06 Aug
|
Phenom People
|
Hyderabad
06 Aug
Phenom People
Hyderabad
Phenom Introduction:
Our purpose is to help a billion people find the right work! Phenom is an AI-Powered talent experience platform that is redefining the HR tech space. We have grown into a global organization with offices in 6 countries and over 1,500 employees. As an HR tech unicorn organization, innovation and creativity is within our DNA. Come help us make every talent moment Phenomenal!
Core Description Parameters:
Phenom People is seeking a highly skilled and experienced Cybersecurity Incident Response Analyst to join our growing team in Hyderabad, Telangana, India. As a leading provider of talent experience management solutions, we are committed to protecting our clients' data and systems from cyber threats. We are looking for a talented individual who is passionate about cybersecurity and has a strong understanding of incident response procedures.
What We Offer:
- Monitor and analyze security events and incidents to identify potential threats and vulnerabilities
- Develop and maintain incident response plans and procedures
- Conduct regular security assessments and audits to identify potential risks and vulnerabilities
- Investigate and respond to security incidents, including containment, eradication, and recovery
- Collaborate with cross-functional teams to implement security controls and measures to prevent future incidents
- Stay up-to-date with the latest cybersecurity trends and best practices
- Provide training and guidance to employees on cybersecurity awareness and best practices
Education and Qualifications:
- Bachelor's degree in Computer Science, Information Technology,
or a related field
- Minimum of 4 years of experience in cybersecurity incident response
- Strong understanding of incident response procedures and tools
- Experience with security monitoring and analysis tools
- Knowledge of network and system security, including firewalls, intrusion detection systems, and vulnerability management
- Excellent problem-solving and analytical skills
- Ability to work under pressure and handle multiple incidents simultaneously
- Strong communication and interpersonal skills
- Relevant certifications such as CISSP, CISM, or GIAC are a plus
Work Experience
What Youve Done:
- Analytical and investigative abilities with hands-on experience on cyber security incident response and response automation strategies, and ability to work to tight guidelines and under high pressure in the context of cyber incidents
- Experience working with Threat modeling (e.g., STRIDE, PASTA, FAIR, Security Cards), operational threat intelligence, and attack framework standards (e.g., MITRE ATT&CK;) with a valuable understanding of the Cyber Kill Chain and pervasive threat attack methods and remediation.
- Good understanding and hands-on experience with common security systems, including WAF, IPS/IDS, EDR,
DLP, authentication systems, content filtering, etc.
- Experience developing detection logic for enterprise SIEM systems and with exploitation techniques and use case development.
- Experience in the detection and response to malicious activity using log data and alerts from cybersecurity solutions, systems and network devices.
- Experience extracting and analyzing forensic artifacts across Windows, Mac, and Linux operating systems.
- Coding Experience in Scripting & programming languages (such as Java, Bash, Python, PowerShell etc.) to use these skills to aid in responding to incidents involving Windows, Linux, and Mac hosts, as well as automate common analytical processes to reduce analyst time and avoid repetitive incident response tasks.
- Experience supporting an Incident Response Program through the development of procedural documentation (playbooks and runbooks).
- Understanding of Amazon Web Services cloud environments and its security controls and their corresponding challenges.
- Understanding of microservices architectures & distributed Platforms especially in the SaaS businesses
- Understanding of global frameworks and standards like NIST, ISO 27001/27002/27017/ 27018, GDPR, etc.
- An Information Security qualication or evidence of starting to work toward SANS GCIH, GCIA, GREM, GCFA, OSCP or similar certication.
- Thought leadership, critical thinking & problem solver, strong organizational skills, report writing skills to senior level, ability to prioritize and multitask.
📌 Incident Response Engineer III (Hyderabad)
🏢 Phenom People
📍 Hyderabad