T & T Cyber Defense & Resilience | Assistant Manager | IR
4 weeks ago
Job Description
Preferred Knowledge
The role requires efficient incident response and digital forensics skills to minimise the impact of cyber risks. The individual will oversee Security monitoring, Security tools Operations, Security incidents, ensure incidents are managed effectively and reported to stakeholders. This role primarily consists of first responder activities and to conducting thorough response activities on behalf of a wide variety of clients across every sector.
Candidate required to work in complex security environments and alongside SOC team to design, communicate and execute incident response, containment, and remediation plans. Support incident response team analysts and incident management teams. Analyse tools, processes, and procedures for responding to cyber intrusions and come up with new methods for detecting cyber adversaries.
Demonstrates proven expertise and success in incident handling, triage of events, network analysis and threat detection, trend analysis. Should have the following skills:
Deep understanding of computer intrusion activities, incident response techniques, tools, and procedures Knowledge of Windows, Active Directory, DNS & Linux operating systems, Good Experience in SIEM monitoring (QRadar, Sentinel) Knowledge of SOAR technologies, working with playbooks (Cortex, Phantom, Demisto) Working experience and knowledge of ITSM tools for incident management. Must be action oriented and have a proactive approach to solving issues. Knowledge of security logs, log quality review. Knowledge on IT (Operating systems, networking, databases) and IT security knowledge (system and network security) including IT security tools. Good knowledge of office collaboration toolsPreferred
Educational Qualification
Bachelor’s/Master’s Degree
Certifications
Certifications like ECIH v2, CHFI, GCIH or GCIA is preferred
Required
Professional Experience
Overall experience of at least 5+ years in SIEM monitoring and Cyber security Incident response and Management Hands-on experience with security tools and devices, operating systems, and/or networking devices desired. Proven skills and experience in log analysis, incident investigations Experience working across diverse teams to facilitate solutions Experience working with Security practitioners Willingness to working 24/7 environment in rotating shifts. Ability to work in time-sensitive and stressful situations with ease and professionalism, possess an efficient and versatile communication style Evidence handling Data acquisition (Disk, Memory, Mobile, Cloud, Enterprise Wide) Digital forensics (Windows, Mac OS, Linux/Unix) Thorough understanding of Cyber kill chain and MITRE ATT&CK framework. Experience with one or more of SIEM tools such as QRadar, Sentinel, etc... is required Experience on EDR tools for Incident response and threat hunting (Crowdstrike, MS Defender, Sentinel One) Strong knowledge and experience with commonly used forensic toolsets, including EnCase, FTK. Experience reviewing raw logs and performing advanced data correlation and analysis (i.e., firewall, network flow, IPS, endpoint protection, web application, host OS, database, AAA, etc…) Experience of network & host-based forensic analysis and techniques Experience of malware analysis and understanding attack techniques. Industry certifications such as along with experience will be a bonus. Experience in lieu of certification will be taken into considerationRoles & Responsibilities
Detect, Analyze, Investigate, and report qualified security incidents to the Client as per the defined SLA Provide recommendations to the security incidents reported as per SLA Investigates incidents using various security event sources (FW, IDS, PROXY, AD, EDR, DLP etc.). Investigations into non-standard incidents and execution of standard scenarios. Provide dashboard and data related to Incidents/Offenses for governance reports. Escalates to L3 if investigations uncover unusual or atypical situations. Monitoring unhealthy log source/data source and escalate to engineering team to fix them. Participate in incident response (IR) efforts; detect, identify, respond, contain and remediate all information security incidents. Rapidly and accurately determine the source of a security incident and moving quickly to identify and apply containment, mitigation, and remediation steps. Contribute to the execution of Cyber Security operations, incident response, and investigations spanning across all functions of the Corporate Security organization. Track, monitor incident actions while applying intelligence, situational awareness to prioritise incident actions based on risk Responsible for Incident and Breach communications, assessments, and reports and customer facing, to include leadership and executive management for the purpose of enabling Senior Management to make decisions in a crisis Develop and document processes to ensure consistent and scalable response operations Deliver tabletop IR assessments and real-life IR simulations at a technical and executive level. Conduct in-depth root cause analysis on complex malware and user/system behaviour event Gather and analyse forensic evidence for cyber security incidents and investigations. Develop and document enhanced event analysis and incident response processes and procedures-
Bengaluru, India Deloitte Full timeJob Description Preferred Knowledge The role requires efficient incident response and digital forensics skills to minimise the impact of cyber risks. The individual will oversee Security monitoring, Security tools Operations, Security incidents, ensure incidents are managed effectively and reported to stakeholders. This role primarily consists of...
-
Bengaluru, India Deloitte Full timeYour potential, unleashed. India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond. At Deloitte, your whole self to work, every day. Combine that...
-
T&T-Cyber-Defense & Resilience-SOC-AD-Bengaluru
4 weeks ago
Bengaluru, India Deloitte Full timeYour potential, unleashed. India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realize your potential amongst cutting edge leaders, and organizations shaping the future of the region, and indeed, the world beyond. At Deloitte, your whole self to work, every day. Combine that...
-
Manager - Cyber Defense
4 months ago
Bengaluru, India Diageo Full timeDescription : Job Title: Manager - Cyber Defense Level : L5A Location: Bangalore With over 200 brands sold in more than 180 countries, we’re the world’s leading premium drinks company. Every day, over 27,000 hard-working people come together at Diageo to build the magic behind our much-loved brands. Our founders, such as Arthur Guinness, John...
-
Bengaluru, India Deloitte Full timeYour potential, unleashed. India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond. At Deloitte, your whole self to work, every day. Combine that...
-
Account Finance Partner
1 month ago
Bengaluru, Karnataka, India Capgemini Full timeFinance & Accounting Operations Specialist - Proficiency in Proficient||Finance management - Experience >= Eleven to Eighteen Years||Finance management - How Recent in Less than 3 Years||Finance management - Proficiency in Proficient|Job Description: - Need better tracking of Finance and Operations as its dynamic place where we have additions and exits...
-
Bengaluru, India Deloitte Full timeJD: Preferred Knowledge Demonstrates proven expertise and success managing project workstreams in a security, controls, or information security management environment. Should have the following skills: • Excellent communication and presentation skills • Analytical and problem-solving skills • Proven ability to implement, manage and optimize SIEM...
-
Cyber Defense Analyst
2 weeks ago
Bengaluru, Karnataka, India News Corp Full time{"Job Title": "Cyber Defense Analyst", "Job Description": "Cyber Defense Analyst Job SummaryNews Corp is seeking a highly motivated and skilled Cyber Defense Analyst to join our team. As a Cyber Defense Analyst, you will play a critical role in identifying and mitigating potential security threats to our organization.Key Responsibilities:• Monitor and...
-
Cyber Defense Specialist
1 week ago
Bengaluru, Karnataka, India Granicus Full timeAbout the RoleGranicus is seeking a highly skilled Cyber Defense Specialist to join our team. As a key member of our Cyber Defense program, you will be responsible for providing expertise to protect the confidentiality, integrity, and availability of our organization. You will work closely with other technology teams to build a secure environment and help...
-
T&T-Cyber-Defense & Resilience-DLP-Bengaluru
3 months ago
Bengaluru, India Deloitte Full timeWhat impact will you make? Every day, your work will make an impact that matters, while you thrive in a dynamic culture of inclusion, collaboration and high performance. As the undisputed leader in professional services, Deloitte is where you’ll find unrivaled opportunities to succeed and realize your full potential Deloitte is where you’ll find...
-
N&t Radio Designer
5 months ago
Bengaluru, India ALSTOM Full timeReq ID:415966 We create smart innovations to meet the mobility challenges of today and tomorrow. We design and manufacture a complete range of transportation systems, from high-speed trains to electric buses and driverless trains, as well as infrastructure, signalling and digital mobility solutions. Joining us means joining a truly global community of more...
-
Associate Director Cybersecurity
4 weeks ago
Bengaluru, Karnataka, India AT&T Full timeAbout the CompanyAT&T is a leading technology company that connects the world through innovative solutions. Our mission is to deliver compelling communication and entertainment experiences to customers around the globe.About the JobThis Associate Director Cybersecurity role is part of the Cyber Security Organization within AT&T. The successful candidate will...
-
Cyber Defense Manager
4 weeks ago
Bengaluru, Karnataka, India Diageo Full timeJob Title: Cyber Defense ManagerDescriptionCyber Defense Manager is responsible for protecting Diageo's manufacturing systems and information assets from evolving threats. This role requires a comprehensive OT cybersecurity program to identify threats and plan countermeasures to mitigate those threats before they materialize and have a significant impact on...
-
Cybersecurity Associate Director
3 weeks ago
Bengaluru, Karnataka, India AT&T Full timeAbout the Company:At AT&T, we're a global leader in the telecommunications industry, connecting people and businesses through innovative technologies and services. Our mission is to deliver exceptional customer experiences and drive growth through digital transformation.About the Job:This role is an Associate Director Cyber Security, responsible for leading...
-
L&T Technology Services Enovia Expert
5 days ago
Bengaluru, Karnataka, India L&T Technology Services Full timeEnovia Expert PositionWe are seeking an Enovia Expert to join our team at L&T Technology Services.Key Responsibilities:Customization and Configuration: Experience in ENOVIA Customization and Configuration of 2024x or higher.Program Management: Experience in ENOVIA Program Management central.Programming and Scripting: Strong programming and scripting...
-
Associate Director Cybersecurity
4 weeks ago
Bengaluru, Karnataka, India AT&T Full timeAbout the CompanyAT&T is a leading technology company that connects the world through innovative solutions. Our mission is to deliver compelling communication and entertainment experiences to customers around the globe.About the JobThis position is an Associate Director Cybersecurity, responsible for leading the SPI Data Protection program in the Data...
-
Cybersecurity Associate Director
4 weeks ago
Bengaluru, Karnataka, India AT&T Full timeAbout the CompanyAT&T is a leading technology company that connects the world through innovative solutions. Our mission is to deliver compelling communication and entertainment experiences to customers around the globe.About the JobThis is an exciting opportunity to join our Cyber Security Organization as an Associate Director, responsible for managing the...
-
Cybersecurity Senior Specialist
2 weeks ago
Bengaluru, Karnataka, India AT&T Full timeAbout the Role:We are seeking a highly skilled Cybersecurity Senior Specialist to join our team at AT&T. As a key member of our Cyber Security Organization, you will be responsible for designing and implementing advanced security solutions to protect our network and systems.Key Responsibilities:Develop and implement advanced security scripts and automation...
-
Cybersecurity Specialist
3 weeks ago
Bengaluru, Karnataka, India AT&T Full timeAbout the Company:At AT&T, we're a leader in the tech industry, connecting the world through innovative solutions. Our digital transformation is revolutionizing the way we deliver customer experiences. As a key player in this journey, you'll be part of a team that's shaping the future of communication and entertainment.About the Job:This Senior Specialist...
-
Tax Senior Associate
4 months ago
Bengaluru, India RSM Full timeWe are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, inclusive culture and talent experience and our ability to be compelling to our clients....