3 часа назад
Lead Information Security Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead Information Security Analyst (Cybersecurity): Directing hands-on SOC operations across SIEM, EDR/XDR, cloud, and identity telemetry with an accent on alert triage, complex incident response, and detection engineering. Focus on leading Tier 2/3 investigations, tuning MITRE ATT&CK-aligned detections, improving SOC automation, and mentoring analysts in a global 24x7 environment.
Location: Bangalore, India
Company
provides materials engineering solutions and equipment used to manufacture semiconductor chips and advanced displays.
What you will do
- Lead alert triage, event analysis, escalations, and SLA management across SIEM, EDR/XDR, cloud, and identity telemetry.
- Investigate and contain complex Tier 2/3 security incidents as a technical lead or incident commander.
- Develop and tune detection content, generate IOCs and IOAs, and support MITRE ATT&CK-based threat hunting.
- Operate and improve SIEM/SOAR tooling, automation, metrics, and dashboards.
- Support vulnerability remediation, cloud and on-premises security reviews, compliance activities, and post-incident improvements.
- Mentor analysts and contribute to security awareness and training.
Requirements
- 6–9 years of cybersecurity experience, including hands-on SOC operations, security monitoring, incident response, and event analysis.
- Strong expertise in SIEM/SOAR, EDR/XDR, and the incident response lifecycle based on NIST SP 800-61.
- Experience with event and log correlation, detection development and tuning, threat hunting, MITRE ATT&CK, IOCs, and TTPs.
- Working knowledge of Azure, AWS, or GCP; Entra ID, Okta, or Active Directory; and scripting or automation with Python, PowerShell, KQL, or SPL.
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, or a related field, or equivalent practical experience.
- Experience in Tier 2/3 investigations and exposure to a global 24x7 SOC environment.
Nice to have
- CompTIA CySA+, SecurityX, GIAC, SANS GSOC, Microsoft SC-200, or AZ-500 certification.
- CISSP or CISM certification.
Culture & Benefits
- Supportive work culture focused on learning, development, and career growth.
- Employee health and wellbeing programs and professional growth support.
- Regular employment with 10% travel required.
- Relocation is not eligible for this position.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
7 дней назад
Cyber Security Analyst Leads (Cyber Threat Hunting)
5 дней назад
Senior SOC Analyst (Cybersecurity)
1 день назад
SOC Analyst (Cybersecurity)
123 850 - 161 000$
7 дней назад
Lead SOC Engineer (OT Cybersecurity)
7 дней назад
Security Operations Lead (AI)
180 000 - 210 000$
1 день назад
Threat Intelligence Lead (Cybersecurity)
240 000 - 280 000$