Engineer III - Cyber Incident Response (Pune)

Engineer III - Cyber Incident Response (Pune)

30 Aug
|
Amerisource Bergen
|
Pune

30 Aug

Amerisource Bergen

Pune

Job Summary

The Engineer III, Cyber Incident Response, is a senior technical role within the Security Operations Center (SOC) responsible for leading complex incident investigations and supporting the continuous improvement of detection and response capabilities. This role provides advanced technical expertise in identifying, analyzing, containing, and remediating cyber threats. The Engineer III will act as a mentor to junior analysts, serve as an escalation point for critical incidents, and collaborate with global cyber defense teams to ensure timely and effective responses to advanced threats.

Primary Duties and Responsibilities

- Lead the investigation and resolution of complex security incidents, including advanced persistent threats, ransomware, phishing campaigns, and insider activities.
- Perform forensic analysis across endpoints, networks, and cloud environments to identify root causes and scope of compromise.
- Develop and enhance incident response playbooks, runbooks, and detection use cases.
- Collaborate with threat intelligence, vulnerability management, and countermeasures teams to strengthen defenses.
- Escalate high-severity incidents to senior leadership and provide clear, actionable reporting.
- Act as a technical escalation point for Engineer I/II analysts during incident investigations.
- Contribute to red team and purple team exercises to validate and improve response capabilities.
- Participate in after-action reviews and lessons-learned sessions to improve SOC processes.




- Mentor and train junior engineers on incident response best practices and investigative techniques.

Education and Qualifications

- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience; Master's degree preferred.
- Robust knowledge of incident response methodologies, digital forensics, and adversary tactics.
- Familiarity with security frameworks such as NIST, MITRE ATT&CK;, and ISO 27035.

Preferred Certifications

- GIAC Certified Incident Handler (GCIH)
- GIAC Certified Intrusion Analyst (GCIA)
- GIAC Certified Forensic Analyst (GCFA)
- Certified Ethical Hacker (CEH)
- Certified Information Systems Security Professional (CISSP)

Work Experience

- 7+ years of progressive experience in cybersecurity, with at least 4 years in incident response or SOC operations.
- Hands-on experience with SIEM, EDR, SOAR, and forensic tools (e.g., Splunk, CrowdStrike, EnCase, Wireshark).
- Proven ability to investigate advanced threats and coordinate response activities across teams.
- Demonstrated success in mentoring junior analysts and improving SOC processes.
- Robust written and verbal communication skills with the ability to document and present technical findings clearly.

Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.

📌 Engineer III - Cyber Incident Response (Pune)
🏢 Amerisource Bergen
📍 Pune

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: engineer iii - cyber incident response (pune) / pune