91±¬ÁÏ

    Para se manter informado(a) sobre novas vagas:
    Junte-se ¨¤ nossa Rede de Talentos

    Cyber Security Incident Response Senior Analyst

    Mumbai, Maharashtra, India

    Cyber Security Incident Response Senior Analyst

    • 202500507
    • Mumbai, Maharashtra, India
    • Fechamento em: Feb 7 2025

    Description

    Role:

    The Cyber Security Incident Response Senior Analyst will play a key role in managing and responding to security incidents within 91±¬ÁÏ¡¯s Cyber Security Incident Response Team. Responsibilities of this role will include:

    • Support the investigation of security incidents escalated from the SOC, ensuring timely containment, eradication, and recovery.
    • Collaborate in the development and refinement of incident response processes, playbooks, and workflows to enhance efficiency and consistency.
    • Perform initial analysis of security events, log data, and alerts to identify potential threats and determine the scope of incidents.
    • Work closely with other Cyber Defense teams, including SOC, Threat Hunting, and CTI, to ensure seamless information sharing and coordination during incidents.
    • Document incidents thoroughly and prepare post-incident reports, including root cause analysis and recommendations for improvement.
    • Monitor emerging threats, vulnerabilities, and attack trends to enhance incident detection and response capabilities.
    • Ensure all incident-handling activities comply with applicable regulations and internal policies.
    • Participate in root cause analysis and post-incident review meetings to ensure lessons learned are applied to future incidents.?
    • Ensure incident handling complies with relevant regulations and prepare detailed reports for regulatory or internal purposes.
    • Evaluate and prioritize incidents based on potential impact and severity, escalating issues to higher levels of management or other teams as required.
    • Assist in developing and fine-tuning automation scripts and workflows to enhance incident detection and response efficiency.
    • Contribute to the development and maintenance of key performance indicators (KPIs) and metrics to measure the effectiveness of incident response processes.
    • Act as a liaison between technical teams and business stakeholders, ensuring clear communication during incidents and status updates.

    Maintain up-to-date records of all incident handling activities in incident management systems, ensuring alignment with internal policies and audit requirements.

    Qualifications

    Requirement:

    We are looking for a candidate for?Cyber Security Incident Response who has the following:

    • Minimum 3 years of experience in incident response, with a strong understanding of cybersecurity principles, frameworks, and tools.
    • Proficient in forensic analysis, malware analysis, and network traffic analysis. Experience with SIEM tools, EDR platforms, and threat intelligence integration is essential.
    • Proven ability to deal with high-stakes security incidents and coordinate cross-functional teams effectively.
    • Good understanding of MITRE ATT&CK, cyber kill chain, and incident response methodologies.
    • Exceptional verbal and written communication skills, with the ability to convey complex technical concepts to non-technical audiences, including executives.
    • Industry certifications such as CISSP, GCIH, GCFA, or CISM are good to have.
    • Experience with platforms like Sentinel, Splunk, Carbon Black, or similar technologies.
    • A proactive and decisive mindset with the ability to operate under pressure.
    • Strong analytical and problem-solving skills to make informed decisions in complex situations.
    • Collaborative and adaptable, with a passion for mentoring and developing team members.

    Apply Now

    Voc¨º n?o?

    Obrigado

    Contato n?o solicitado

    Quaisquer curr¨ªculos n?o solicitados/perfis de candidatos enviados por meio de nosso site ou para contas de e-mail pessoais de funcion¨¢rios da Willis Towers Watson s?o considerados propriedade da Willis Towers Watson, n?o estando sujeitos ao pagamento de comiss?o. Para que uma Ag¨ºncia de Recrutamento/Empresa de Pesquisa seja autorizada pela Willis Towers Watson, ela deve ter um contrato formal por escrito, assinado por um recrutador autorizado da Willis Towers Watson, e uma rela??o de trabalho ativa com a organiza??o. Os curr¨ªculos devem ser enviados de acordo com nosso processo de inscri??o de candidatos, que inclui o envolvimento ativo na pesquisa espec¨ªfica. Da mesma forma, se o processo de inscri??o de candidatos n?o for seguido, nenhuma comiss?o ser¨¢ paga pela Willis Towers Watson para nossas ag¨ºncias de recrutamento/empresas de pesquisa autorizadas. A Willis Towers Watson ¨¦ um empregador de oportunidades iguais. Se voc¨º deseja que suas informa??es de contato sejam salvas para considera??o futura, envie um e-mail para:?Agency.inquiries@willistowerswatson.com .

    Nossos Escrit¨®rios

    Nossos colegas atendem mais de 140 pa¨ªses e mercados ao redor do mundo. Isso d¨¢ uma dimens?o global a tudo o que fazemos e cria muitas oportunidades interessantes para voc¨º colaborar e crescer. Explore o mapa abaixo para ver onde sua carreira pode lev¨¢-lo.

    Conhe?a nossa equipe