Cyber Defense Response Analyst III

INTEC CME India Pvt Ltd

Bengaluru

On-site

INR 1,200,000 - 2,000,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

The Cyber Defense Response Analyst III at CME Group is a mid-level security role focused on detecting, investigating, and remediating cyber incidents across a multi-cloud environment. You will harness top-tier tools and collaborate with global teams, while engaging in continuous learning through CME’s extensive training offerings.

You will drive incident response, conduct forensics, and contribute to runbooks and playbooks, with emphasis on innovation and high-quality analysis.

Qualifications

  • 4+ years in Digital Forensics, Incident Handling, and/or Malware Analysis.
  • Experience with SIEM/log analysis tools (Q Radar, Sentinel, Splunk, Chronicle, ArcSight, etc.).
  • Hands-on with leading forensics tools (KAPE, EnCase, Cellebrite, FTK, Magnet Axiom, Autopsy) and malware analysis tools (Ghidra, Ida Pro, PEStudio, x64dbg).
  • Strong IT fundamentals: networking, OS, and security concepts.
  • Programming in Python for data manipulation and REST API interaction.
  • Cloud experience with AWS, GCP, or Azure.

Responsibilities

  • Drive the full incident response lifecycle from triage to remediation.
  • Lead digital forensics and incident response across a multi-cloud environment.
  • Conduct regular threat hunts to identify misconfigurations and anomalies.
  • Build/integrate security tools using Python and REST APIs with automation teams.
  • Lead tabletop exercises to improve team readiness.
  • Document and maintain incident response runbooks and playbooks.

Skills

Digital Forensics
Incident Handling
Malware Analysis
SIEM
Python
REST APIs
Cloud Experience
AWS
GCP
Azure
Forensics Tools
Ghidra/IDA Pro
EnCase/KAPE/FTK

Education

BA/BS in Engineering, CS, or Info Security

Tools

KAPE
EnCase
Cellebrite
FTK
Magnet Axiom
Autopsy

Job description

The Cyber Defense Response Analyst III is a mid-level technical role focused on responding to and remediating cyber incidents at CME Group, a major player in global financial markets. We are looking for someone who finds joy in the inner workings of technology, with the occasional tendency to get lost in deep research. In this role, you will use industry leading tools while responding to medium-severity incidents in collaboration with teammates around the globe. We provide autonomy, and great learning environment with access to top tier technology, opportunities to align project work with your individual interests, and access to our extensive training programs, including annual SANS training.

Primary Responsibilities
  • Digital Forensics and Incident Response: Drive the full incident response lifecycle from initial triage to remediation, confidently applying specialty skills like endpoint forensics and malware analysis. Be ready to operate in a multi-cloud environment.
  • Threat Hunting: Conduct regular threat hunts to identify misconfigurations, detection gaps, and other anomalies.
  • Automation & Engineering: Use AI, Python and REST APIs to build/integrate security tools for ad-hoc needs, while working with automation engineers to develop heavy-duty solutions for advanced use-cases.
  • Tabletop Exercises (TTX): Lead regular tabletop exercises to improve team readiness.
  • Technical Documentation: Contribute continuously to our internal knowledge base of incident response runbooks and playbooks, keeping it exhaustive, accurate, and reflective of the latest workflows.
Ideal Candidate Attributes
  • Innate Curiosity: An exceptional level of curiosity and a track record of self-teaching advanced technical concepts.
  • Highly Innovative: You have a consistent record of taking unorthodox approaches to challenges and a demonstrated ability to innovate within information technology domains.
  • A "Researcher" Mindset: A passion for collecting facts, debating details, and diving into "rabbit holes" to solve complex problems.
  • Adept at High-Pressure Communication: Ability to deal effectively at all levels of the organization and translate technical research into clear, actionable intelligence for leadership.
  • Highly Detail Oriented: Very strong attention to detail; you notice things others often don’t.
  • Impactfully Collaborative: You excel at technical collaboration and helping teams deliver high-impact.
Preferred Technical Qualifications
  • DFIR Background: 4+ years of practical experience with Digital Forensics, Incident Handling, and/or Malware Analysis.
  • SIEM/Data Analysis: 4+ years of experience with Q Radar, Sentinel, Splunk, Chronicle, ArcSight, or similar log management technologies.
  • Demonstrated hands‑on experience with leading forensics tools like KAPE, EnCase, Cellebrite, FTK, Magnet Axiom, and Autopsy, plus comfort with malware analysis tools like Ghidra, Ida Pro, PEStudio, and x64dbg.
  • Strong IT Fundamentals: Strong understanding of computer networking, operating systems, and their intersection with Cybersecurity.
  • Programming Skills: Development experience with Python, specifically for data manipulation (Pandas) and interacting with REST APIs.
  • Cloud Experience: Practical experience with AWS, GCP, or Azure.
Education & Certifications
  • Education: BA/BS in Engineering, Computer Science, or Information Security (non-tech degrees acceptable with appropriate levels of Information Security job experience and/or certifications)
  • Certifications: GCIH, GCFE, GCFA, OSCP, Sec+, and similar cyber-oriented certifications are desired.

CME Group: Where Futures are Made CME Group is the world’s leading derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it – all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we’re looking for more. At CME Group, we embrace our employees' unique experiences and skills to ensure that everyone’s perspectives are acknowledged and valued.

As an equal-opportunity employer, we consider all potential employees without regard to any protected characteristic.

As the world’s leading derivatives marketplace, CME Group is where the world comes to manage risk. We enable clients to trade futures, options, cash and OTC markets, optimize portfolios, and analyze data – empowering market participants worldwide to efficiently manage risk and capture opportunities. CME Group exchanges offer the widest range of global benchmark products across all major asset classes based on interest rates, equity indexes foreign exchange energy agricultural products and metals. We meet uncertainty and volatility with confidence and clarity, across the trading lifecycle and around the world.

For U.S. employment, CME Group is legally required to validate a new hire’s employment eligibility by having them complete an Employment Eligibility Verification (Form I-9) accompanied with legally acceptable proof of identity and work authorization (as listed on the Form I-9). CME Group uses E-Verify, which is an online system operated by the U.S. Department of Homeland Security in partnership with the Social Security Administration to verify employment eligibility and validate social security numbers. Through participation in the E-Verify program, information entered on Form I-9 will be provided and compared to information available at both of these agencies. See posters below for more details.

E-Verify Notice

E-Verify Notice Español

U.S. Right to Work Notice

U.S. Right to Work Notice Español

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Defense Monitoring Engineer – Automation & AI
Cyber Defense Monitoring Engineer – Automation & AI

INTEC CME India Pvt Ltd • Bengaluru

On-site
INR 1,500,000 - 2,800,000
Cyber Threat Intelligence Engineer III (Tactical)
Cyber Threat Intelligence Engineer III (Tactical)

INTEC CME India Pvt Ltd • Bengaluru

On-site
INR 1,200,000 - 2,200,000
Cyber Defense Response Analyst III
Cyber Defense Response Analyst III

CME Group • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Staff Cyber Defense Engineer (SOC Lead) – Automation & AI
Staff Cyber Defense Engineer (SOC Lead) – Automation & AI

INTEC CME India Pvt Ltd • Bengaluru

On-site
INR 900,000 - 1,300,000
Scrum Master 3 - India
Scrum Master 3 - India

INTEC CME India Pvt Ltd • Bengaluru

On-site
INR 1,400,000 - 2,000,000
Lead- Administrative Assistant
Lead- Administrative Assistant

INTEC CME India Pvt Ltd • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Staff Data Reliability Engineer - India
Staff Data Reliability Engineer - India

INTEC CME India Pvt Ltd • Bengaluru

On-site
INR 3,000,000 - 6,000,000
Manager, Cyber Defense Fusion Center
Manager, Cyber Defense Fusion Center

INTEC CME India Pvt Ltd • Bengaluru

On-site
INR 5,000,000 - 7,000,000
Site Reliability Engineer II - India
Site Reliability Engineer II - India

CME Group Inc. • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Cyber Threat Intelligence Engineer III Tactical
Cyber Threat Intelligence Engineer III Tactical

CME Group • Bengaluru

On-site
INR 1,800,000 - 2,600,000