06 Sep
|
FetchJobs.co
|
India
06 Sep
FetchJobs.co
India
About The Company
Insight Global is a leading talent solutions provider dedicated to connecting top-tier professionals with innovative organizations worldwide. With a strong emphasis on excellence, integrity, and collaboration, Insight Global has established itself as a trusted partner in workforce solutions across various industries. Our commitment to fostering a dynamic and inclusive work environment ensures that both our clients and candidates achieve their strategic goals.
As a company, we prioritize continuous growth, professional development, and delivering exceptional service to meet the evolving needs of the global market.
About The Role
We are seeking a highly experienced Cybersecurity Incident Response Lead to join our team at Insight Global. This role is pivotal in managing and mitigating complex cybersecurity incidents, including ransomware attacks, phishing campaigns, insider threats, malware infections, credential compromises, and data breaches. The successful candidate will serve as the technical authority during major security events, orchestrating response efforts, conducting thorough investigations, and implementing strategic remediation measures.
This position requires a proactive approach to threat detection, incident management, and continuous improvement of security protocols within a fast-paced, enterprise environment. The role is designated for night shift operations, demanding flexibility and commitment to ensuring 24/7 security readiness.
Qualifications The ideal candidate will possess a bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a closely related field. A minimum of 10 years of extensive experience in cybersecurity, particularly within Security Operations Centers (SOCs) and incident response functions, is essential. Proven expertise in leading investigations of major security incidents and breaches is required, along with a deep understanding of incident response methodologies, attacker tactics, and forensic investigation techniques.
Candidates should have experience working in complex, enterprise or global security infrastructures and demonstrate the ability to coordinate technical and non-technical stakeholders during high-pressure scenarios.
Proficiency with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, Elastic, or LogRhythm, and Endpoint Detection and Response (EDR) tools like Microsoft Defender, CrowdStrike, SentinelOne, or Carbon Black is mandatory. Strong scripting skills in languages such as KQL, SPL, Python, PowerShell, or Bash are highly desirable.
Experience with API integrations and workflow automation to enhance incident response processes is also important. Preferred certifications include GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA), GIAC Certified Enterprise Defender (GCED), CISSP, Certified SOC Analyst (CSA), and Microsoft Security Operations Analyst Associate. Prior SANS Incident Response training or equivalent credentials are advantageous.
Responsibilities The key responsibilities for this role encompass leading the investigation and response to major cybersecurity incidents, ensuring swift containment and eradication of threats. The candidate will perform incident triage, analysis, containment, recovery, and post-incident activities, providing comprehensive root cause and impact analysis to identify attack vectors, affected systems, and business implications. Analyzing security alerts, logs, network traffic, endpoint telemetry, cloud activity, and threat intelligence forms a core part of the role, enabling accurate assessment of incident scope.
Utilizing advanced security tools such as SIEM, EDR, NDR, cloud security, email security, and identity security platforms, the candidate will investigate and respond to security events effectively. Correlating data across multiple security technologies to identify malicious activity, reconstruct attack timelines, and understand threat actor behaviors is vital. Conducting proactive threat hunting activities, identifying Indicators of Compromise (IOCs), and understanding attacker Tactics, Techniques, and Procedures (TTPs)
will be integral to maintaining a robust security posture.
The role also involves serving as the technical lead during major incidents, coordinating efforts across cybersecurity, infrastructure, cloud, application, legal, privacy, compliance, and business teams. Clear communication of incident status, updates, and executive briefings is essential, along with thorough documentation and regulatory reporting. The candidate will develop, maintain, and optimize incident response playbooks, runbooks, and standard operating procedures, continuously improving processes based on lessons learned and emerging threats.
Additionally, designing and implementing automation workflows and SOAR integrations will enhance investigation efficiency and response consistency. Creating and refining detection rules, use cases, and response strategies, while driving continuous improvement through trend analysis and threat intelligence, will be key to maintaining an effective security operations environment.
Benefits
Insight Global offers a comprehensive benefits package designed to support the health, well-being, and skilled growth of our employees.
Benefits include competitive salary packages, health insurance plans, retirement savings options, paid time off, and opportunities for ongoing training and certification. We also provide a collaborative work environment that fosters innovation, diversity, and inclusion. Our commitment to employee development is reflected through various learning programs, mentorship opportunities, and career advancement pathways.
Working with Insight Global means being part of a dynamic team dedicated to making a meaningful impact in the cybersecurity landscape.
Equal Opportunity
Insight Global is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate based on race, color, religion, gender, sexual orientation, gender identity or expression, age, national origin, disability, veteran status, or any other protected characteristic.
We believe that diverse perspectives foster innovation and drive success, and we are dedicated to providing equal employment opportunities to all qualified candidates.
📌 Cyber Security Engineer (India)
🏢 FetchJobs.co
📍 India