2,711 Threat Detection jobs in India
Cybersecurity Threat Detection Engineer
Posted today
Job Viewed
Job Description
Job Title: Cybersecurity Threat Detection Engineer
Experience: 6 + Years
Location: Hyderabad,
Notice Period: Immediate Joiner
Cab Facility: Available
Job Summary:
We are seeking a skilled Cybersecurity Threat Detection Engineer with 6+years of experience in cybersecurity, specializing in threat detection and incident response. This is a contract-to-hire opportunity for a candidate with strong expertise in SIEM platforms, detection content development, and cloud security. The role involves working closely with clients and internal teams to enhance detection capabilities across on-premises, cloud, and SaaS environments.
Key Responsibilities:
- Design and develop detection rules, policies, and alerting mechanisms to identify cybersecurity threats across varied technology stacks.
- Lead the creation and deployment of high-fidelity detection content across on-prem , cloud (AWS, Azure, GCP), and SaaS platforms.
- Collaborate with threat hunters, security analysts, and intelligence teams to incorporate emerging threats into detection strategies.
- Fine-tune detection mechanisms to reduce false positives and increase accuracy.
- Stay current with the latest cybersecurity trends, tools, and attack techniques.
- Assist clients in boarding the security platform and integrating diverse data sources.
- Document detection uses cases, processes, and generate security metrics reports.
- Provide technical guidance and collaborate with Security Operations on alert response automation and playbook development.
- Understand and work with network security tools and infrastructure such as firewalls, EDR, DLP, proxies, IDS/IPS , and email security solutions.
Required Qualifications:
- Bachelor’s degree in computer science, Information Security , or related discipline.
- 5+ years of hands-on experience in cybersecurity , with emphasis on threat detection , incident response , and SIEM tools.
- Expertise in log analysis , SIEM tuning , and detection rule creation.
- Strong familiarity with MITRE ATT&CK , Cyber Kill Chain , and adversary TTPs.
- Knowledge of cloud-based threat detection techniques and strategies.
- Excellent written and verbal communication skills with the ability to collaborate effectively with clients and cross-functional teams.
Technical Skills & Tools:
- Hands-on experience with SIEM platforms : Splunk, Elastic Stack (ELK/Security Onion), IBM QRadar, Securonix, Wazuh, Azure Sentinel.
- Ability to create and manage SIEM queries, alerts, dashboards, and integrate new log sources.
- Familiarity with CSPM, SOAR, EDR/XDR, WAF , and other security toolsets.
- Scripting and automation knowledge for alert responses and playbooks.
Preferred Certifications:
- OSCP , CISSP , or GIAC certifications such as GCIH, GCIA , or similar.
Cybersecurity Threat Detection Engineer
Posted today
Job Viewed
Job Description
Job Title: Cybersecurity Threat Detection Engineer
Experience: 6 + Years
Location: Hyderabad,
Notice Period: Immediate Joiner
Cab Facility: Available
Job Summary:
We are seeking a skilled Cybersecurity Threat Detection Engineer with 6+years of experience in cybersecurity, specializing in threat detection and incident response. This is a contract-to-hire opportunity for a candidate with strong expertise in SIEM platforms, detection content development, and cloud security. The role involves working closely with clients and internal teams to enhance detection capabilities across on-premises, cloud, and SaaS environments.
Key Responsibilities:
- Design and develop detection rules, policies, and alerting mechanisms to identify cybersecurity threats across varied technology stacks.
- Lead the creation and deployment of high-fidelity detection content across on-prem , cloud (AWS, Azure, GCP), and SaaS platforms.
- Collaborate with threat hunters, security analysts, and intelligence teams to incorporate emerging threats into detection strategies.
- Fine-tune detection mechanisms to reduce false positives and increase accuracy.
- Stay current with the latest cybersecurity trends, tools, and attack techniques.
- Assist clients in boarding the security platform and integrating diverse data sources.
- Document detection uses cases, processes, and generate security metrics reports.
- Provide technical guidance and collaborate with Security Operations on alert response automation and playbook development.
- Understand and work with network security tools and infrastructure such as firewalls, EDR, DLP, proxies, IDS/IPS , and email security solutions.
Required Qualifications:
- Bachelor’s degree in computer science, Information Security , or related discipline.
- 5+ years of hands-on experience in cybersecurity , with emphasis on threat detection , incident response , and SIEM tools.
- Expertise in log analysis , SIEM tuning , and detection rule creation.
- Strong familiarity with MITRE ATT&CK , Cyber Kill Chain , and adversary TTPs.
- Knowledge of cloud-based threat detection techniques and strategies.
- Excellent written and verbal communication skills with the ability to collaborate effectively with clients and cross-functional teams.
Technical Skills & Tools:
- Hands-on experience with SIEM platforms : Splunk, Elastic Stack (ELK/Security Onion), IBM QRadar, Securonix, Wazuh, Azure Sentinel.
- Ability to create and manage SIEM queries, alerts, dashboards, and integrate new log sources.
- Familiarity with CSPM, SOAR, EDR/XDR, WAF , and other security toolsets.
- Scripting and automation knowledge for alert responses and playbooks.
Preferred Certifications:
- OSCP , CISSP , or GIAC certifications such as GCIH, GCIA , or similar.
Requirements
SIEM platforms: Splunk, Elastic Stack (ELK/Security Onion), IBM QRadar, Securonix, Wazuh, Azure Sentinel.
Senior Threat Detection Analyst
Posted today
Job Viewed
Job Description
Reddit is a community of communities. It’s built on shared interests, passion, and trust and is home to the most open and authentic conversations on the internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. With ,+ active communities and approximately M+ daily active unique visitors, Reddit is one of the internet’s largest sources of information. For more information, visit redditinc.com.
Location: Bangalore, India
Reddit is continuing to grow our teams with the best talent. This role islocated in Bangalore, India. If you happen to live close to one of our physical office locations, our doors are open for you to come into the office as often as you'd like.
Team Description
The SPACE (Security, Privacy, And Compliance Engineering) team defends Reddit’s employees and compute assets to make Reddit the most trustworthy place for online human interaction. We look for humble experts with a relentlessly resourceful and entrepreneurial “can do” perspective. If you work tirelessly to break into computer networks and just as tirelessly to ensure others cannot, we need you.
Role Description
This is a Threat Detections role within the SPACE Security Intelligence Center. We are incident commanders with product administration experience who analyze security threats, build detections, and respond to security events. We value builders and software engineers with broad and deep technical knowledge, specifically in the fields of insider threat, data analytics, system forensics, malware analysis, threat hunting, threat intelligence, and application, endpoint, & cloud/infrastructure security. Security is tough, diversity is key, so unique experience is highly valued!
If you are passionate about data, security, threat models, and building creative mitigations, we need you. The ideal candidate has a strong coding background and has worked as part of a Computer Security Incident Response Team (CSIRT). We are looking for those with experience building creative detections and response automations, mapping detections to various security models, and using automation to validate detections are working. You will help build a scalable detection and incident response system to analyze security events and find anomalies across Reddit’s technical ecosystem (endpoints, cloud, and SaaS).
Some of our present and future work include:
What You’ll Do:
Who we want you to be:
Benefits:
Your salary will be commensurate with your experience
Senior Threat Detection Engineer
Posted today
Job Viewed
Job Description
Job Title: Senior Threat Detection Engineer
Experience: 6–9 Years
Location: Hyderabad
Shift: General Shift (Cab facility available)
Notice Period: Immediate Joiners Only
Role Overview
We are seeking a Senior Threat Detection Engineer to design, develop, and fine-tune advanced threat detection mechanisms across a wide range of platforms, including on-premises, cloud (AWS, Azure, GCP), and SaaS environments. This role is ideal for cybersecurity professionals with strong SIEM expertise and a passion for staying ahead of evolving threats.
Key Responsibilities
- Design & Develop detection rules and security policies to identify threats across multiple platforms and technologies.
- Lead the creation and deployment of high-fidelity threat detection mechanisms for on-prem, cloud, and SaaS ecosystems.
- Collaborate with security analysts, threat hunters, and intelligence teams to track emerging threats and design countermeasures.
- Validate, tune, and optimize detection content to reduce false positives while maintaining high accuracy.
- Onboard client environments to our detection platform, integrating diverse data sources and guiding them through implementation.
- Stay updated on cybersecurity trends, tools, and threat actor TTPs (MITRE ATT&CK, Cyber Kill Chain).
- Document detection workflows, generate security metrics reports , and present findings to stakeholders.
- Work with the Security Operations team to automate alert responses and develop playbooks.
- Maintain a strong working knowledge of network infrastructure and security tools, including Firewalls, EDR, Email Security, Proxy, DLP, IDS/IPS.
Required Qualifications
- Bachelor’s degree in computer science, Information Security , or related field.
- 5+ years in cybersecurity with expertise in threat detection, analysis, and incident response .
- Strong experience with SIEM platforms (Splunk, ELK/Security Onion, IBM QRadar, Securonix, Wazuh, Azure Sentinel) — ability to create queries, dashboards, and integrate new data sources.
- Familiarity with cloud security and detection strategies in AWS, Azure, and GCP.
- Knowledge of security frameworks, including MITRE ATT&CK and Cyber Kill Chain .
- Proficiency with security tools: SIEM, CSPM, EDR/XDR, SOAR, WAF, IDS/IPS .
- Excellent communication and client interaction skills .
Requirements
threat detection,SIEM, CSPM, EDR/XDR, SOAR, WAF, IDS/IPS
Senior Threat Detection Engineer
Posted today
Job Viewed
Job Description
Job Title: Senior Threat Detection Engineer
Experience: 6–9 Years
Location: Hyderabad
Shift: General Shift (Cab facility available)
Notice Period: Immediate Joiners Only
Role Overview
We are seeking a Senior Threat Detection Engineer to design, develop, and fine-tune advanced threat detection mechanisms across a wide range of platforms, including on-premises, cloud (AWS, Azure, GCP), and SaaS environments. This role is ideal for cybersecurity professionals with strong SIEM expertise and a passion for staying ahead of evolving threats.
Key Responsibilities
- Design & Develop detection rules and security policies to identify threats across multiple platforms and technologies.
- Lead the creation and deployment of high-fidelity threat detection mechanisms for on-prem, cloud, and SaaS ecosystems.
- Collaborate with security analysts, threat hunters, and intelligence teams to track emerging threats and design countermeasures.
- Validate, tune, and optimize detection content to reduce false positives while maintaining high accuracy.
- Onboard client environments to our detection platform, integrating diverse data sources and guiding them through implementation.
- Stay updated on cybersecurity trends, tools, and threat actor TTPs (MITRE ATT&CK, Cyber Kill Chain).
- Document detection workflows, generate security metrics reports , and present findings to stakeholders.
- Work with the Security Operations team to automate alert responses and develop playbooks.
- Maintain a strong working knowledge of network infrastructure and security tools, including Firewalls, EDR, Email Security, Proxy, DLP, IDS/IPS.
Required Qualifications
- Bachelor’s degree in computer science, Information Security , or related field.
- 5+ years in cybersecurity with expertise in threat detection, analysis, and incident response .
- Strong experience with SIEM platforms (Splunk, ELK/Security Onion, IBM QRadar, Securonix, Wazuh, Azure Sentinel) — ability to create queries, dashboards, and integrate new data sources.
- Familiarity with cloud security and detection strategies in AWS, Azure, and GCP.
- Knowledge of security frameworks, including MITRE ATT&CK and Cyber Kill Chain .
- Proficiency with security tools: SIEM, CSPM, EDR/XDR, SOAR, WAF, IDS/IPS .
- Excellent communication and client interaction skills .
Senior Engineer- AI & Threat Detection
Posted today
Job Viewed
Job Description
JOB DESCRIPTION
Calling all originals: At Levi Strauss & Co., you can be yourself — and be part of something bigger. We’re a company of people who like to forge our own path and leave the world better than we found it. Who believe that what makes us different makes us stronger. So add your voice. Make an impact. Find your fit — and your future.
Summary of the role:
The Threat Detection Engineer plays an integral role in the protection of the brand and works directly with the Director of Threat Engineering and the broader Global Information Security (GIS) team. This role focuses on both fraud detection and cloud security detection engineering. The priorities and directives are consistent with the vision of the CISO across Levi Strauss & Company globally.
The Threat Detection Engineer will take a lead role in safeguarding LS&Co.’s information and technology assets, critical suppliers, and consumers against the evolving threat landscape, allowing LS&Co. to make threat informed cybersecurity decisions to strengthen LS&Co.’s cybersecurity posture. This individual will work to detect, monitor, and respond to security incidents in real-time.
This position will support LS&Co’s Threat Detection Engineering environment and is responsible for collaborating with various groups including the Security Operation Center to consume, validate, and create detection content across the enterprise. This role is responsible for developing, testing, and refining detection capabilities to identify fraudulent activity and cloud-based threats across our environment with automation of process and playbooks.
The ideal candidate has a strong software development background. This role will design, develop, and implement detection logic, automation, and tooling to identify and respond to security threats. This role will collaborate closely with security operations, incident response, and cyber threat intelligence teams to improve detection efficacy and reduce risk to the organization.
About the role:
About you:
Benefits
We put a lot of thought into our programs to provide you with a benefits package that matters. Whether it is for medical care, taking time off, improving your health or planning for retirement, we've got you covered.
Here's a small snapshot:
Complimentary preventive health check-up for you & your spouse
OPD coverage
Best in class leave plan including paternity & family care leaves
Counselling sessions to prioritizing mental well-being
Exclusive discount vouchers on Levi’s products
LOCATION
Bengaluru, IndiaFULL TIME/PART TIME
Full timeSenior Security Analyst, Cloud Threat Detection
Posted 8 days ago
Job Viewed
Job Description
+ Bachelor's degree or equivalent practical experience.
+ 5 years of experience with working in security analysis, network security, intrusion detection system, threat intelligence or threat detection.
+ 2 years of experience as a technical security professional, with digital forensics or systems administration.
+ Experience with executive or customer stakeholder management and communication.
+ Experience with a data motivated approach towards solving information security tests.
**Preferred qualifications:**
+ Master's degree in Computer Science or a related field.
+ Knowledge of defensive security concepts such as adversity tactic and technique, MITRE ATT and CK framework, logging etc.
+ Knowledge of networking and internet protocols(e.g., TCP/IP, HTTP, SSL) and analyzing malicious network traffic.
+ Excellent organizational and multitasking skills.
Product Security Engineering (PSE) is the team within the Cloud CISO organization responsible for helping to ensure every product Cloud ships is as secure as it can be and increasing the assurance levels of security in the infrastructure underlying all our products. This team also focus on increasing the capabilities of each product team to develop more secure products by design and by default, from patterns, tools and frameworks to increasing the skill level of embedded security leads.
In this role, you will be part of the team that is responsible for protecting Google and its users from attacks and abuses originating from Google Cloud Platform. You will ensure trust and reputation not only for this product, but also for Google as a brand and company. You will work globally and cross-functionally with several internal stakeholders.
Google Cloud accelerates every organization's ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google's cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
**Responsibilities:**
+ Research new detection techniques to prevent/mitigate abusive activities such as outbound security attacks, botnet, DDoS and other malicious behaviors which violate Google Cloud Platform's (GCP) Terms of Service.
+ Develop fidelity detection to identify malicious activity based on raw network and host level telemetry.
+ Analyze logs, packets to increase accuracy of detections.
+ Hunt for threats/abusers and respond.
Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also and If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form:
Be The First To Know
About the latest Threat detection Jobs in India !
Senior Security Analyst, Cloud Threat Detection
Posted 8 days ago
Job Viewed
Job Description
+ Bachelor's degree or equivalent practical experience.
+ 5 years of experience with working in security analysis, network security, intrusion detection system, threat intelligence or threat detection.
+ 2 years of experience as a technical security professional, with digital forensics or systems administration.
+ Experience with executive or customer stakeholder management and communication.
+ Experience with a data motivated approach towards solving information security tests.
**Preferred qualifications:**
+ Master's degree in Computer Science or a related field.
+ Knowledge of defensive security concepts such as adversity tactic and technique, MITRE ATT and CK framework, logging etc.
+ Knowledge of networking and internet protocols(e.g., TCP/IP, HTTP, SSL) and analyzing malicious network traffic.
+ Excellent organizational and multitasking skills.
Product Security Engineering (PSE) is the team within the Cloud CISO organization responsible for helping to ensure every product Cloud ships is as secure as it can be and increasing the assurance levels of security in the infrastructure underlying all our products. This team also focus on increasing the capabilities of each product team to develop more secure products by design and by default, from patterns, tools and frameworks to increasing the skill level of embedded security leads.
In this role, you will be part of the team that is responsible for protecting Google and its users from attacks and abuses originating from Google Cloud Platform. You will ensure trust and reputation not only for this product, but also for Google as a brand and company. You will work globally and cross-functionally with several internal stakeholders.
Google Cloud accelerates every organization's ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google's cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
**Responsibilities:**
+ Research new detection techniques to prevent/mitigate abusive activities such as outbound security attacks, botnet, DDoS and other malicious behaviors which violate Google Cloud Platform's (GCP) Terms of Service.
+ Develop fidelity detection to identify malicious activity based on raw network and host level telemetry.
+ Analyze logs, packets to increase accuracy of detections.
+ Hunt for threats/abusers and respond.
Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also and If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form:
Technical Consultant-Threat Detection Content & Administration

Posted 10 days ago
Job Viewed
Job Description
In this role, you'll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers), where we deliver deep technical and industry expertise to a wide range of public and private sector clients around the world. Our delivery centers offer our clients locally based skills and technical expertise to drive innovation and adoption of new technology
**Your role and responsibilities**
* The SIEM Administrator will be responsible for administering the deployed SIEM service. The candidate is also expected to have hands on experience of deploying a SIEM solution from scratch, where the candidate should have the skills and knowledge to gather all the required information to build the SIEM solution.
* In-depth knowledge of technical approaches in security analytics, monitoring and alerting. Maintains technical knowledge within areas of expertise.
* This role is also responsible for identifying, analyzing, developing new or tuning & Refinement of the content or use cases. Strong problem solving and troubleshooting skills including the ability to perform root cause analysis for preventative investigation
**Required technical and professional expertise**
* Should have experience in any of the query language i.e AQL ,KQL, SPL, LEQL etc for writing the complex queries & saved search creation.
* Should have strong knowledge of different cybersecurity frameworks i.e.MITRE, NIST and Cyber kill chain model.
* Should have understanding of regular expression writing and custom parsing
**Preferred technical and professional experience**
* Collaborate with key stakeholders within technology, application and cyber security to develop use cases to address specific business needs.
* Create technical documentation around the content deployed to the SIEM.
* Creates and develops correlation and detection rules with SIEM solution, reports & dashboards to detect emerging threats
IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
Offshore SAP Enterprise Threat Detection Specialist
Posted 7 days ago
Job Viewed
Job Description
This is a remote position.
We’re looking for an experienced SAP Enterprise Threat Detection (ETD) professional to join our team on a contract-to-hire basis. This role will be offshore, but you’ll work U.S. business hours so you can collaborate closely with our onshore team.
You’ll be the go-to person for setting up, configuring, and monitoring SAP ETD, making sure we’re catching potential threats before they become problems. Good communication is key here—you’ll be working with different teams, sharing updates, and helping solve issues quickly.
What you’ll be doing:
Setting up and configuring SAP ETD from scratch.
Creating monitoring rules, alerts, and dashboards to catch suspicious activity.
Keeping a close eye on SAP systems and investigating any security incidents.
Working with other teams to make sure systems stay secure and compliant.
Suggesting improvements and fine-tuning ETD for better results.
What we’re looking for:
Strong hands-on experience with SAP Enterprise Threat Detection (setup & monitoring).
A good grasp of SAP security and threat management.
Confidence in reviewing logs, setting alerts, and identifying risks.
Solid communication skills in English—you’ll be talking with U.S.-based teams daily.
Comfortable working U.S. hours from your offshore location.
Able to start immediately .
If you’re ready for a role where your expertise will make an immediate impact and you want to work closely with a collaborative team, we’d love to talk to you.