Talent.com
Lead Security Incident Responder
Lead Security Incident ResponderColorTokens Inc. • Bengaluru, Republic Of India, IN
Lead Security Incident Responder

Lead Security Incident Responder

ColorTokens Inc. • Bengaluru, Republic Of India, IN
30+ days ago
Job description

About ColorTokens

At ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens Xshield™ platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to continue operating while breaches are contained, ensuring critical assets remain protected.

Our innovative platform provides unparalleled visibility into traffic patterns between workloads, OT / IoT / IoMT devices, and users, allowing businesses to enforce granular micro-perimeters, swiftly isolate key assets, and respond to breaches with agility. Recognized as a Leader in the Forrester Wave™ : Microsegmentation Solutions (Q3 2024), ColorTokens safeguards global enterprises and delivers significant savings by preventing costly disruptions.

Join us in transforming cybersecurity. Learn more at www.Colortokens.Com.

Our culture

We foster an environment that values customer focus, innovation, collaboration, mutual respect, and informed decision-making. We believe in alignment and empowerment so you can own and drive initiatives autonomously.

Self-starters and highly motivated individuals will enjoy the rewarding experience of solving complex challenges that protect some of the world’s impactful organizations - be it a children’s hospital, or a city, or the defense department of an entire country.

Job Description :

ColorTokens is seeking a highly experienced and proactive Senior Security Analyst (L3) to lead complex threat investigations and incident response within our Managed Security Operations Center (SOC). This role is critical in identifying advanced threats, guiding security operations, developing detection strategies, and mentoring Tier 1 and Tier 2 analysts. The ideal candidate possesses deep technical expertise in cybersecurity, excellent analytical skills, and a strong understanding of modern attack techniques across IT and OT environments.

Job Title : Senior Security Analyst - L2

Location : Bangalore (on site)

Experience Level : 6 to 10 years

Shift : 24 / 7 monitoring shift

Key Responsibilities :

  • Lead investigation and response for high-severity security incidents across customer environments
  • Perform deep-dive forensics on endpoints, network traffic, logs, and cloud environments
  • Correlate and enrich data from multiple sources (EDR, SIEM, NDR, threat intel, OT sensors)
  • Serve as an escalation point for complex alerts and incidents from L1 / L2 teams
  • Conduct proactive threat hunting based on TTPs (MITRE ATT&CK) and IOC analysis
  • Develop detection use cases, custom SIEM rules, and SOAR automation workflows
  • Participate in red / blue / purple team exercises and incident simulations
  • Guide playbook development and tuning of triage / response workflows
  • Deliver incident briefings and root cause analysis (RCA) reports to internal and external stakeholders
  • Collaborate with threat intelligence, engineering, and customer success teams
  • Mentor junior analysts and contribute to team knowledge-sharing initiatives

Required Skills & Experience :

  • 6-10 years of experience in a SOC, threat detection, incident response, or cyber forensics role
  • Strong knowledge of threat actor tactics, techniques, and procedures (TTPs)
  • Proficient in interpreting logs across various platforms : SIEMs, EDRs, firewalls, cloud environments
  • Hands-on experience with tools such as :
  • SIEM : Splunk, Sentinel, QRadar
  • EDR / XDR : CrowdStrike, Defender for Endpoint, SentinelOne
  • NDR : Vectra, Darktrace, ExtraHop
  • SOAR : XSOAR, Splunk SOAR, Tines
  • Experience with scripting and automation (Python, KQL, Bash, PowerShell)
  • In-depth knowledge of Windows, Linux, and network protocols
  • Exposure to cloud security (Azure, AWS) and hybrid infrastructures
  • Familiarity with OT / ICS environments (Nozomi, Claroty, etc.) is a strong plus
  • Qualifications :

  • Bachelor’s degree in Cybersecurity, Computer Science, or related field (or equivalent experience)
  • One or more advanced certifications preferred :
  • GIAC (GCIA, GCIH, GCFA, GNFA)
  • OSCP / OSEP
  • SC-200 / AZ-500 / CISSP
  • GICSP (for OT / ICS experience)
  • Preferred Skills :

  • Strong problem-solving skills under pressure
  • Excellent written and verbal communication (for RCA reports, executive briefings)
  • Ability to lead customer-facing incident response calls and postmortems
  • Passion for staying current with threat landscape and evolving technologies
  • Team player with mentoring mindset
  • Why Join Us?

  • Work on a cutting-edge cybersecurity product in a fast-paced startup environment.
  • Collaborate with a world-class team of engineers and security experts.
  • Opportunity to learn, grow, and make a real impact from day one.
  • Create a job alert for this search

    Security Lead • Bengaluru, Republic Of India, IN

    Related jobs
    Senior Security Incident Response Lead

    Senior Security Incident Response Lead

    CrimsonLogic • Bengaluru, Republic Of India, IN
    Working Experience Requirements.Proven experience in managing 24x7 SOC operations.Hands-on experience with SIEM platforms (e. Supervise daily SOC operations, including alert triage, investigation, a...Show more
    Last updated: 2 days ago • Promoted
    Critical incident Management

    Critical incident Management

    HCLTech • Bengaluru, Karnataka, India
    Major / Critical Incident Manager.The Major Incident Manager is responsible for overseeing and coordinating the resolution of high-priority incidents that have a significant impact on business operat...Show more
    Last updated: 12 days ago • Promoted
    Major Incident Manager

    Major Incident Manager

    Cognizant • Bangalore Urban, Karnataka, India
    Position Title : Major Incident Manager.The Major Incident Manager leads the response to high-impact incidents that significantly affect business operations. This role acts as the command center duri...Show more
    Last updated: 18 days ago • Promoted
    Incident Resolution Manager

    Incident Resolution Manager

    Tata Consultancy Services • Bengaluru, Republic Of India, IN
    TCS IS HIRING FOR MAJOR INCIDENT MANAGEMENT_4 TO 6 YEARS_BANGALORE.As a Major Incident Manager, your responsibilities will include : . Managing Major Incidents, ensuring that they are logged, progress...Show more
    Last updated: 30+ days ago • Promoted
    Incident Manager

    Incident Manager

    SourceFuse • Bengaluru, Karnataka, India
    SourceFuse Technologies hiring Incident Manager 4-5 years of experience.Work closely with other IT and business teams to ensure seamless coordination during incidents. Participate in on-call rotatio...Show more
    Last updated: 25 days ago • Promoted
    Major Incident Manager_4 TO 6 YEARS_BANGALORE

    Major Incident Manager_4 TO 6 YEARS_BANGALORE

    Tata Consultancy Services • Bengaluru, Karnataka, India
    TCS IS HIRING FOR MAJOR INCIDENT MANAGEMENT_4 TO 6 YEARS_BANGALORE.As a Major Incident Manager, your responsibilities will include : . Managing Major Incidents, ensuring that they are logged, progress...Show more
    Last updated: 21 days ago • Promoted
    Cybersecurity Incident Response Lead

    Cybersecurity Incident Response Lead

    Rakuten Symphony • Bengaluru, Republic Of India, IN
    Rakuten empowers through technology.Rakuten Group offers various services in e-commerce, fintech, digital content and communications to many users worldwide. Rakuten Symphony focuses on innovations ...Show more
    Last updated: 4 days ago • Promoted
    CSS Incident Manager

    CSS Incident Manager

    Atlassian • Bengaluru, IN
    Atlassians can choose where they work – whether in an office, from home, or a combination of the two.That way, Atlassians have more control over supporting their family, personal goals, and other p...Show more
    Last updated: 5 days ago • Promoted
    Incident Response Specialist [T500-21602]

    Incident Response Specialist [T500-21602]

    MUFG • Bengaluru, India
    Japan's premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busin...Show more
    Last updated: 1 day ago • Promoted
    Security Incident Response Manager

    Security Incident Response Manager

    ColorTokens Inc. • Bengaluru, Republic Of India, IN
    Breaches happen—but with our cutting-edge.We enable organizations to continue operating while breaches are contained, ensuring critical assets remain protected. Our innovative platform provides unpa...Show more
    Last updated: 1 day ago • Promoted
    Digital Forensics & Incident Response Manager

    Digital Forensics & Incident Response Manager

    Rakuten Symphony • Bengaluru, Karnataka, India
    Rakuten empowers through technology.Rakuten Group offers various services in e-commerce, fintech, digital content and communications to many users worldwide. Rakuten Symphony focuses on innovations ...Show more
    Last updated: 4 days ago • Promoted
    Major Incident Resolution Coordinator

    Major Incident Resolution Coordinator

    HCLTech • Bengaluru, Republic Of India, IN
    Major / Critical Incident Manager.The Major Incident Manager is responsible for overseeing and coordinating the resolution of high-priority incidents that have a significant impact on business operat...Show more
    Last updated: 11 days ago • Promoted
    Senior Analyst - Incident Response

    Senior Analyst - Incident Response

    MUFG Global Service (MGS) • Bengaluru, India
    PM - 10 : 00 PM IST (Need to be flexible).Operate under the Incident Response (IR) function, reporting to the IR Lead, with responsibility for leading investigations into high-severity security incid...Show more
    Last updated: 30+ days ago • Promoted
    Incident Response Specialist T500-21602

    Incident Response Specialist T500-21602

    MUFG • Bengaluru, Republic Of India, IN
    Japan’s premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busin...Show more
    Last updated: 2 days ago • Promoted
    Lead Incident Response Consultant

    Lead Incident Response Consultant

    Razorpay • Bengaluru, Republic Of India, IN
    This role involves responding to service incidents, coordinating resolutions, driving process improvements, and ensuring high availability of critical services. The ideal candidate thrives under pre...Show more
    Last updated: 2 days ago • Promoted
    Major Incident Manager

    Major Incident Manager

    Tata Consultancy Services • Bengaluru, Republic Of India, IN
    We are Organizing a walk-in Drive at Bangalore Location on 08-Nov-2025.Role : Major Incident Management.Address : TCS L-Centre, Plot No. EPIP Industrial Area, Whitefield,.As a Major Incident Manager, ...Show more
    Last updated: 30+ days ago • Promoted
    Incident Response Specialist

    Incident Response Specialist

    MUFG Global Service (MGS) • Bengaluru, India
    Japans premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busine...Show more
    Last updated: 4 days ago • Promoted
    Critical Incident Response Manager

    Critical Incident Response Manager

    HCLTech • Bengaluru, Republic Of India, IN
    Major / Critical Incident Manager.The Major Incident Manager is responsible for overseeing and coordinating the resolution of high-priority incidents that have a significant impact on business operat...Show more
    Last updated: 11 days ago • Promoted