Назад
Company hidden
3 часа назад

Lead Information Security Analyst (Cybersecurity)

Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
India
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Information Security Analyst (Cybersecurity): Directing hands-on SOC operations across SIEM, EDR/XDR, cloud, and identity telemetry with an accent on alert triage, complex incident response, and detection engineering. Focus on leading Tier 2/3 investigations, tuning MITRE ATT&CK-aligned detections, improving SOC automation, and mentoring analysts in a global 24x7 environment.

Location: Bangalore, India

Company

hirify.global provides materials engineering solutions and equipment used to manufacture semiconductor chips and advanced displays.

What you will do

  • Lead alert triage, event analysis, escalations, and SLA management across SIEM, EDR/XDR, cloud, and identity telemetry.
  • Investigate and contain complex Tier 2/3 security incidents as a technical lead or incident commander.
  • Develop and tune detection content, generate IOCs and IOAs, and support MITRE ATT&CK-based threat hunting.
  • Operate and improve SIEM/SOAR tooling, automation, metrics, and dashboards.
  • Support vulnerability remediation, cloud and on-premises security reviews, compliance activities, and post-incident improvements.
  • Mentor analysts and contribute to security awareness and training.

Requirements

  • 6–9 years of cybersecurity experience, including hands-on SOC operations, security monitoring, incident response, and event analysis.
  • Strong expertise in SIEM/SOAR, EDR/XDR, and the incident response lifecycle based on NIST SP 800-61.
  • Experience with event and log correlation, detection development and tuning, threat hunting, MITRE ATT&CK, IOCs, and TTPs.
  • Working knowledge of Azure, AWS, or GCP; Entra ID, Okta, or Active Directory; and scripting or automation with Python, PowerShell, KQL, or SPL.
  • Bachelor’s or Master’s degree in Cybersecurity, Computer Science, or a related field, or equivalent practical experience.
  • Experience in Tier 2/3 investigations and exposure to a global 24x7 SOC environment.

Nice to have

  • CompTIA CySA+, SecurityX, GIAC, SANS GSOC, Microsoft SC-200, or AZ-500 certification.
  • CISSP or CISM certification.

Culture & Benefits

  • Supportive work culture focused on learning, development, and career growth.
  • Employee health and wellbeing programs and professional growth support.
  • Regular employment with 10% travel required.
  • Relocation is not eligible for this position.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →