30 Jul
|
KPMG Assurance and Consulting Services
|
Karnataka
30 Jul
KPMG Assurance and Consulting Services
Karnataka
Job Summary
We are seeking an experienced Incident Responder with 6+ years of hands-on experience in cyber security operations, incident detection, investigation, containment, and remediation. The ideal candidate should have robust expertise in Threat Hunting, Security Incident Response, and SOX (Sarbanes-Oxley) compliance. The candidate will collaborate with SOC, Security Engineering, Risk, Audit, and IT teams to identify threats, minimize business impact, and strengthen the organization's security posture.
Key Responsibilities
Lead end-to-end incident response activities including detection, analysis, containment, eradication, and recovery.
Investigate security incidents involving malware, phishing, ransomware, insider threats, and advanced persistent threats (APTs).
Conduct proactive threat hunting using SIEM, EDR, network, and endpoint telemetry.
Analyze security alerts and logs from various security platforms to identify indicators of compromise (IOCs) and attack patterns.
Develop and improve incident response playbooks, procedures, and workflows.
Perform digital forensic investigations and root cause analysis.
Support and maintain compliance with SOX controls related to information security and access management.
Participate in security audits and provide evidence for SOX compliance requirements.
Collaborate with IT, Infrastructure, Application, and Audit teams to remediate identified security gaps.
Monitor threat intelligence sources and assess organizational exposure to emerging threats.
Create incident reports, executive summaries, and post-incident reviews.
Recommend security improvements based on findings from investigations and threat hunting exercises.
Mentor junior analysts and contribute to SOC maturity initiatives.
Technical Skills
6+ years of experience in Security Operations Center (SOC) or Incident Response roles.
Solid experience with:
Incident Response Lifecycle
Threat Hunting
Digital Forensics
Malware Analysis
Log Analysis
Security Monitoring
Hands-on experience with SIEM tools:
Microsoft Sentinel
Splunk
QRadar
ArcSight
Experience with EDR/XDR platforms:
Microsoft Defender
CrowdStrike Falcon
SentinelOne
Carbon Black
Knowledge of MITRE ATT&CK; Framework and Cyber Kill Chain.
Solid understanding of Windows, Linux, Active Directory, Azure AD, and cloud security concepts.
Experience in network security, packet analysis, IDS/IPS, and firewall technologies.
📌 Assistant Manager Incident Response / Threat Hunting / Siem Karnataka
🏢 KPMG Assurance and Consulting Services
📍 Karnataka