01 Sep
|
Acme Services Private
|
Panvel
01 Sep
Acme Services Private
Panvel
Job Description:
- Lead end-to-end investigation of highly complex, multi-vector security incidents, including advanced persistent threats (APT), insider threats, and cloud-native attacks in Telecom workplace.
- Perform expert-level SIEM Content creation, including creation, optimization, and validation of complex detection use cases across Microsoft Sentinel, LogRhythm, Palo Alto XSIAM, and other SIEM/XDR platforms.
- Conduct advanced threat hunting operations using proactive hypotheses, behavioural analytics, and intelligence driven techniques aligned with MITRE ATT&CK.;
- Execute deep forensic investigations across endpoint, network, cloud, and identity platforms to uncover stealthy attacker techniques, persistence mechanisms, and data exfiltration paths.
- Handle critical incident response activities, including containment strategy recommendations, evidence preservation, forensic acquisition, and post-incident root cause analysis.
- Design and implement advanced automation and enrichment workflows using scripting and SOAR capabilities to enhance detection capability and investigation efficiency.
- Design, develop, and maintain SOAR workflows to automate alert triage, response actions, and evidence collection.
📌 DFIR (Panvel)
🏢 Acme Services Private
📍 Panvel