Key Responsibilities:
Security Operations Leadership : Lead the Security Operations Center (SOC) team, ensuring effective monitoring, detection, and response to security threats.
Incident Response & Investigation: Act as an incident responder, managing security incidents from detection to resolution, including RCA and corrective actions.
Threat Intelligence & Hunting: Utilize threat intelligence, threat hunting techniques, and forensic analysis to proactively detect and mitigate threats.
Cloud Security Expertise: Oversee and enforce AWS native security controls, monitor cloud environments, and provide security guidance on cloud-based applications.
Endpoint & Network Security: Leverage CrowdStrike, XDR, and Zscaler for endpoint and network protection.
Email & API Security: Manage and secure email platforms using Proofpoint and safeguard API security with WAF solutions.
IoT Security Monitoring: Ensure security monitoring and compliance for IoT devices and infrastructure.
Compliance & Best Practices: Align security strategies with industry standards and best practices (e.g., NIST, CIS, ISO 27001).
Continuous Improvement: Drive security enhancements, develop playbooks, and improve response automation. Crisis Management & 24/7 Availability: Be available during security crises, ensuring rapid containment and mitigation of threats.
Required Skills & Qualifications:
8–10 years of experience in Security Operations, Incident Response, and Cloud Security with Degree – Bachelors of Engineering/B.Tech in Computer Science.
Strong expertise in AWS Security Services, XDR, CrowdStrike, Zscaler, Proofpoint, Defender, WAF, API Security.
Experience in threat hunting, threat intelligence, and security investigations.
Hands-on experience with security event analysis, forensics, and incident management. Knowledge of network security, IAM, SIEM, and automation tools.
Experience with IoT security monitoring and cloud-based SOC operations. Strong analytical and problem-solving skills. Certifications such as CISSP, CHFI, GCIH, AWS Security Specialty are highly preferred. Ability to work in a fast-paced, high-pressure environment with 24/7 availability during crises.
Preferred Qualifications:
Experience working in large-scale enterprise security environments.
Familiarity with DevSecOps, container security, and microservices security.
Proficiency in scripting and automation for security operations.
If you are a security enthusiast with deep expertise in cloud security, incident response, and security operations, we’d love to hear from you! Apply now to be a key player in our security team!