Get more replies from employers
Send a job-specific resume in minutes.
SES S.A Brazil is seeking a Chief Analyst in Chennai to lead Cyber Security Operations. This role drives security monitoring across SIEM, EDR, and SOAR, designs detection use cases, and guides incident response initiatives.
You will oversee malware analysis, forensics, and threat intelligence integration across Windows, Linux, cloud, and enterprise environments. The position requires 6–10 years in security operations, strong leadership, and fluent English.
Requisition Number: 20309
Contract Type: Permanent
Location(s): Chennai, IN
Security Monitoring, Detection Engineering and Threat Hunting
Own and continuously improve security monitoring capabilities across SIEM, EDR, SOAR and related security platforms. Lead the design, implementation, tuning and lifecycle management of detection use cases to improve visibility across endpoint, network, cloud, identity and application environments.
Drive improvements in detection logic, correlation rules, log onboarding, alert quality and operational runbooks to ensure effective and actionable monitoring. Partner with technology teams to onboard and validate security telemetry and support proactive threat hunting activities using threat intelligence, attacker techniques and operational insights.
Incident Response and Technical Leadership
Act as the lead technical authority for high-impact and complex security incidents. Manage investigations from initial triage through containment, eradication, recovery and post-incident review while ensuring timely, coordinated and effective response actions.
Provide expert guidance during critical incidents, support the on-call function, and continuously improve incident response processes, playbooks, escalation paths and operational readiness.
Digital Forensics, Malware Analysis and Reverse Engineering
Lead advanced technical investigations across Windows, Linux, cloud and enterprise environments. Conduct and oversee digital forensic activities, including evidence preservation, collection, analysis and interpretation.
Provide hands-on expertise in malware analysis, malware deconstruction and reverse engineering. Analyse suspicious files, identify attacker techniques and indicators of compromise, and translate findings into improved detections, threat intelligence, containment strategies and analyst training.
Serve as the technical lead for complex malware investigations and guide analysts through advanced forensic and reverse engineering activities when required.
Security Operations Maturity and Automation
Drive the continuous improvement of Cyber Security Operations capabilities, processes and tooling. Own the lifecycle of automation playbooks and use cases to improve efficiency, scalability and response effectiveness.
Automate and optimize security operations platforms, including SIEM, SOAR, EDR, sandboxes and forensic tooling. Use scripting and automation to reduce manual effort, accelerate investigations and improve operational outcomes.
Vulnerability Management and Technical Risk Review
Support and enhance the vulnerability management program by identifying, prioritizing and tracking vulnerabilities across systems, applications and services.
Provide technical risk assessments, remediation guidance and vulnerability prioritization based on exploitability, threat intelligence, business impact and asset criticality. Support vulnerability review forums, remediation tracking and compliance-related activities.
Threat Intelligence and Security Improvement
Collect, analyse and operationalize threat intelligence from incidents, malware investigations, threat feeds and other relevant sources.
Ensure intelligence is transformed into actionable improvements across monitoring, detection engineering, incident response, threat hunting and vulnerability management. Share relevant intelligence with internal stakeholders and external partners where appropriate.
Analyst Development and Knowledge Transfer
Act as a technical mentor and role model for the Cyber Security Operations team. Coach analysts during investigations, improve investigation quality standards and support consistent technical practices across the team.
Develop training material, knowledge articles, operational guidance and structured learning programs. Lead by example through hands‑on technical work while helping analysts build expertise in incident response, forensics, malware analysis, detection engineering and security operations technologies.
Documentation and Stakeholder Engagement
Create and maintain policies, procedures, playbooks, runbooks and technical documentation that support Cyber Security Operations activities.
Work closely with stakeholders across the organization to communicate risks, investigation findings and remediation recommendations. Translate complex technical issues into clear and actionable information for both technical and non-technical audiences.
Required
SES and its Affiliated Companies are committed to providing fair and equal employment opportunities to all. We are an Equal Opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, gender, pregnancy, sex, sexual orientation, gender identity, national origin, age, genetic information, protected veteran status, disability, or any other basis protected by local, state, or federal law.