Talent.com
Cyber Threat Investigator

Cyber Threat Investigator

MashreqDelhi, India
5 days ago
Job description

Description :

Manage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight. Analyze and respond to security events from diverse sources such as firewalls, IDS / IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications. Develop and maintain alert rules and logic within SIEM to ensure accurate detection of security events. Assist senior personnel in managing complex security incidents and improving incident response times.

Job Purpose : Administration :

Responsible for threat-hunting by proactively identifying and mitigating advanced threats within an organization’s network

This role involves working closely with the security operations team to enhance organization’s cybersecurity posture by proactively identifying and mitigating advanced threats

Key Result Areas :

Proactive Threat Hunting : Conduct proactive threat hunting activities to identify and isolate advanced threats that may bypass traditional security measures over network, endpoints, and cloud environments, searching for indicators of compromise (IOCs), advanced persistent threats (APTs), and other hidden adversary activity

Utilize advanced analytical techniques such as behavioral analysis, anomaly detection, and machine learning to identify emerging threats and patterns

Leveraging threat intelligence (both internal and external) to correlate and enhance hunting activities and adapt to new attack tactics, techniques, and procedures (TTPs).

Develop and apply hunting frameworks and methodologies to continuously improve detection capabilities. This includes leveraging frameworks like MITRE ATT&CK for understanding adversary tactics and behaviors.

Data Analysis : Analyze large datasets, network traffic, and user behavior to detect anomalies and potential security breaches

Hypothesis Development : Develop and test hypotheses about potential malicious activities within the organization’s environment.

Incident Response : Collaborate with the incident response team to investigate and respond to identified threats.

Threat Intelligence Integration : Utilize threat intelligence to inform and enhance threat hunting activities.

Reporting and Documentation : Document findings, create detailed reports, and communicate results to stakeholders.

Continuous Improvement : Stay updated with the latest threat landscapes, attack techniques, and security technologies to continuously improve threat hunting methodologies.

Key Principles :

Alignment with Business Priorities : Provide strategic direction and oversight of threat-hunting process, ensuring alignment with organizational goals and objectives

Ownership and Accountability : The threat hunting manager takes full responsibility for activities and the holding self and team accountable for their outcomes.

Driving Threat hunting Maturity Enhancement : This role proactively drives initiatives that enhance incident response and resilient cyber posture.

Focus on Outputs and Impact : Focus on delivering outputs that create meaningful impact such as enhanced security culture and protection posture of the bank.

Innovation and Automation : Continuously seek innovative solutions and automated processes for efficiency.

Continuous Learning and Improvement : Committed to learning from experiences and continuously improving the processes and outcomes.

Key skills : Essential knowledge

Have over 10+ years of rich experience in information security domain and at least 4-6 years of dedicated experience in Threat-hunting.

Proficiency in using threat intel platforms such as CybelAngel, ThreatConnect, Recorded Future, DarkTrace etc.

Proficiency in using SIEM and SOAR solutions.

Strong understanding of network protocols and security technologies.

Strong understanding of endpoint detection and response (EDR) tools.

Excellent analytical and problem-solving skills

Preferably worked in BFSI domain with proven experience in SOC function.

Knowledge of key security standards and regulations such as NIST 800-61, CERT / CC, ISO 27035 etc.

Skills and Application

Maintaining up-to-date knowledge of security landscape, threats, attack patterns and counter measures

Assess and design threat-hunting processes through solutions, tools and methodologies

Reviewing use cases / playbooks for integrating threat-intel

Continuously monitor security hygiene and performance using tools and processes

Collaborate with other IS teams, Ops and tech teams on enhancing security incident response resilience

Other

Knowledge of evolving advanced tech stacks and related control and risk universe from a threat-hunting perspective.

The ideal candidate will have a technical or computer science degree.

Professional certifications : GCIH, CISSP, CEH,etc.

Create a job alert for this search

Cyber Threat Threat • Delhi, India

Related jobs
  • Promoted
Cyber Threat Researcher

Cyber Threat Researcher

3ColumnsNew Delhi, Delhi, India
Columns is a specialist cybersecurity firm that delivers a wide range of services, including security assurance, security governance, professional services, and managed services.Solutions include m...Show moreLast updated: 5 days ago
  • Promoted
Cyber Security Architect

Cyber Security Architect

VOISDelhi, India
Please see below job description : .Location - Pune / Bangalore (Hybrid).The Secure by Supplier Manager is responsible for identifying, assessing, and mitigating Cyber security and regulatory risks ass...Show moreLast updated: 18 days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

Tiger AdvisoryMeerut, IN
Tiger Advisory provides premier cybersecurity consulting services, helping clients manage risks, strengthen resilience, and achieve compliance in an ever-evolving digital landscape.Our mission is t...Show moreLast updated: 30+ days ago
  • Promoted
Hardening Compliance Specialist / Cyber Security Risk & Compliance Specialist

Hardening Compliance Specialist / Cyber Security Risk & Compliance Specialist

VOISDelhi, India
We're seeking a dynamic professional for "Hardening Compliance Specialist" role based in Pune.If you're ready to make an impact, this could be the perfect fit!. Experience : 6 to 12 years Location : P...Show moreLast updated: 2 days ago
  • Promoted
Cyber Security Sales Specialist

Cyber Security Sales Specialist

Cloud Armor IT Consultancynarela, delhi, in
Here’s a professional Job Description draft for a Cybersecurity Sales Specialist tailored to your business offerings : .Job Title : Cybersecurity Sales Specialist. Location : Hybrid / Remote / [Insert C...Show moreLast updated: 18 days ago
  • Promoted
Cyber Security Lead

Cyber Security Lead

Societe Generale Global Solution CentreDelhi, India
Job Description Ability to identify, propose, design and run the operational and security risk Controls.Sound understanding of various cybersecurity controls and their relevance to handle various t...Show moreLast updated: 6 days ago
  • Promoted
Cyber Security Analyst

Cyber Security Analyst

DraconXDelhi, IN
DraconX is at the forefront of transforming cutting-edge ideas into intelligent, scalable digital solutions.As pioneers in AI business automation and AI-driven SaaS platforms, we specialize in crea...Show moreLast updated: 8 days ago
  • Promoted
Cyber Security Analyst

Cyber Security Analyst

Tata Consultancy ServicesNoida, Uttar Pradesh, India
TCS has been a great pioneer in feeding the fire of Young Techies like you.We are a global leader in the technology arena and there's nothing that can stop us from growing together.Role • • : Cyber Se...Show moreLast updated: 18 days ago
  • Promoted
Incident Responder - L3

Incident Responder - L3

SQ1 SecurityDelhi, India
As an SQ1 Security Cyber Defense Incident Responder within the Global Cybersecurity Operations Center (CSOC), you will serve as a key technical expert responsible for managing and responding to adv...Show moreLast updated: 17 days ago
  • Promoted
Threat Intelligence Analyst – L3

Threat Intelligence Analyst – L3

SQ1 SecurityDelhi, India
Job Overview : This role is responsible for collecting and analyzing information from multiple sources to develop a deep understanding of cybersecurity threats and actors’.Tactics, Techniques, and P...Show moreLast updated: 18 days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

LTIMindtreeDelhi, India, India
Presales Solutioning in Cybersecurity with BFS domain experience is a must.Proven track record in Pre-Sales and Solution development in Cyber Security. Working with the central bid office, take tech...Show moreLast updated: 17 days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

Tata Consultancy ServicesDelhi, India
TCS is Hiring – Saviynt / IAM Integration.Are you skilled in Saviynt and passionate about Identity & Access Management (IAM) and Integration Technologies?. Here’s your chance to join Tata Consultanc...Show moreLast updated: 18 days ago
  • Promoted
Cyber Security Architect

Cyber Security Architect

ResillionDelhi, India
Job Title : Cyber Security Manager / Architect Experience range : 12-15 Years Location : Bangalore (Hybrid Mode).Resillion is the only Total Quality solutions company combining quality engineering, cy...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

Innefu LabsMeerut, IN
We are seeking experienced and detail-oriented professionals for the role.The selected candidates will be responsible for assisting cybercrime investigations by collecting and analysing digital evi...Show moreLast updated: 17 days ago
  • Promoted
Penetration Tester – Cloud Security

Penetration Tester – Cloud Security

CNV Labs India Pvt. Ltd (iCloudEMS)Noida, Uttar Pradesh, India
Penetration Tester – Cloud Security Position : Security Engineer Department : Cybersecurity / Cloud Security Experience : 2–5 We are seeking an experienced cloud penetration tester to assess, expl...Show moreLast updated: 6 days ago
  • Promoted
  • New!
Hiring for Cyber-D&R-Incident Response(MITRE ATTCK / Cyberkill)-L3-Gurgaon DLF Office

Hiring for Cyber-D&R-Incident Response(MITRE ATTCK / Cyberkill)-L3-Gurgaon DLF Office

DeloitteGurugram, Haryana, India
India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realize your potential amongst cutting edge leaders, and organizations ...Show moreLast updated: 12 hours ago
  • Promoted
Threat Intelligence Manager (Exclusively 6-7 years of Exp in Threat Intelligence)

Threat Intelligence Manager (Exclusively 6-7 years of Exp in Threat Intelligence)

FICODelhi, India
About FICO : FICO (NYSE : FICO) is a leading analytics software company, helping businesses in 90+ countries make better decisions that drive higher levels of growth, profitability and customer satis...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Mentor

Cyber Security Mentor

WsCube TechDelhi, India
Job Profile : Cyber Security Trainer / Mentor or Ethical Hacking Trainer / Mentor Job Location : Jaipur, Rajasthan Experience Required : 2+ Years About the Company : WsCube Tech. Vernacular Upskilling Edtec...Show moreLast updated: 28 days ago