14 Sep
|
Tata Consultancy Services
|
Bengaluru
14 Sep
Tata Consultancy Services
Bengaluru
Company: TCS /n Skill: Threat Hunting / Modeling /n Experience: 6 to 15 Years /n Location: Bengaluru /n Interview Mode: Face to Face (Walkin) Interview /n Date: 29th Aug 2026(Saturday) /n /n : /n /n Proactive Threat Hunting /n /n
Conduct hypothesis-driven and data-driven threat hunting across endpoints, networks, cloud, and identity systems.
/n
Identify anomalous behaviors, TTPs, and indicators of compromise using MITRE ATT&CK; and threat intel sources.
/n
Perform deep-dive investigation into suspicious activities, lateral movement, privilege escalation, and persistence techniques.
/n /n Analysis & Detection Engineering /n /n
Analyze logs, telemetry, and events from SIEM, EDR, XDR, NDR, Firewall, and Cloud security tools.
/n
Develop recent detection rules, signatures, and behavioral analytics to improve SOC detection capabilities.
/n
Validate, tune, and optimize detection logic to reduce false positives.
/n /n Threat Intelligence Integration /n /n
Consume threat intel reports, IOCs, malware analysis feeds, and emerging threat trends.
/n
Translate threat intel into actionable hunting queries, playbooks, and detection rules.
/n /n Incident Response Support /n /n
Collaborate with SOC Analysts and Incident Response teams during investigations.
/n
Provide recommendations for containment, remediation, and hardening.
/n
Perform root-cause analysis on identified threats.
/n /n Reporting & Documentation /n /n
Prepare detailed hunt reports, findings, and risk insights for leadership.
/n
Document recent hunting methodologies, playbooks, and detection logic.
/n /n Required Skills and Qualifications /n /n
Experience in Threat Hunting, SOC, Incident Response, or Cyber Defense.
/n
Solid understanding of:
/n
MITRE ATT&CK; Framework.
/n
Windows/Linux internals.
/n
Network protocols (TCP/IP, DNS, HTTP, etc.).
/n
Cloud platforms (AWS, Azure, GCP).
/n
Hands-on experience with SIEM/EDR/XDR tools such as:
/n
Splunk, Sentinel, QRadar, ELK.
/n
CrowdStrike, Defender ATP, Tanium, Carbon Black, Palo Alto Cortex.
/n
Ability to write complex queries using:
/n
KQL, SQL, SPL, YARA, Sigma rules.
/n
Experience analyzing malicious files, scripts, and techniques used by APT groups.
/n
Strong analytical, investigative, and problemsolving skills.
/n
📌 Threat Hunting Bengaluru
🏢 Tata Consultancy Services
📍 Bengaluru