09 Aug
|
Tredence
|
Bengaluru
09 Aug
Tredence
Bengaluru
: Consultant Cyber Defense Center (CDC) v1.0
About TredenceTredence is a global data science solutions provider focused on solving the last mile problem in AI. The 'last mile' is the gap between insight creation and value realization. Headquartered in San Jose, the company embraces a vertical-first approach and an outcome-driven mindset to help clients win and accelerate value realization from their analytics investments.
Tredence is a Great Place to Work-Certified and a 'Leader' in the Forrester Wave: Customer Analytics Services. Tredence is 3,500+ employees strong with offices in San Jose, Foster City, Chicago, London, Toronto, Delhi, Chennai and Bangalore, with the largest companies in retail, CPG, hi-tech, telecom, healthcare, travel, and industrials as clients.
In April 2025, we welcomed Further Advisory, a banking and financial services consulting specialist, into the Tredence family. Their sector-deep strategy expertise combined with our AI-driven decision-intelligence platform now helps global BFSI clients modernize faster, manage risk smarter, and unlock new growth at scale.
Website: www.tredence.comRoleConsultant Cyber Defense Center (CDC)DesignationConsultant Information Security GroupFunctionCyber Defense Center (CDC)UnitInformation Security Group (ISG)Reporting toManager Cyber Defense Center (CDC) or Chief Information Security Officer (CISO)Team sizeNABase locationBangaloreAbout ISGTredence CISOs office is accountable for Security and Privacy on all aspects of Tredences internal and Client facing business. The team in charge of Security - the Information Security Group (ISG) - focusses on all elements of Information Security for the organization working collaboratively with stakeholders from across its business. The team provides internal as well as external stakeholders assurance while confidential data is being handled to meet business objectives.
ISG takes care of implementing, maintaining and reporting of Information Security and its posture using a combination of Policies, Procedures, Guidelines and Cyber Security technology controls on an ongoing basis. The team comprises of two Groups,
1. Cyber Security Governance, Risk and Compliance (GRC) and,
2. Cyber Security Technical Operations (TechOps)
Responsibilities
- In this role in CDC (under the TechOps group), you will be accountable for Incident Management in the organization and governance of the Managed Security Services Provider (MSSP) who provides 24x7 SOC services
- You will engage in periodic SOC governance interactions with the MSSP team to review the service level performance as well as quality of service overall
- You will work with the MSSP on alerts / incidents raised and reports shared to perform appropriate root cause analysis (RCA) and drive the necessary decision workflows for incident investigations and/or management reporting
- You will coordinate with stakeholders to implement required controls or their enhancements as deem fit basis the outcome of the RCA
- You will ensure global visibility of the organizational landscape for complete collection of relevant security telemetry for ongoing SOC analysis and alerts
- You will pursue industry leading solutions to consider embedding capabilities of Threat Hunting, Cyber Threat Intelligence (CTI) into SIEM to be able to independently review and correlate Indicators of Compromise (IoCs), Common Vulnerabilities and Exposures (CVEs), learnings from Dark Web and relevant cyber events in relation to the organizations environment for proactive threat identification, response and prevention; And contribute to the continuous improvement program of security controls posture
- You will monitor organizational security posture from a real-time, external security benchmarking perspective to proactively identify security issues and drive mitigations for the same in coordination with relevant stakeholders
- You will keep abreast with the latest events pertaining to the Global Cyber Security Threat landscape so as to consider critical Cyber Security stack upgrades for the organization on priority and closely work with Security Engineering to pilot, shortlist and implement the required tools to meet the Cyber Security objectives from a CDC standpoint
- You will ensure a comprehensive Incident Management Policy and Process is built and institutionalized
- You will focus on raising awareness through periodic publishing of Global Cyber Security Threat Landscape Trends and Analysis to key stakeholders
- In coordination with Governance, Risk and Compliance (GRC) team, conduct periodic Cyber Security Table Top Exercises (TTE) and simulations to assess the organizations preparedness on Cyber Resilience and associated control enhancement exercises to help address any identified gaps from the same
- Coordinate with and/or be the liaison for Customers and Government bodies (e.g.: CERT-In) on all matters pertaining to Cyber Security Incident Management
- You will build a comprehensive CDC Metrics initiative which will be used for CDC reviews and CISO reporting
- You will participate in functional and group level meetings with stakeholders and provide your subject matter expertise and leadership as deem fit
- You will be able to evaluate emerging security technologies by conducting Proof of Concepts (POCs) for CDC specific products and platforms.
- You will contribute to developing automation strategies to streamline repetitive SOC workflows.
- You will contribute to building centralized threat intelligence platform for better visualisation of the reputation checks.
- Maintain a knowledge base of automated workflows, POC results, and best practices / lessons learnt for the CDC team.
Knowledge expectations
- You come with up to 5 years of working experience in Information Security
- You come with valuable working knowledge of building and/or operating within a 24x7 SOC environment
- You have good experience in conducting full lifecycle of incident investigation till its closure, including evidence chain of custody, conducting related interviews, stakeholder liaisoning, forensic investigations and report generation
- You are well versed with the Lockheed Martin Cyber Kill Chain, MITRE ATT&CK; Framework and Incident Response in alignment with ISO 27035 together with all relevant SOC Policies and Procedures
- You have good working knowledge in analysing CTI, performing Threat Hunting, Dark web monitoring, creating intelligent playbooks and handling SOC teams to help identify and respond to cyber threats as well as recover from the same
- You are well versed with Security Orchestration, Automation and Response (SOAR) technologies to be able to assess SOC Analyst performance and investigation steps so they may be considered for appropriate playbook automation and drastically improve Analyst performance
- You have a good understanding of various leading Information Security Standards and Frameworks such as, but not limited to, Information Security Management System (ISO 27001), NIST Cyber Security Framework (NIST), NIST 800-53, PCI DSS, HIPAA, SSAE-18 SOC 1 or SOC 2 and SoX controls, having directly or indirectly been part of such implementations over the years
- You have a good understanding of essential security controls in one or more of the following Cloud platforms Microsoft Azure, Amazon Web Services (AWS), Google Cloud Platform (GCP)
- You have basic knowledge about adversary emulation, tabletop exercises
Required education and certifications
- You are an Engineering graduate, have an equivalent or higher education
- You have acquired one or more of the following certifications CISSP, CISM, CCSP, ISO 27001 Lead Implementer / Auditor, Azure, AWS and GCP Certifications
Skill expectations and others
- You come with a mix of technical, analytical and problem-solving skills
- You have great attention to detail, strong communication and collaboration skills
- You come with a mindset of always improving the Information Security Program
- You are an avid learner which you continuously look at imbibing and applying on the job
- You are a self-starter, a go getter and an innovative thinker with a positive attitude
Confidential 1
📌 Consultant- Cyber Defense Center (Bengaluru)
🏢 Tredence
📍 Bengaluru