06 Sep
|
FetchJobs.co
|
India
06 Sep
FetchJobs.co
India
About The Company
Insight Global is a leading workforce solutions provider dedicated to connecting top-tier talent with innovative organizations across various industries. With a strong emphasis on excellence, integrity, and customer satisfaction, Insight Global has established itself as a trusted partner in talent acquisition and workforce management. Our commitment to fostering a dynamic and inclusive work environment enables us to deliver customized staffing solutions that meet the evolving needs of our clients.
We pride ourselves on our extensive industry expertise, global reach, and a dedicated team passionate about enabling success for both our clients and candidates.
About The Role
We are seeking an experienced Cybersecurity Incident Response Lead to join our dynamic security team at Insight Global. In this critical role, you will be at the forefront of defending our organization against complex cyber threats and incidents. Your expertise will be essential in leading investigations, coordinating incident response efforts, and implementing strategic security measures to safeguard our digital assets.
This position requires a highly skilled professional with a deep understanding of cybersecurity operations, incident management, and threat intelligence, capable of working under pressure and providing clear guidance during high-stakes situations. As a Night Shift role, you will be pivotal in maintaining the security posture of our organization during off-hours, ensuring continuous protection and rapid response to emerging threats.
Qualifications The ideal candidate will possess a minimum of a Bachelor's degree in Cybersecurity, Information Security, Computer Science, or a related field, coupled with over 10 years of extensive experience in cybersecurity, particularly within Security Operations Centers (SOC) and Incident Response functions. Proven experience in leading major cybersecurity investigations and breach responses is essential. Candidates should have a comprehensive understanding of incident response methodologies, attacker tactics, forensic investigation techniques,
and experience working in complex enterprise or global environments.
Proficiency with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or Elastic, as well as Endpoint Detection and Response (EDR) tools like Microsoft Defender, CrowdStrike, or SentinelOne, is required. Robust scripting skills (KQL, SPL, Python, PowerShell, Bash) and experience with API integrations and automation workflows are highly desirable.
Certifications such as GIAC GCIH, GCFA, GCED, CISSP, CSA, or Microsoft Security Operations Analyst are preferred, demonstrating your commitment to continuous professional development.
Responsibilities
As the Cybersecurity Incident Response Lead, your primary responsibilities will include:
- Leading the investigation and response to major cybersecurity incidents, including ransomware, phishing attacks, insider threats, malware infections, credential compromises, and data breaches.
- Performing incident triage, analysis, containment, eradication, recovery, and post-incident activities to minimize impact and prevent recurrence.
- Conducting root cause and impact analysis to identify attack vectors, affected systems, and overall business impact.
- Analyzing security alerts, logs, network traffic, endpoint telemetry, cloud activity, and threat intelligence to determine the scope and severity of incidents.
- Utilizing security tools such as SIEM, EDR, NDR, cloud security platforms, email security solutions, and identity security tools to investigate and respond effectively.
- Correlating data across multiple security technologies to identify malicious activity, reconstruct attack timelines, and uncover threat actor behavior.
- Engaging in proactive threat hunting activities to identify indicators of compromise (IOCs), attacker Tactics,
Techniques, and Procedures (TTPs).
- Serving as the technical lead during major incidents, coordinating response efforts across cybersecurity, infrastructure, cloud, application, legal, privacy, compliance, and business teams.
- Providing clear and timely incident communications, status updates, and executive briefings, along with maintaining thorough documentation and regulatory reporting.
- Developing, maintaining, and optimizing incident response playbooks, runbooks, and standard operating procedures to streamline response processes.
- Designing and implementing automation and SOAR workflows to enhance investigation efficiency, response consistency, and overall SOC effectiveness.
- Creating and refining detection rules, use cases, and response processes, continuously improving through lessons learned, threat intelligence, and incident trend analysis.
Benefits Insight Global offers a comprehensive benefits package designed to support the well-being and skilled growth of our employees. You will have access to competitive salary packages, health insurance plans, retirement savings options, and paid time off. We also provide opportunities for ongoing training and certification, fostering continuous learning and career advancement. Our inclusive work environment encourages collaboration, innovation, and a healthy work-life balance. Additionally, employees benefit from a supportive team culture, recognition programs, and access to resources that promote personal and professional development.
Equal Opportunity
Insight Global is committed to creating an inclusive environment where all employees and applicants are treated with respect and fairness. We are proud to be an equal opportunity employer, providing employment opportunities regardless of race, color, religion, gender, sexual orientation, gender identity or expression, age, national origin, disability, or veteran status. We believe diversity enhances our organization and are dedicated to fostering a workplace that reflects the diverse communities we serve.
📌 Cyber Security Engineer (India)
🏢 FetchJobs.co
📍 India