Manager Detection And Response L09

Synchrony

Hyderabad

On-site

INR 1,200,000 - 1,800,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Synchrony is seeking a Manager, Detection and Response to lead the JSOC efforts in detecting and responding to cyber threats. The role requires expertise in both on-premise and cloud security, with strong incident response experience and collaboration across IT and Legal.

The candidate will drive detection strategies, coordinate incident containment, and produce actionable reports to senior management. Ideal candidates have 2+ years in SOC, hands-on AWS/Azure security knowledge, and a strong

Qualifications

  • 2+ years of experience in Security Operations Center (SOC).
  • Hands-on experience with cloud security threats, especially AWS and Azure.
  • Experience investigating critical security incidents related to endpoints and email compromise.
  • Strong understanding of identity security concepts (OAuth, RBAC, UEBA).

Responsibilities

  • Respond to security incidents across technologies, mitigate and contain impacts, coordinate remediation efforts.
  • Provide SME input to enable proactive threat detection and security posture improvements.
  • Develop threat detection logic with Cyber Intelligence teams to counter emerging threats.
  • Document findings and create detailed incident reports for stakeholders.
  • Lead incident response tasks and execute the incident response plan.

Skills

SOC operations
Cloud security (AWS/Azure)
Incident investigation
Identity security concepts (OAuth, RB

Education

Bachelor's degree in CS or related

Job description

Job Description:

Role Title: Manager, Detection and Response (L09)
Company Overview

Synchrony (NYSE: SYF) is a premier consumer financial services company delivering one of the industry’s most complete digitally enabled product suites. Our experience, expertise and scale encompass a broad spectrum of industries including digital, health and wellness, retail, telecommunications, home, auto, outdoors, pet and more.

  • We have recently been ranked #2 among India’s Best Companies to Work for by Great Place to Work. We were among the Top 50 India’s Best Workplaces in Building a Culture of Innovation by All by GPTW and Top 25 among Best Workplaces in BFSI by GPTW. We have also been recognized by AmbitionBox Employee Choice Awards among the Top 20 Mid-Sized Companies, ranked #3 among Top Rated Companies for Women, and Top-Rated Financial Services Companies.
  • Synchrony celebrates ~51% women diversity, 105+ people with disabilities, and ~50 veterans and veteran family members.
  • We offer Flexibility and Choice for all employees and provide best-in-class employee benefits and programs that cater to work-life integration and overall well-being.
  • We provide career advancement and upskilling opportunities, focusing on Advancing Diverse Talent to take up leadership roles.
Organizational Overview

The core functionality of JSOC team within Synchrony is to provide continuous monitoring and response to cyber threats against Synchrony, its employees, its customers and partners. We do this by developing best in class detection, response and containment capabilities through automation, orchestrations and machine learning.

Role Summary/Purpose

The Manager, Detection and Response is part of the Synchrony Joint Security Operations Center (JSOC) and is responsible for being a subject matter expert in cyber detection of information security alerts and assisting in the investigation/reporting of major information security incidents supporting all business units. The candidate is expected to have a strong understanding of both traditional on-premise security and cloud management plane (also known as cloud control plane) security.

Key Responsibilities

The JSOC coordinates with IT, Legal, Human Resources, and other appropriate business units to gather incident details, assess impact, and coordinate response. This role requires experience in all phases of Cyber Detection and Incident Response including preparation, notification, response, recovery, analysis, and post-mortem. The candidate must be familiar with communication technologies, communications protocols and emerging cloud security practices. The candidate that fulfills this role will be expected to have process documentation experience and excellent intra-business relationship experience. This role interacts with all levels of the organization, particularly within the IT organization and is viewed as a subject matter expert. Specific responsibilities include:

  • Respond to security incidents across a wide array of technologies, mitigate and contain impacts, coordinate remediation efforts, summarize and make recommendations to Sr. Management for improvements. Security technologies utilized by the JSOC team includes: Security Incident and Event Management (SIEM), Security Orchestration Automation and Response (SOAR), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), network perimeter firewall, enterprise email security, User and Entity Behavioral Analytics (UEBA), and Cloud Access Security Broker (CASB) toolsets.
  • Provide technical subject matter expertise to enable proactive detection of potential security threats and recommendations for improvements in overall security posture.
  • Work with members of the Cyber Intelligence team to develop and implement threat detection logic to counter emerging cybersecurity threats.
  • Develop and enhance Detection and Incident Response processes and procedures leveraging relationships with front line operations teams and exploiting tools and systems.
  • Document findings and create detailed reports for constituency both in written and verbal formats.
  • Enumerate risks and prioritize mitigation efforts based on clear business priorities.
  • Coordinates IT resources to effectively perform incident response tasks.
  • Acts as the subject matter expert on incident response tasks and takes responsibility for successful execution of incident response plan.
  • Performs incident response tasks to contain exposures from an incident.
  • Authors incident response reports and lessons learned to include root cause analysis.
  • Identify and recommend process improvements.
Qualifications/Requirements
  • 2+ years of experience in Security Operation Center
  • Hands-on experience with cloud security threats especially AWS and Azure related
  • Experience with investigating critical security incidents related to endpoint and email compromise
  • Strong understanding of identity security concepts (OAUTH, RBAC, UEBA etc.,)
Desired Skills/Knowledge
  • Strong verbal and written communication skills.
  • Ability to perform logical problem solving.
  • Experience of working in high performing teams and understand the dynamics of teamwork in a SOC environment.
  • Industry certifications such as CISSP, GCIH, AWS Certified Cloud Practitioner, AWS Certified Security – Specialty, and other cybersecurity certifications are a plus.
Eligibility Criteria
  • Bachelor’s degree with minimum 2+ years of work experience or Computer Science or a related discipline OR in in lieu of a degree, minimum 4+ years equivalent work experience. Additional requirements include:
  • Minimum of 2 years of years of experience in information security or related technology experience required, experience in the securities or financial services industry is a plus.
  • Minimum 2 years of cyber security and incident response or security operations related to the detection, analysis, containment, eradication and recovery from cyber security incidents
Work Timings

Rotational shifts including Night shifts.

Level / Grade : 09
Job Family Group

Information Technology

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Detection and Response (L09)
Manager, Detection and Response (L09)

Synchrony • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Sr.Analyst - IS Risk Management Assurance (L09)
Sr.Analyst - IS Risk Management Assurance (L09)

Synchrony • Delhi

On-site
INR 1,200,000 - 1,800,000
Manager - Cyber Security
Manager - Cyber Security

Lennox International • Chennai District

On-site
INR 4,000,000 - 7,000,000
Sr Analyst - IS Risk Management Assurance L09
Sr Analyst - IS Risk Management Assurance L09

Synchrony • India

On-site
INR 1,500,000 - 2,100,000
Sr Analyst - IS Risk Management Assurance L09
Sr Analyst - IS Risk Management Assurance L09

Synchrony • India

On-site
INR 1,500,000 - 2,100,000
Security Operations Centre (SOC) Manager
Security Operations Centre (SOC) Manager

FutureX • Chennai District

On-site
INR 2,500,000 - 3,800,000
SOC Specialist
SOC Specialist

METRO Global Solution Center IN • Maharashtra

On-site
INR 1,500,000 - 2,300,000
SOC Manager
SOC Manager

SISA • Bengaluru

On-site
INR 6,000,000 - 9,000,000
SISA Information Security - Security Operations Center Manager - SIEM/SOAR
SISA Information Security - Security Operations Center Manager - SIEM/SOAR

SISA • Bengaluru

On-site
INR 3,000,000 - 5,200,000
Senior Manager, Threat Detection & Response
Senior Manager, Threat Detection & Response

Johnson & Johnson • Hyderabad

On-site
INR 2,000,000 - 3,000,000