19 часов назад
Senior Cybersecurity Incident Responder
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cybersecurity Incident Responder (Microsoft Defender/Sentinel): Monitoring, investigating, containing, and recovering from cybersecurity incidents across enterprise security platforms with an accent on threat hunting, KQL-based investigations, and endpoint detection and response. Focus on developing incident response playbooks, conducting root cause and malware analysis, and coordinating on-call incident resolution with U.S. and global teams.
Location: IND KA Bangalore - Cherry Hills
Company
is an independent member of a global network of accounting and business advisory firms operating across multiple regions.
What you will do
- Monitor and analyze security alerts across Microsoft Defender, Sentinel, ReliaQuest, LogRhythm, and other security platforms.
- Investigate cybersecurity incidents and coordinate containment, eradication, and recovery activities.
- Perform root cause analysis, document findings, and contribute to post-incident reviews.
- Develop, maintain, and refine incident response playbooks, procedures, and runbooks.
- Collaborate with internal teams, external partners, and stakeholders to improve incident response capabilities.
- Participate in a shared on-call rotation, including weekends, with U.S. and global teams.
Requirements
- Bachelor’s degree in Computer Science, Artificial Intelligence, Software Engineering, or a related field.
- At least 3 years of experience in cybersecurity incident response, vulnerability management, or related security operations.
- Hands-on expertise with Microsoft Defender for Endpoint, Defender for Microsoft 365, Microsoft Sentinel, and KQL-based investigations.
- Experience with SIEM and security monitoring platforms such as ReliaQuest, LogRhythm, or equivalent tools.
- Working knowledge of CyberArk, AWS security monitoring, Azure Security Center, threat hunting, EDR, malware analysis, and the incident response lifecycle.
- Strong written and verbal English communication skills are required. Relevant certifications such as CISSP, CEH, GIAC, or Microsoft Security certifications are valued.
Culture & Benefits
- Full-time employment.
- Collaboration with U.S. and global security teams.
- Shared on-call rotation covering weekends.
- Equal opportunity employment environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →