Cyber Triage Analyst

Randstad Enterprise

Kerala

On-site

INR 2,000,000 - 4,000,000

Full time

16 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Randstad Enterprise in India (Kerala) seeks a Senior Security Analyst to lead incident response, forensics, and security monitoring. You will triage, investigate, and report security events, working with EDR, SIEM, and cross-functional teams to improve threat detection and containment.

The role emphasizes collaboration with leadership, incident escalation, and continuous improvement of security controls, with opportunities to mentor teammates and advance security program maturity.

Qualifications

  • Bachelor’s or higher in computer science, engineering, or related field.
  • 7+ years of experience in incident response, forensics, and security operations.
  • Experience in SOC/CSIRT/CERT environments.
  • Proficient in investigating events, threats, and vulnerabilities.
  • Knowledge of Windows, Unix/Linux, and EDR tools.
  • Scripting/programming abilities (Shell, PowerShell, Python).

Responsibilities

  • Collaborate to detect and respond to information security incidents and help develop procedures for security event alerting.
  • Engage in proactive threat hunting and provide expert security assessments using EDR/SIEM and other tools.
  • Communicate with IT stakeholders during incident response, ensuring containment and remediation.
  • Report incident metrics, analyze findings, and create comprehensive incident reports.
  • Act as escalation point for incident response, lead shifts, and mentor junior staff.
  • Analyze security events and provide feedback to strengthen security controls and processes.
  • Maintain and improve incident response processes and SOPs to reflect best practices.

Skills

Cyber investigations
Data analysis
Forensic investigations
AD security scripting

Education

Undergrad/PG in CS or Eng (MCA/MTech/BTech/BCA/BSc CS or BSc IT)

Tools

EDR
SIEM
KQL

Job description

The Senior Security Analyst in Cyber Defense CTF (Cyber Triage and Forensics) plays a

pivotal role in enhancing security posture by vigilantly monitoring, assessing, and managing incidents effectively. In collaboration with the team and leadership, to ensure strong security oversight and contribute to joint security monitoring and incident response initiatives.

Key duties include triage, detailed investigations, clear communication, and comprehensive reporting, all contributing to the integrity and resilience of the cyber defenses.

Essential Functions of the Job :
  • You will work collaboratively to detect and respond to information security incidents, develop, maintain, and follow procedures for security event alerting, and participate in security investigations.
  • Engage in proactive threat hunting and provide expert security assessments, utilizing EDR, SIEM, and other tools to understand and counteract the cybercrime landscape
  • Communicate with IT stakeholders during incident response activities, ensuring effective containment, remediation, and accurate identification of compromise indicators
  • Report on incident metrics, analyse findings, and develop reports to ensure comprehensive resolution and understanding of security events
  • Act as an escalation point for incident response, shift lead, mentor junior team members, and contribute to team skill enhancement
  • Analyse security events, provide feedback on security controls, and drive process improvements to strengthen the organization's security posture
  • Maintain and improve security incident processes, protocols, and standard operating procedures to reflect best practices in security incident response
Skills and attributes for success
  • Proficient in Cyber investigation including evidence management in line with best practices and using advanced tools for threat detection and incident management including advanced querying with KQL
  • Proficient in analyzing varied data sets, identifying malware, and conducting comprehensive security event analysis from network traffic attributes and host-based attributes to detect information security incidents and latent threats.
  • Proficient in conducting detailed forensic investigations across various operating systems, with a keen eye for obfuscation and the ability to clearly communicate findings
  • In-depth understanding of Active Directory security, with strong scripting abilities to automate response measures and improve operational effectiveness
To qualify for the role, you must have
  • Undergraduate or Postgraduate Degree in Computer Science, Engineering, or a related field (MCA/MTech/BTech/BCA/BSc CS or BSc IT)
  • At least 7 years of overall experience specialized in incident response, computer forensics, and Security Operations.
  • Proficiency in operating within a Security Monitoring/Security Operations Center (SOC) environment, including experience with CSIRT and CERT operations
  • Demonstrated experience in investigating security events, threats, and vulnerabilities
  • Strong understanding of electronic investigation and forensic methodologies, including log correlation, electronic data handling, investigative processes, and malware analysis
  • In-depth knowledge of Windows and Unix/Linux operating systems, and experience with EDR solutions for threat detection and response
Ideally, you’ll also
  • Desired certifications such as SSCP, CEH, GCIH, GCFA, GCIA, GSEC, GIAC, Security+.
  • Experience with security incident response in cloud environments, including Azure.
  • Knowledge of legal considerations in electronic discovery and analysis
  • Proficiency in scripting or programming (e.g., Shell scripting, PowerShell, C, C#, Python)
  • Solid understanding of security best practices for network architecture and server configuration
What we look for
  • Demonstrates integrity in a professional environment
  • Strong ethical behavior
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Security Analyst
Senior Cyber Security Analyst

Dun & Bradstreet India • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Dun & Bradstreet • Hyderabad

Hybrid
INR 2,500,000 - 4,500,000
Cyber Security Analyst
Cyber Security Analyst

Ace Recruitment Placement Consultants • Pune District

On-site
INR 1,200,000 - 2,400,000
Cyber Security Analyst
Cyber Security Analyst

thehivecareers.co • Bengaluru

On-site
INR 800,000 - 1,200,000
Cyber security Analyst
Cyber security Analyst

Stefanini North America and APAC • Maharashtra

On-site
INR 900,000 - 1,500,000
Cyber Security Specialist/SOC Analyst
Cyber Security Specialist/SOC Analyst

IT Support Desk • Bengaluru

On-site
INR 1,400,000 - 2,200,000
Senior Security Analyst
Senior Security Analyst

UltraViolet Cyber • Hyderabad

On-site
INR 800,000 - 1,200,000
Analyst
Analyst

CDW UK • Chennai District

On-site
INR 800,000 - 1,200,000
Cybersecurity Analyst
Cybersecurity Analyst

Abacus • Chennai District

On-site
INR 900,000 - 1,400,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

ShyftLabs • Dadri

On-site
INR 1,500,000 - 2,600,000