08 Sep
|
FetchJobs.co
|
India
08 Sep
FetchJobs.co
India
About The Company
Insight Global is a leading staffing and workforce solutions provider dedicated to connecting top-tier talent with innovative organizations across various industries. Renowned for our commitment to excellence and client satisfaction, we specialize in delivering tailored staffing solutions that meet the dynamic needs of today's business landscape. Our global presence, combined with our deep industry expertise, enables us to foster long-term partnerships and support our clients' growth and success.
About The Role
We are seeking an experienced Cybersecurity Incident Response Lead to join our team at Insight Global. In this critical role, you will be responsible for managing and leading the investigation and response to complex cybersecurity incidents. Your expertise will be vital in safeguarding our organization’s digital assets, ensuring rapid containment and remediation of security breaches, and minimizing business impact.
The ideal candidate will possess a comprehensive understanding of threat landscapes, incident handling methodologies, and advanced forensic techniques. This position requires a strategic thinker with excellent communication skills, capable of coordinating cross-functional teams during high-pressure situations. The role is designated for night shifts, aligning with our global operational needs, and offers an opportunity to work in a dynamic, fast-paced cybersecurity environment.
Qualifications The ideal candidate will hold a bachelor’s degree in Cybersecurity, Information Security, Computer Science, or a related field, complemented by over 10 years of professional experience in cybersecurity, particularly within Security Operations Centers (SOC) and incident response functions. Proven leadership in investigating major security incidents and breaches is essential. Candidates should demonstrate a strong grasp of incident response methodologies, attacker Tactics, Techniques, and Procedures (TTPs), and forensic investigation techniques.
Experience working in enterprise or global environments with complex security architectures is required. Familiarity with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or Elastic, and Endpoint Detection and Response (EDR) tools like Microsoft Defender, CrowdStrike, or SentinelOne is necessary. Proficiency in scripting languages such as Python, PowerShell, Bash, or query languages like KQL and SPL is also important.
Certifications such as GIAC GCIH, GCFA, GCED, CISSP, CSA, or Microsoft Security Operations Analyst are preferred, along with SANS Incident Response training or equivalent.
Responsibilities
As a Cybersecurity Incident Response Lead, your core responsibilities will include leading the investigation and response efforts for major cybersecurity incidents such as ransomware attacks, phishing campaigns, insider threats, malware infections, credential compromises, and data breaches. You will perform incident triage, analysis, containment, eradication, recovery, and post-incident activities to ensure swift resolution and minimal impact. Conducting root cause and impact analysis will be crucial to identify attack vectors, affected systems, and business consequences.
You will analyze security alerts, logs, network traffic, endpoint telemetry, cloud activity, and threat intelligence to determine the scope and severity of incidents.
You will utilize advanced security tools including SIEM, EDR, NDR, cloud security solutions, and email security platforms to investigate and respond effectively. Correlating data across multiple technologies will help uncover malicious activity, reconstruct attack timelines, and understand threat actor behaviors.
Threat hunting activities, along with identifying indicators of compromise (IOCs) and attacker TTPs, will be part of your proactive approach.
Serving as the technical lead during major incidents, you will coordinate response efforts across cybersecurity, infrastructure, cloud, application, legal, privacy, compliance, and business teams. Clear communication, including incident updates, executive briefings, and regulatory reporting, will be essential. You will develop, maintain, and optimize incident response playbooks, runbooks, and standard operating procedures to enhance operational efficiency.
Additionally, you will design and implement automation workflows using SOAR platforms to streamline investigations and responses, continuously improving detection rules, use cases, and response processes based on lessons learned and threat intelligence.
Benefits
Insight Global offers a comprehensive benefits package designed to support our employees' health, well-being, and professional growth. Our package includes competitive salary structures, health insurance plans, retirement savings options, paid time off, and opportunities for continuous learning and development. We foster a collaborative and inclusive work environment that encourages innovation, leadership, and career advancement.
Employees also benefit from flexible work arrangements and access to cutting-edge cybersecurity tools and resources, enabling them to stay at the forefront of industry developments.
Equal Chance
Insight Global is an equal opportunity employer committed to fostering an inclusive environment for all employees. We do not discriminate based on race, color, religion, gender, gender identity or expression, sexual orientation, national origin, age, disability, or any other protected characteristic under applicable law. We believe diversity drives innovation and are dedicated to providing equal employment opportunities to all qualified candidates.
📌 Cyber Security Engineer (India)
🏢 FetchJobs.co
📍 India