Incident Response Engineer

Phenom

Hyderabad

On-site

INR 1,800,000 - 3,200,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Phenom is seeking a seasoned Cybersecurity Incident Response Analyst to join our team in Hyderabad, India. You will monitor security events, develop incident response plans, and coordinate with cross-functional teams to strengthen defenses across our SaaS platform.

Ideal candidates bring 8+ years in incident response, solid SIEM/EDR experience, and a strong background in threat hunting, forensic analysis, and scripting for automation.

Qualifications

  • Bachelor's degree in CS/IT or related field.
  • Minimum 8 years of experience in cybersecurity incident response.
  • Strong understanding of incident response procedures and tools.
  • Experience with security monitoring and analysis tools such as SIEM/EDR.

Responsibilities

  • Monitor and analyze security events and incidents to identify threats.
  • Develop and maintain incident response plans and procedures.
  • Conduct regular security assessments and audits to identify risks.
  • Investigate and respond to security incidents including containment and recovery.
  • Collaborate with cross-functional teams to implement security controls.

Skills

Incident response
Cybersecurity analysis
Threat monitoring
Automation scripting
Communication skills

Education

Bachelor's degree in Computer Science or IT

Tools

WAF
IPS/IDS
EDR
DLP

Job description

About the Company

Our purpose is to help a billion people find the right work! Phenom is an AI-Powered talent experience platform that is redefining the HR tech space. We have grown into a global organization with offices in 6 countries and over 1,500 employees. As an HR tech unicorn organization, innovation and creativity is within our DNA. Come help us make every talent moment Phenomenal!

About the Role

Phenom People is seeking a highly skilled and experienced Cybersecurity Incident Response Analyst to join our growing team in Hyderabad, Telangana, India. As a leading provider of talent experience management solutions, we are committed to protecting our clients' data and systems from cyber threats. We are looking for a talented individual who is passionate about cybersecurity and has a strong understanding of incident response procedures.

Responsibilities
  • Monitor and analyze security events and incidents to identify potential threats and vulnerabilities
  • Develop and maintain incident response plans and procedures
  • Conduct regular security assessments and audits to identify potential risks and vulnerabilities
  • Investigate and respond to security incidents, including containment, eradication, and recovery
  • Collaborate with cross-functional teams to implement security controls and measures to prevent future incidents
  • Stay up-to-date with the latest cybersecurity trends and best practices
  • Provide training and guidance to employees on cybersecurity awareness and best practices
Qualifications
  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • Minimum of 8 years of experience in cybersecurity incident response
  • Strong understanding of incident response procedures and tools
  • Experience with security monitoring and analysis tools
  • Knowledge of network and system security, including firewalls, intrusion detection systems, and vulnerability management
  • Excellent problem-solving and analytical skills
  • Ability to work under pressure and handle multiple incidents simultaneously
  • Strong communication and interpersonal skills
  • Relevant certifications such as CISSP, CISM, or GIAC are a plus
Required Skills
  • Analytical and investigative abilities with hands-on experience on cyber security incident response and response automation strategies, and ability to work to tight guidelines and under high pressure in the context of cyber incidents
  • Experience working with Threat modeling (e.g., STRIDE, PASTA, FAIR, Security Cards), operational threat intelligence, and attack framework standards (e.g., MITRE ATT&CK) with a good understanding of the Cyber Kill Chain and pervasive threat attack methods and remediation.
  • Good understanding and hands-on experience with common security systems, including WAF, IPS/IDS, EDR, DLP, authentication systems, content filtering, etc.
  • Experience developing detection logic for enterprise SIEM systems and with exploitation techniques and use case development.
  • Experience in the detection and response to malicious activity using log data and alerts from cybersecurity solutions, systems and network devices.
  • Experience extracting and analyzing forensic artifacts across Windows, Mac, and Linux operating systems.
  • Coding Experience in Scripting & programming languages (such as Java, Bash, Python, PowerShell etc.) to use these skills to aid in responding to incidents involving Windows, Linux, and Mac hosts, as well as automate common analytical processes to reduce analyst time and avoid repetitive incident response tasks.
  • Experience supporting an Incident Response Program through the development of procedural documentation (playbooks and runbooks).
  • Understanding of Amazon Web Services cloud environments and its security controls and their corresponding challenges.
  • Understanding of microservices architectures & distributed Platforms especially in the SaaS businesses
  • Understanding of global frameworks and standards like NIST, ISO 27001/27002/27017/ 27018, GDPR, etc.
  • An Information Security qualification or evidence of starting to work toward SANS GCIH, GCIA, GREM, GCFA, OSCP or similar certification.
  • Thought leadership, critical thinking & problem solver, strong organizational skills, report writing skills to senior level, ability to prioritize and multitask.
Preferred Skills
  • Experience with security monitoring and analysis tools
  • Relevant certifications such as CISSP, CISM, or GIAC are a plus
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Engineer III
Incident Response Engineer III

Phenom People • Hyderabad

On-site
INR 1,500,000 - 2,300,000
Incident Response Engineer III
Incident Response Engineer III

Phenom • Hyderabad

On-site
INR 2,800,000 - 3,600,000
Health and wellness benefits
Flexible hours
Parental leave
+1
Senior Manager, Threat Detection & Response
Senior Manager, Threat Detection & Response

Johnson & Johnson • Hyderabad

On-site
INR 2,000,000 - 3,000,000
Head - SOC Incident Response
Head - SOC Incident Response

Adani Enterprises Limited • Ahmedabad District

On-site
INR 2,200,000 - 4,500,000
Cyber Security Engineer
Cyber Security Engineer

Phenom People • Hyderabad

On-site
INR 2,400,000 - 3,800,000
Senior Incident Response Analyst
Senior Incident Response Analyst

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,500,000 - 2,800,000
Principal, Sr. Incident Response Analyst
Principal, Sr. Incident Response Analyst

Zinnov Management Consulting • Bengaluru

Hybrid
INR 2,600,000 - 3,800,000
Cyber Analyst.
Cyber Analyst.

Cortex Consultants LLC • Chennai

On-site
INR 1,500,000 - 2,500,000
Senior Security Incident Response Analyst
Senior Security Incident Response Analyst

Ouro and Real Madrid Football Club • Dadri

On-site
INR 1,500,000 - 2,300,000
Senior IT Security Analyst
Senior IT Security Analyst

Redient Security • Pune District

On-site
INR 1,200,000 - 1,600,000