Posted on: 10/06/2026
Job Description :
Work Location : Pune, Mumbai, Bangalore, Hyderabad, Delhi
Role & Responsibilities :
- Incident response
- Malware analysis (static and Dynamic analysis)
- Modular forensics in IR
- SANS certification (GCIH, GCFA, GREM)
- EC-Council (ECIH, CHFI) certifications.
- CyLR, Redline, KAPE, Skadi, FlareVM, SIFT, MDE, Crowdstrike Sandboxing
- modern SIEM, EDR, deriving hypothesis and investigation ideas, handling complex and perform advanced investigations.
- Detect, Analyze, Investigate, and report qualified security incidents to the Client as per the defined SLA
- Provide recommendations to the security incidents reported as per SLA
- Investigates incidents using various security event sources (FW, IDS, PROXY, AD, EDR, DLP etc.).
- Investigations into non-standard incidents and execution of standard scenarios.
- Provide dashboard and data related to Incidents/Offenses for governance reports.
- Escalates to L3 if investigations uncover unusual or atypical situations.
- Monitoring unhealthy log source/data source and escalate to engineering team to fix them.
- Participate in incident response (IR) efforts; detect, identify, respond, contain and remediate all information security incidents.
- Rapidly and accurately determine the source of a security incident and moving quickly to identify and apply containment, mitigation, and remediation steps.
- Contribute to the execution of Cyber Security operations, incident response, and investigations spanning across all functions of the Corporate Security organization.
- Track, monitor incident actions while applying intelligence, situational awareness to prioritise incident actions based on risk
- Responsible for Incident and Breach communications, assessments, and reports and customer facing, to include leadership and executive management for the purpose of enabling Senior Management to make decisions in a crisis
- Develop and document processes to ensure consistent and scalable response operations
- Deliver tabletop IR assessments and real-life IR simulations at a technical and executive level.
- Conduct in-depth root cause analysis on complex malware and user/system behaviour event
- Gather and analyse forensic evidence for cyber security incidents and investigations.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1643699