About the Role
Position Title : Incident Response Engineer
Corporate Title : Analyst
Reporting to : Director
Location : Bengaluru
Shift Timing : 1 : 00PM - 10 : 00 PM IST (Need to be flexible)
Job Profile :
Roles and Responsibilities :
- Operate under the Incident Response (IR) function, reporting to the IR Lead, with responsibility for leading investigations into high-severity security incidents
- Manage and coordinate end-to-end incident response activities, ensuring timely containment, eradication, and recovery
- Provide technical leadership and guidance to SOC and IR team members during active investigations
- Collaborate closely with the Global Incident Response team to assess cross-regional impact and coordinate response efforts
- Work in partnership with Threat Intelligence, Threat Hunting, SOC, and other cybersecurity teams to ensure efficient and effective incident handling
- Serve as the primary technical liaison for incident status updates required by regulatory bodies, audit teams, and executive stakeholders
- Develop, maintain, and continuously improve IR playbooks, workflows, and escalation protocols
- Drive post-incident reviews and lessons learned sessions to enhance response capabilities and reduce future risk
- Represent the IR function in cross-functional cyber governance and risk forums.
- Ensure all IR activities comply with applicable laws, regulations, and industry standards
- Provide out-of-hours support as part of the IR leadership rotation when necessary
Job Requirements :
Minimum 5 years of dedicated experience in an Incident Response role within an established SOC environmentStrong analytical skills and hands-on experience with SIEM platformsDeep understanding of attacker tactics, techniques, and procedures (TTPs) across diverse infrastructuresFamiliarity with industry-standard IR frameworks (e.g., NIST, SANS, MITRE ATT&CK)Experience in both network-based and host-based threat analyticsStrong knowledge of security infrastructure and mitigation strategiesProficiency in query languages (e.g., Splunk SPL, CrowdStrike Query Language) for threat analysisExcellent communication skills, with the ability to translate technical findings for non-technical stakeholdersThorough understanding of international security standards and control frameworks (e.g., ISO 27001, NIST CSF)Relevant certifications such as GCIH, GCFA, GMON, are desirableEqual Opportunity Employer :
The MUFG Group is committed to providing equal employment opportunities to all applicants and employees and does not discriminate on the basis of race, colour, national origin, physical appearance, religion, gender expression, gender identity, sex, age, ancestry, marital status, disability, medical condition, sexual orientation, genetic information, or any other protected status of an individual or that individual's associates or relatives, or any other classification protected by the applicable laws.