will be an integral participant in drafting and reviewing incident response process documentation. The position shall monitor threat information sources, participate in the incident response, and root cause analysis, and produce metrics relevant to historical...


  • Gurugram, India apexanalytix Full time

    Position SummaryAs an Incident & Support Analyst, you will be responsible for providing technical support and resolving incidents reported by users or detected through monitoring systems. Your role involves troubleshooting issues, analyzing root causes, and implementing solutions to ensure the stability and reliability of IT systems and services. You will...


  • Gurugram, India apexanalytix Full time

    Position SummaryAs an Incident & Support Analyst, you will be responsible for providing technical support and resolving incidents reported by users or detected through monitoring systems. Your role involves troubleshooting issues, analyzing root causes, and implementing solutions to ensure the stability and reliability of IT systems and services. You will...


  • Gurugram, India apexanalytix Full time

    Position SummaryAs an Incident & Support Analyst, you will be responsible for providing technical support and resolving incidents reported by users or detected through monitoring systems. Your role involves troubleshooting issues, analyzing root causes, and implementing solutions to ensure the stability and reliability of IT systems and services. You will...


  • Gurugram, India apexanalytix Full time

    Position SummaryAs an Incident & Support Analyst, you will be responsible for providing technical support and resolving incidents reported by users or detected through monitoring systems. Your role involves troubleshooting issues, analyzing root causes, and implementing solutions to ensure the stability and reliability of IT systems and services. You will...


  • Gurugram, India apexanalytix Full time

    Position Summary As an Incident & Support Analyst, you will be responsible for providing technical support and resolving incidents reported by users or detected through monitoring systems. Your role involves troubleshooting issues, analyzing root causes, and implementing solutions to ensure the stability and reliability of IT systems and services. You will...


  • Gurugram, Haryana, India Ankura Full time

    Ankura is a team of excellence founded on innovation and growth. - Practice Overview: - Our diverse team is comprised of seasoned security veterans, including professionals from the intelligence community and leading private security firms, alongside talented early-career professionals. This unique blend of experience and fresh perspectives allows us to...

  • Threat Hunting

    4 weeks ago


    Gurugram, India Hudson RPO Full time

    Job Description :Seeking a skilled Threat Hunting and Incident Response Specialist to join our cybersecurity team. In this critical role, you will focus on proactively identifying potential security threats, investigating security incidents, and developing mitigation strategies to protect the organization. You will collaborate with cross-functional teams to...

  • Threat Hunting

    4 weeks ago


    gurugram, India Hudson RPO Full time

    Job Description :Seeking a skilled Threat Hunting and Incident Response Specialist to join our cybersecurity team. In this critical role, you will focus on proactively identifying potential security threats, investigating security incidents, and developing mitigation strategies to protect the organization. You will collaborate with cross-functional teams to...

  • Threat Hunting

    3 weeks ago


    Gurugram, India Hudson RPO Full time

    Job Description :Seeking a skilled Threat Hunting and Incident Response Specialist to join our cybersecurity team. In this critical role, you will focus on proactively identifying potential security threats, investigating security incidents, and developing mitigation strategies to protect the organization. You will collaborate with cross-functional teams to...

  • Threat Hunting

    1 week ago


    gurugram, India Hudson RPO Full time

    Job Description :Seeking a skilled Threat Hunting and Incident Response Specialist to join our cybersecurity team. In this critical role, you will focus on proactively identifying potential security threats, investigating security incidents, and developing mitigation strategies to protect the organization. You will collaborate with cross-functional teams to...

  • Threat Hunting

    3 weeks ago


    Gurgaon/Gurugram, India Hudson RPO Full time

    Job Description :Seeking a skilled Threat Hunting and Incident Response Specialist to join our cybersecurity team. In this critical role, you will focus on proactively identifying potential security threats, investigating security incidents, and developing mitigation strategies to protect the organization. You will collaborate with cross-functional teams to...

  • Threat Hunting

    4 weeks ago


    Gurgaon/Gurugram, IN Hudson RPO Full time

    Job Description :Seeking a skilled Threat Hunting and Incident Response Specialist to join our cybersecurity team. In this critical role, you will focus on proactively identifying potential security threats, investigating security incidents, and developing mitigation strategies to protect the organization. You will collaborate with cross-functional teams to...