1,973 Sentinelone Edr 4 To 6 Years Bengaluru Mumbai jobs in India

Sentinelone Edr 4 to 6 Years Bengaluru & Mumbai

Bengaluru, Karnataka Capgemini

Job Viewed

Tap Again To Close

Job Description

Monitor EDR & AV logs
- Monitor dashboard for compliance, threats and troubleshoot
- Check if any incidents are missed by L1 and follow up for the cause
- Basic level of fine tune policies and provide service improve plans.
- Maintain the SOP for the new events
- Expert in analyzing alerts generated in EDR
- Raise case and follow up with support for any issue
- Policy creation & Changes
- Major Changes in Infrastructure
- Major Incidents/Outages
- Provide Service improvement to the management
- Configuring policies on request
- Check Audit logs and fix if any disturbance.

**Primary Skills**:

- SentinelOne

**Secondary Skills**:

- Endpoint Detection Response
This advertiser has chosen not to accept applicants from your region.

Job No Longer Available

This position is no longer listed on WhatJobs. The employer may be reviewing applications, filled the role, or has removed the listing.

However, we have similar jobs available for you below.

Information Security Analyst (Threat Detection)

700001 Kolkata, West Bengal ₹100000 Annually WhatJobs

Posted today

Job Viewed

Tap Again To Close

Job Description

full-time
Our client, a leader in cybersecurity solutions, is seeking a highly skilled Information Security Analyst specializing in threat detection and incident response to join their fully remote team. This role is critical for identifying, analyzing, and mitigating security threats to protect the organization's digital assets. You will work with state-of-the-art security tools and technologies, analyze security logs, and develop proactive strategies to enhance our security posture. This is an excellent opportunity for an analyst passionate about cybersecurity and eager to contribute to a robust defense strategy.

Responsibilities:
  • Monitor security alerts and logs from various security tools (SIEM, IDS/IPS, EDR, firewalls) to identify potential threats.
  • Perform real-time analysis of security events to determine the scope and impact of incidents.
  • Investigate and document security incidents, including root cause analysis.
  • Develop and tune detection rules and signatures to improve threat identification capabilities.
  • Conduct vulnerability assessments and penetration testing to identify system weaknesses.
  • Respond to security incidents, coordinating containment, eradication, and recovery efforts.
  • Develop and maintain incident response playbooks and procedures.
  • Provide guidance and support to IT teams on security best practices.
  • Stay current with the latest cybersecurity threats, trends, and technologies.
  • Collaborate with cross-functional teams to implement security controls and policies.
  • Prepare reports on security incidents, vulnerabilities, and overall security posture.
  • Participate in security awareness training for employees.
  • Assist in the development and maintenance of security policies and standards.
  • Evaluate and recommend new security technologies and tools.
  • Conduct forensic analysis when necessary to support investigations.

Qualifications:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • 3+ years of experience in information security, with a focus on threat detection and incident response.
  • Proficiency with Security Information and Event Management (SIEM) tools (e.g., Splunk, LogRhythm, QRadar).
  • Experience with Intrusion Detection/Prevention Systems (IDS/IPS) and Endpoint Detection and Response (EDR) solutions.
  • Strong understanding of network protocols, operating systems (Windows, Linux), and common attack vectors.
  • Familiarity with security frameworks and standards (e.g., NIST, ISO 27001).
  • Knowledge of scripting languages (e.g., Python, PowerShell) for automation is a plus.
  • Excellent analytical, problem-solving, and critical thinking skills.
  • Strong communication and documentation skills.
  • Ability to work independently and effectively in a remote team environment.
  • Relevant security certifications such as CompTIA Security+, CEH, CISSP are highly desirable.
  • Experience with cloud security monitoring is a plus.
Join our elite team and help us stay ahead of evolving cyber threats.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst - Threat Detection

560001 Bangalore, Karnataka ₹750000 Annually WhatJobs

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is looking for a vigilant and skilled Information Security Analyst to bolster their cyber defense capabilities in **Bengaluru, Karnataka**. This fully remote position is integral to safeguarding the company's digital assets against evolving cyber threats. You will be responsible for monitoring security alerts, investigating potential breaches, and implementing effective countermeasures. Your primary duties will include analyzing network traffic, reviewing system logs, and staying abreast of the latest security vulnerabilities and attack vectors. You will also participate in incident response activities, conduct vulnerability assessments, and contribute to the development and refinement of security policies and procedures. A Bachelor's degree in Computer Science, Cybersecurity, or a related field, along with 3-5 years of hands-on experience in information security operations is required. Certifications such as CompTIA Security+, CEH, or CISSP are highly desirable. The ideal candidate possesses strong analytical skills, meticulous attention to detail, and the ability to work independently and collaboratively in a fast-paced environment. Familiarity with SIEM tools, intrusion detection/prevention systems, and endpoint security solutions is a must. You will play a critical role in ensuring the confidentiality, integrity, and availability of our client's information systems. This is a fantastic opportunity to grow your career in a cutting-edge cybersecurity domain, working remotely with a forward-thinking organization.
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst - Threat Detection

380001 Ahmedabad, Gujarat ₹720000 Annually WhatJobs

Posted 6 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
We are looking for a diligent and experienced Information Security Analyst to join our client's team in Ahmedabad, Gujarat, IN . This critical role focuses on the continuous monitoring and analysis of security threats, ensuring the protection of our client's digital assets and sensitive data. The ideal candidate will possess a deep understanding of cybersecurity principles, threat landscapes, and incident response methodologies. Your responsibilities will include implementing and managing security tools, such as SIEM, IDS/IPS, and antivirus solutions. You will be tasked with analyzing security alerts, investigating potential breaches, and developing remediation plans to mitigate risks. Conducting vulnerability assessments and penetration testing, along with documenting findings and recommending security enhancements, will be a key part of your role. Furthermore, you will stay abreast of emerging threats and vulnerabilities, and contribute to the development and refinement of security policies and procedures. This position requires a Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Relevant certifications such as CISSP, CEH, or Security+ are strongly preferred. Excellent analytical and problem-solving skills, coupled with strong written and verbal communication abilities, are essential. You will work closely with IT infrastructure teams to ensure security measures are effectively integrated and maintained. The ability to work collaboratively within a dedicated security team environment in our Ahmedabad office is paramount. This is an opportunity to make a significant impact on maintaining a secure operational environment for a leading organization.
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Analyst - Threat Detection

570001 Mysore, Karnataka ₹110000 Annually WhatJobs

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client, a leading financial services institution, is seeking a highly skilled Senior Information Security Analyst with expertise in Threat Detection to join their cybersecurity team in **Mysuru, Karnataka**. This critical role involves monitoring security systems, analyzing potential threats, investigating security incidents, and implementing proactive measures to protect the organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, threat intelligence, incident response methodologies, and various security technologies. You will be responsible for identifying vulnerabilities, developing detection rules, and contributing to the overall security posture of the company.

Key Responsibilities:
  • Monitor security alerts and logs from various sources, including SIEM, IDS/IPS, EDR, and firewalls.
  • Analyze security events and investigate potential threats and breaches to determine scope and impact.
  • Develop and refine threat detection rules, signatures, and correlation logic.
  • Conduct forensic analysis of security incidents to identify root causes and evidence.
  • Respond to security incidents, coordinating containment, eradication, and recovery efforts.
  • Stay current with the latest threat landscapes, attack vectors, and vulnerability intelligence.
  • Develop and implement security best practices and procedures.
  • Collaborate with IT operations and other departments to address security vulnerabilities.
  • Create detailed incident reports and provide recommendations for security improvements.
  • Participate in security awareness training and incident response drills.
  • Contribute to the development and maintenance of the organization's Security Operations Center (SOC) capabilities.

Qualifications:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Minimum of 5-7 years of experience in information security, with a focus on threat detection and incident response.
  • Proficiency with Security Information and Event Management (SIEM) tools (e.g., Splunk, QRadar).
  • Strong understanding of network security, endpoint security, and cloud security concepts.
  • Experience with Intrusion Detection/Prevention Systems (IDS/IPS) and Endpoint Detection and Response (EDR) solutions.
  • Knowledge of threat intelligence platforms and analysis techniques.
  • Relevant certifications such as CISSP, CEH, GIAC, or CompTIA Security+ are highly desirable.
  • Excellent analytical, problem-solving, and critical-thinking skills.
  • Strong communication skills, both written and verbal, for reporting and collaboration.
  • Ability to work under pressure during security incidents.
This is a key role for an experienced security professional within a highly regulated industry in **Mysuru, Karnataka**, offering the chance to defend against sophisticated cyber threats.
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Analyst - Threat Detection

695001 Thiruvananthapuram, Kerala ₹70000 Annually WhatJobs

Posted 5 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a vigilant and experienced Senior Information Security Analyst to join their cybersecurity team in Thiruvananthapuram, Kerala, IN . This role is crucial for protecting the organization's digital assets by proactively identifying, analyzing, and responding to security threats. The ideal candidate will have a deep understanding of cybersecurity principles, threat landscapes, and incident response methodologies. You will be responsible for monitoring security alerts, performing forensic analysis, developing and implementing security policies, and staying ahead of emerging cyber threats. Key responsibilities include managing and tuning security information and event management (SIEM) systems, conducting vulnerability assessments and penetration testing, analyzing security logs, developing incident response plans, and providing security awareness training. We are looking for a detail-oriented professional with strong analytical and problem-solving skills, who can work effectively under pressure. Experience with various security tools and technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), and endpoint detection and response (EDR) solutions, is essential. This position offers a challenging and rewarding career opportunity in a critical field, contributing to the overall security posture of the organization. The candidate must be committed to continuous learning and staying current with the evolving cybersecurity domain.

Responsibilities:
  • Monitor security alerts and investigate potential security incidents.
  • Analyze security logs and system events for malicious activity.
  • Perform forensic analysis of security breaches and system compromises.
  • Develop, implement, and maintain security policies and procedures.
  • Conduct vulnerability assessments and penetration testing.
  • Manage and configure SIEM, IDS/IPS, and EDR solutions.
  • Develop and execute incident response plans.
  • Stay informed about emerging threats, vulnerabilities, and security trends.
  • Provide recommendations for improving security controls and posture.
  • Educate staff on security best practices and awareness.

Qualifications:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Minimum of 4-6 years of experience in information security or a related role.
  • Strong understanding of cybersecurity frameworks, principles, and best practices.
  • Experience with SIEM tools (e.g., Splunk, LogRhythm), IDS/IPS, and EDR solutions.
  • Proficiency in network security, host security, and cloud security concepts.
  • Experience with vulnerability scanning and penetration testing tools.
  • Excellent analytical, problem-solving, and critical thinking skills.
  • Relevant certifications such as CISSP, CEH, CompTIA Security+ are highly desirable.
  • Strong written and verbal communication skills.
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Analyst - Threat Detection

248001 Dehradun, Uttarakhand ₹950000 Annually WhatJobs

Posted 5 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a highly skilled Senior Information Security Analyst specializing in threat detection and incident response to join their dedicated security operations center (SOC) team in Dehradun, Uttarakhand, IN . This crucial role involves safeguarding the organization's digital assets by proactively identifying, analyzing, and responding to security threats and vulnerabilities. The ideal candidate will possess a deep understanding of cybersecurity principles, attack vectors, and defensive measures. You will be at the forefront of protecting our client from evolving cyber threats, making a tangible impact on the company's security posture.

Key Responsibilities:
  • Monitor security alerts and events from various security tools, including SIEM, IDS/IPS, and EDR systems.
  • Analyze security incidents to determine scope, impact, and root cause.
  • Develop and execute incident response plans and procedures.
  • Conduct forensic analysis of security breaches and malware infections.
  • Identify and report on emerging threats and vulnerabilities relevant to the organization.
  • Implement and tune security controls to enhance threat detection capabilities.
  • Collaborate with IT and other departments to implement security best practices.
  • Develop and maintain security documentation, policies, and procedures.
  • Participate in security awareness training and initiatives.
  • Stay current with the latest security threats, trends, and technologies.
  • Perform vulnerability assessments and penetration testing.
  • Manage security investigations and provide detailed reports.

Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or a related field; relevant certifications (e.g., CISSP, CEH, GIAC) are highly preferred.
  • Minimum of 5 years of experience in information security, with a focus on threat detection and incident response.
  • Proven experience with SIEM tools (e.g., Splunk, QRadar), IDS/IPS, firewalls, and endpoint security solutions.
  • Strong understanding of common attack vectors, malware analysis, and network security.
  • Excellent analytical and problem-solving skills, with the ability to think critically under pressure.
  • Proficiency in scripting languages (e.g., Python, PowerShell) for automation and analysis is a plus.
  • Strong written and verbal communication skills.
  • Ability to work effectively in a team environment and independently.
  • Experience with cloud security principles (AWS, Azure) is beneficial.
  • Commitment to maintaining confidentiality and ethical conduct.

This role is essential in bolstering our client's defense against cyber threats and offers a chance to work with a forward-thinking security team.
This advertiser has chosen not to accept applicants from your region.

Cybersecurity Analyst - Threat Detection

160001 Chandigarh, Chandigarh ₹1500000 Annually WhatJobs

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a vigilant and proactive Cybersecurity Analyst specializing in Threat Detection to join their cutting-edge information security team. This role will be based in Chandigarh, Chandigarh, IN , with a flexible hybrid working arrangement, allowing for collaboration with the team while maintaining work-life balance. You will play a critical role in safeguarding our digital assets by identifying, analyzing, and responding to security threats and incidents. Responsibilities include monitoring security alerts from various systems (SIEM, IDS/IPS, EDR), conducting in-depth investigations into suspicious activities, and developing threat intelligence. You will be instrumental in refining detection rules, improving incident response playbooks, and staying ahead of emerging cyber threats. The ideal candidate possesses a deep understanding of network protocols, operating systems, and common attack vectors. Experience with security tools, scripting languages (Python, PowerShell), and threat hunting techniques is essential. You will collaborate closely with IT operations, incident response teams, and other security professionals to fortify our defenses. This position demands a keen eye for detail, strong analytical skills, and the ability to perform under pressure. We are looking for individuals passionate about cybersecurity, committed to continuous learning, and driven to protect our organization from evolving cyber risks. If you are ready to take on challenging security initiatives in a dynamic environment, we encourage you to apply.

Key Responsibilities:
  • Monitor security alerts and events from SIEM, IDS/IPS, EDR, and other security tools.
  • Investigate security incidents, determine scope and impact, and develop containment strategies.
  • Perform threat hunting to proactively identify advanced persistent threats (APTs) and malicious activities.
  • Analyze malware and phishing attempts to understand attack methodologies.
  • Develop and tune detection rules and signatures to improve security posture.
  • Contribute to the development and improvement of incident response playbooks.
  • Stay current with the latest cybersecurity threats, vulnerabilities, and mitigation techniques.
  • Generate reports on security incidents and trends for management.
  • Collaborate with IT teams to implement security best practices and remediation actions.

Qualifications:
  • Bachelor's degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
  • 2-4 years of experience in cybersecurity operations, incident response, or threat analysis.
  • Strong understanding of networking protocols (TCP/IP, HTTP/S), operating systems (Windows, Linux), and security concepts.
  • Experience with SIEM platforms (e.g., Splunk, QRadar), IDS/IPS, and EDR solutions.
  • Familiarity with scripting languages (Python, PowerShell) for automation and analysis.
  • Knowledge of common attack vectors, malware types, and threat actor tactics, techniques, and procedures (TTPs).
  • Excellent analytical and problem-solving skills.
  • Strong communication and documentation abilities.
  • Relevant certifications such as CompTIA Security+, CEH, or GIAC are a plus.
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Sentinelone edr 4 to 6 years bengaluru mumbai Jobs in India !

Cybersecurity Analyst - Threat Detection

570001 Mysore, Karnataka ₹70000 Annually WhatJobs

Posted 5 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is seeking a proactive and skilled Cybersecurity Analyst to join their growing information security team in Mysuru, Karnataka, IN . This role is critical in safeguarding the organization's digital assets by identifying, analyzing, and responding to security threats and vulnerabilities. The ideal candidate will possess a strong understanding of network security principles, intrusion detection systems, and security information and event management (SIEM) tools. You will be responsible for monitoring security alerts, conducting in-depth investigations into potential breaches, and developing effective countermeasures. This position demands a keen eye for detail, excellent analytical skills, and the ability to work under pressure in a dynamic security landscape. You will play a key role in enhancing the overall security posture of the company.

Key responsibilities include analyzing security logs, performing vulnerability assessments, and contributing to the development and implementation of security policies and procedures. The successful candidate will also participate in incident response activities, conduct security awareness training, and stay current with emerging cybersecurity threats and technologies. Experience with scripting languages for automation of security tasks is a significant advantage. This is an on-site position, requiring your presence in our Mysuru office, fostering collaborative problem-solving and direct engagement with the security infrastructure. If you are passionate about cybersecurity and eager to make a tangible impact on protecting critical systems, we invite you to apply.

Responsibilities:
  • Monitor and analyze security alerts from various security tools (SIEM, IDS/IPS, etc.).
  • Investigate security incidents and breaches, identify root causes, and recommend remediation steps.
  • Perform vulnerability assessments and penetration testing.
  • Develop and maintain security policies, procedures, and guidelines.
  • Respond to security incidents in a timely and effective manner.
  • Assist in the development and implementation of security awareness training programs.
  • Stay up-to-date with the latest cybersecurity threats, trends, and technologies.
  • Collaborate with IT teams to implement security solutions and controls.
  • Conduct regular security audits and reviews.
  • Contribute to the continuous improvement of the organization's security posture.

Qualifications:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • Minimum of 3 years of experience in cybersecurity analysis or a similar role.
  • Proficiency with SIEM, IDS/IPS, firewalls, and endpoint security solutions.
  • Strong understanding of network protocols and security principles.
  • Experience with vulnerability assessment tools and methodologies.
  • Excellent analytical and problem-solving skills.
  • Ability to communicate technical information clearly to both technical and non-technical audiences.
  • Relevant certifications such as CompTIA Security+, CEH, or CISSP are a plus.
  • Experience with scripting languages (e.g., Python, PowerShell) is advantageous.
This advertiser has chosen not to accept applicants from your region.

Cyber Threat Detection Engineer

Bengaluru, Karnataka Confidential

Posted today

Job Viewed

Tap Again To Close

Job Description

About Rearc

At Rearc, we&aposre committed to empowering engineers to build awesome products and experiences. Success as a business hinges on our people&aposs ability to think freely, challenge the status quo, and speak up about alternative problem-solving approaches. If you&aposre an engineer driven by the desire to solve problems and make a difference, you&aposre in the right place!

Our approach is simple — empower engineers with the best tools possible to make

an impact within their industry.

Role Overview

Rearc is looking for a Cybersecurity Threat Detection Engineer with proactive communication skills, a foundation in DevSecOps, Detection-As-Code, deep purple team technical expertise, and an entrepreneurial approach to join our growing Cybersecurity practice. This role involves partnering with Rearc customers to design cutting-edge detection strategies and support the development of top-tier, modern cybersecurity monitoring programs. You will craft tailored security detections to strengthen our clients&apos cybersecurity efforts by leveraging Security Information and Event Management (SIEM), Security Orchestration Automation and Response (SOAR), Endpoint Detection and Response (EDR), and Network Detection and Response (NDR) services.

What You Bring

  • Enthusiasm about developing and evangelizing services in the cyber space.
  • Strong cloud, security, SIEM and data engineering fundamentals.

What You&aposll Do

  • Utilize NDR, EDR, real-time streaming, and SIEM technologies to develop robust threat detection capabilities.
  • Build and optimize detection rules leveraging real-time data streaming to enhance detection accuracy.
  • Design enrichment pipelines and automation workflows to enhance the precision of threat detections.
  • Develop correlation logic and automated processes to create high-fidelity threat alerts.
  • Build compliance and recoverability of customer Data Analytics solutions, including SOPs, data onboarding, normalization, enrichment, and system maintenance.
  • Create automation playbooks for incident triage and response.
  • Align detection content with customer-specific Use Case Frameworks and provide metrics on cybersecurity threats impacting their environment.
  • Collaborate with customer cybersecurity teams to cover gaps and enhance enterprise posture.
  • Support enterprise Cybersecurity, Information Technology (IT), and Operational Technology (OT) teams by providing dashboards and other data exploration tools.
  • Stay continually aware of emerging cybersecurity threats and trends, adapting detection strategies as needed.
  • Work closely with customer teams, including Cybersecurity Operations Center (CSOC), Operational Technology (OT), and Incident Response (IR) teams, to ensure detections are actionable and relevant.
  • Provide feedback to improve the customer&aposs security framework and overall security monitoring strategy.

In this role, you will combine technical expertise with continual situational awareness of emerging threats, driving client success while staying at the cutting edge of cyber security innovations.

Qualifications

  • 6+ years of experience in Cybersecurity with a focus on:
    • Log streaming
    • Cybersecurity data lakes and data warehousing
    • SOAR engineering
    • SIEM engineering, administration, architecture, and operations
    • Data science, statistical analysis, and threat detection development
    • Integrating disparate IT, OT, and business applications into SIEM systems
  • Bachelor&aposs degree in Management Information Systems, Computer Science, or a related field
  • A strong passion for Cybersecurity and a commitment to staying current with industry trends, best practices, and tools
  • Proven experience in documenting, socializing, and operationalizing Cybersecurity technologies and processes
  • Prior programming experience in Python, SQL, and Apache Spark
  • Solid understanding of common attack techniques and their practical applications
  • Demonstrated ability to work effectively across multiple teams, building cross-functional relationships with individuals of varying technical expertise
  • A self-starter with a proven ability to thrive in fast-paced environments
  • Strong technical communication skills, both written and verbal
Nice To Have

  • Prior experience with platforms like Databricks, Cribl, Tines, or other cybersecurity lakehouse providers

Some More About Us

At Rearc, our mission is straightforward - empower engineers with the best tools possible to make an impact within their industry. We pride ourselves on fostering an environment where creativity flourishes, bureaucracy is non-existent, and individuals are encouraged to challenge the status quo. We&aposre not just a company; we&aposre a community of problem-solvers dedicated to improving the lives of fellow software engineers.

Our commitment is simple - finding the right fit for our team and cultivating a desire to make things better. If you&aposre a cloud professional intrigued by our problem space and eager to make a difference, you&aposve come to the right place. Join us, and let&aposs solve problems together!


Skills Required
Statistical Analysis, Apache Spark, Cybersecurity, Data Science, Data Warehousing, Sql, DevSecOps, Python
This advertiser has chosen not to accept applicants from your region.

Cybersecurity Threat Detection Engineer

Hyderabad, Andhra Pradesh Evnek Technologies Pvt Ltd

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Title: Cybersecurity Threat Detection Engineer

Experience: 6 + Years

Location: Hyderabad,

Notice Period: Immediate Joiner

Cab Facility: Available


Job Summary:

We are seeking a skilled Cybersecurity Threat Detection Engineer with 6+years of experience in cybersecurity, specializing in threat detection and incident response. This is a contract-to-hire opportunity for a candidate with strong expertise in SIEM platforms, detection content development, and cloud security. The role involves working closely with clients and internal teams to enhance detection capabilities across on-premises, cloud, and SaaS environments.

Key Responsibilities:

  • Design and develop detection rules, policies, and alerting mechanisms to identify cybersecurity threats across varied technology stacks.
  • Lead the creation and deployment of high-fidelity detection content across on-prem , cloud (AWS, Azure, GCP), and SaaS platforms.
  • Collaborate with threat hunters, security analysts, and intelligence teams to incorporate emerging threats into detection strategies.
  • Fine-tune detection mechanisms to reduce false positives and increase accuracy.
  • Stay current with the latest cybersecurity trends, tools, and attack techniques.
  • Assist clients in boarding the security platform and integrating diverse data sources.
  • Document detection uses cases, processes, and generate security metrics reports.
  • Provide technical guidance and collaborate with Security Operations on alert response automation and playbook development.
  • Understand and work with network security tools and infrastructure such as firewalls, EDR, DLP, proxies, IDS/IPS , and email security solutions.

Required Qualifications:

  • Bachelor’s degree in computer science, Information Security , or related discipline.
  • 5+ years of hands-on experience in cybersecurity , with emphasis on threat detection , incident response , and SIEM tools.
  • Expertise in log analysis , SIEM tuning , and detection rule creation.
  • Strong familiarity with MITRE ATT&CK , Cyber Kill Chain , and adversary TTPs.
  • Knowledge of cloud-based threat detection techniques and strategies.
  • Excellent written and verbal communication skills with the ability to collaborate effectively with clients and cross-functional teams.

Technical Skills & Tools:

  • Hands-on experience with SIEM platforms : Splunk, Elastic Stack (ELK/Security Onion), IBM QRadar, Securonix, Wazuh, Azure Sentinel.
  • Ability to create and manage SIEM queries, alerts, dashboards, and integrate new log sources.
  • Familiarity with CSPM, SOAR, EDR/XDR, WAF , and other security toolsets.
  • Scripting and automation knowledge for alert responses and playbooks.

Preferred Certifications:

  • OSCP , CISSP , or GIAC certifications such as GCIH, GCIA , or similar.

 



This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Sentinelone Edr 4 To 6 Years Bengaluru Mumbai Jobs