11 Sep
|
Tata Consultancy Services
|
Karnataka
11 Sep
Tata Consultancy Services
Karnataka
Job DescriptionCompany: TCS
NSkill: Threat Hunting / Modeling
NExperience: 6 to 15 Years
NLocation: Bengaluru
NInterview Mode: Face to Face (Walkin) Interview
NDate: 29th Aug 2026(Saturday)
NJob description:
NProactive Threat Hunting
N
n
- Conduct hypothesis-driven and data-driven threat hunting across endpoints, networks, cloud, and identity systems.
N
- Identify anomalous behaviors, TTPs, and indicators of compromise using MITRE ATT&CK; and threat intel sources.
N
- Perform deep-dive investigation into suspicious activities, lateral movement, privilege escalation, and persistence techniques.
N
nAnalysis & Detection Engineering
N
n
- Analyze logs, telemetry, and events from SIEM, EDR, XDR, NDR, Firewall, and Cloud security tools.
N
- Develop new detection rules, signatures, and behavioral analytics to improve SOC detection capabilities.
N
- Validate, tune, and optimize detection logic to reduce false positives.
N
nThreat Intelligence Integration
N
n
- Consume threat intel reports, IOCs, malware analysis feeds, and emerging threat trends.
N
- Translate threat intel into actionable hunting queries, playbooks, and detection rules.
N
nIncident Response Support
N
n
- Collaborate with SOC Analysts and Incident Response teams during investigations.
N
- Provide recommendationsfor containment, remediation, and hardening.
N
- Perform root-cause analysis on identified threats.
N
nReporting & Documentation
N
n
- Prepare detailed hunt reports, findings, and risk insights for leadership.
N
- Document recent hunting methodologies, playbooks, and detection logic.
N
nRequired Skills and Qualifications
N
n
- Experience in Threat Hunting, SOC, Incident Response, or Cyber Defense.
N
- Strong understanding of:
N
- MITRE ATT&CK; Framework.
N
- Windows/Linux internals.
N
- Network protocols (TCP/IP, DNS, HTTP, etc.).
N
- Cloud platforms (AWS, Azure, GCP).
N
- Hands-on experience with SIEM/EDR/XDR tools such as:
N
- Splunk, Sentinel, QRadar, ELK.
N
- CrowdStrike, Defender ATP, Tanium, Carbon Black, Palo Alto Cortex.
N
- Ability to write complex queries using:
N
- KQL, SQL, SPL, YARA, Sigma rules.
N
- Experience analyzing malicious files, scripts, and techniques used by APT groups.
N
- Strong analytical, investigative, and problemsolving skills.
N
📌 Hiring: Threat Hunting (Karnataka)
🏢 Tata Consultancy Services
📍 Karnataka