Upload Button Icon Add office photos
filter salaries All Filters

716 Piktorlabs Jobs

Incident Response Senior Analyst

5-7 years

Pune

1 vacancy

Incident Response Senior Analyst

Piktorlabs

posted 1hr ago

Job Description

The Cybersecurity Incident Management and Response Team is charged with efficiently and effectively handling all information and cybersecurity incidents across the Group on a 24x7 basis.

The Incident Management and Response function is further organised into two primary missions:

Incident Management: The coordination and orchestration of technical response activities across the globe, the timely and effective communication of the aforementioned to Global Business and Function stakeholders, Senior Executive Leadership and regulatory bodies.

Incident Response: Conducting technical and forensic investigations into matters raised through s, intelligence, testing activities and end user reports that lead to a coordinated effort to effectively contain, mitigate and remediate active and potential attacks.

The Cybersecurity Incident Response Lead Analyst is accountable for:

Performing the technical and forensic investigations into cyber security events across the globe, taking responsibility for the timely identification of cyber-threats and where possible, minimising further risk to information assets and services.

Carrying out post-incident reviews, assessing the effectiveness of controls, detection and response capability and supporting the required improvements with the responsible owners.

Performing the forensic services for the collection, processing, preservation, analysis, and presentation of evidence in support of vulnerability mitigation and information security incident investigations.

Collaboration with the wider GCO teams (and wider business/function teams where applicable) in the production and maintenance of efficient and effective incident response playbooks.

Supporting the Identification, development and implementation of new detections (Use cases).

Developing and defining detailed processes and procedures to manage the response to cyber security events.

Directly contributing to the continued technical enhancement of the security platforms.

Supporting the continued evolution of incident response and forensic capabilities and processes, including automation and orchestration.

Training and developing other members of the Incident Management and Response team as well as other members of the Global Cybersecurity Operations function.

Supporting a self-critical culture whereby identification of weaknesses in the bank s control plane (people, process and technology) are brought to light in an effective manner and addressed.

Supporting a culture of individual self-improvement whereby staff are expected to maintain subject matter expertise within their area of focus and within the realm of cybersecurity more broadly.

Production of Management Information related to the CSIRT mission that is appropriate to the target audience, supported by data and experienced analysis enabling informed decisions.

Skills

An understanding of business needs and commitment to delivering high-quality, prompt and efficient service to the business.

An understanding of organisational mission, values and goals and consistent application of this knowledge.

Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one.

An ability to perform independent analysis of complex problems and distill relevant findings and root causes.

An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily-understood, authoritative and actionable manner.

A team-focused mentality with the proven ability to work effectively with diverse stakeholders.

Self-motivated and possessing of a high sense of urgency and personal integrity.

Highest ethical standards and values.

Good understanding of cyber security principles, global financial services business models, regional compliance regulations and applicable laws.

Good understanding and knowledge of common industry cyber security frameworks, standards and methodologies, including; OWASP, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards.

Proven ability and experience of working in a high-pressure, fast paced environment where bold, time critical decision making is essential.

Proven experience in identifying and responding to advanced attacker methodologies both within the corporate environment as well as external attack infrastructures, ideally with offensive experience and / or deception environment development (tripwire systems, honeypots, honey-token/accounts, etc.) using open source, vendor purchased and bespoke/in-house developed solutions.

Proven experience in crisis management, crisis response frameworks and communications.

Ability to speak, read and write in English, in addition to your local language.

Technical Skills

Excellent knowledge and demonstrated experience of common cybersecurity technologies such as; IDS / IPS / HIPS, Advanced Anti-malware prevention and analysis, Firewalls, Proxies, MSS, etc.

Excellent knowledge of common network protocols such as TCP, UDP, DNS, DHCP, IPSEC, HTTP, etc. and network protocol analysis suits.

Excellent knowledge of common enterprise technology infrastructure, platforms and tooling, including; Windows, Linux, infrastructure management and networking hardware.

Excellent knowledge and demonstrated experience in common cybersecurity incident response and forensic investigation tools such as: EnCase, FTK, Sleuthkit, Kali Linux, IDA Pro, DEFT, SANS SIFT, etc.

Very good knowledge and demonstrated experience in analysis and dissection of advanced attacker tactics, techniques and procedures in order to inform adjustments to the control plane.

Very good knowledge and demonstrated experience of common log management suites, Security Information and Event Management (SIEM) tools, use of Big Data and Cloud-based solution for the collection and real-time analysis of security information.

Good knowledge of common mobile platforms, such as Blackberry, iOS, Android and Windows.

Good knowledge of scripting, programming and/or development of bespoke tooling or solutions to solve unique problems.

Some knowledge and technical experience of 3 rd party cloud computing platforms such as AWS, Azure and Google.

Industry Experience and Qualifications

Candidates will be evaluated primarily upon their ability to demonstrate the competencies required to be successful in the role, as described above. For reference, the typical work experience and educational background of candidates in this role are as follows:

5+ years of experience in incident response and/or computer forensics

Extensive experience within an enterprise scale organisation; including hands-on experience of complex data centre environments, preferably in the finance or similarly regulated sector

Industry recognised cyber security related certifications including; CEH, EnCE, CRISC, SANS GSEC, GCIH, GCIA, GIAC, GCFA, GNFA, GASF and/or CISSP.

Formal education and advanced degree in Information Security, Cyber-security, Computer Science or similar and/or commensurate demonstrated work experience in the same.


Employment Type: Full Time, Permanent

Read full job description

Prepare for Senior Analyst roles with real interview advice

What people at Piktorlabs are saying

What Piktorlabs employees are saying about work life

based on 12 employees
73%
100%
90%
100%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

Piktorlabs Benefits

Work From Home
Team Outings
Health Insurance
Free Transport
Child care
Gymnasium +6 more
View more benefits

Compare Piktorlabs with

TCS

3.7
Compare

Accenture

3.9
Compare

Wipro

3.7
Compare

Cognizant

3.8
Compare

Capgemini

3.8
Compare

HDFC Bank

3.9
Compare

ICICI Bank

4.0
Compare

Infosys

3.7
Compare

HCLTech

3.5
Compare

Tech Mahindra

3.6
Compare

Genpact

3.9
Compare

Teleperformance

3.9
Compare

Concentrix Corporation

3.8
Compare

Axis Bank

3.8
Compare

Amazon

4.1
Compare

Jio

3.9
Compare

Reliance Retail

3.9
Compare

IBM

4.1
Compare

iEnergizer

4.7
Compare

LTIMindtree

3.9
Compare

Similar Jobs for you

Incident Response Analyst at CENTRIC SOFTWARE INC

Kolkata, Mumbai + 5

3-5 Yrs

₹ 5-7 LPA

Security Analyst at Lam Research

Bangalore / Bengaluru

3-7 Yrs

₹ 9-13 LPA

Manager at ABBYY

Kolkata, Mumbai + 5

3-6 Yrs

₹ 5-8 LPA

Specialist at Bottomline Media Pvt Ltd

Kolkata, Mumbai + 5

1-5 Yrs

₹ 3-6 LPA

Specialist at Bottomline

Kolkata, Mumbai + 5

1-5 Yrs

₹ 3-7 LPA

Security Engineer at Kong

Bangalore / Bengaluru

2-5 Yrs

₹ 4-7 LPA

Senior Advisor at Dell International Services India Private Limited

Bangalore / Bengaluru

8-13 Yrs

₹ 10-15 LPA

Incident Response Analyst at Sprinklr Solutions Pvt Ltd

Gurgaon / Gurugram

1-5 Yrs

₹ 4-8 LPA

Incident Response Analyst at Sprinklr Solutions Pvt Ltd

Gurgaon / Gurugram, Bangalore / Bengaluru

1-5 Yrs

₹ 4-8 LPA

Incident Response Analyst at Monks Property

Noida

2-5 Yrs

₹ 5-8 LPA

Incident Response Senior Analyst

5-7 Yrs

Pune

11hr ago·via naukri.com

Presales Solution Architect

15-20 Yrs

Thiruvananthapuram

7hr ago·via naukri.com

GRC Solution Lead

15-20 Yrs

Thiruvananthapuram

7hr ago·via naukri.com

IT Infrastructure Presales Solution Architect

15-20 Yrs

Thiruvananthapuram

7hr ago·via naukri.com

Delivery Manager - IT Infrastructure

15-20 Yrs

Thiruvananthapuram

7hr ago·via naukri.com

SOC Analyst - Microsoft Azure

3-6 Yrs

Thiruvananthapuram

7hr ago·via naukri.com

QA Automation Engineer - C#, Selenium, MSTest

5-7 Yrs

Thiruvananthapuram

11hr ago·via naukri.com

Developer III - Software Engineering

3-5 Yrs

Thiruvananthapuram

11hr ago·via naukri.com

NoSQL Database Administrator - Couchbase/DataStax

5-7 Yrs

Bangalore / Bengaluru

11hr ago·via naukri.com

Infrastructure Transition Manager

12-15 Yrs

Thiruvananthapuram

11hr ago·via naukri.com
write
Share an Interview