Senior IT Security Analyst 03892

Cephas Consultancy Services Private Limited

Pune District

On-site

INR 1,800,000 - 2,400,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Cephas Consultancy Services Private Limited in Pune, India seeks a Senior IT Security Analyst with 8-13 years of experience. You will lead incident response, threat hunting, and detection engineering within SOC/CERT/CSIRT environments.

Responsibilities include configuring Microsoft security products (Sentinel, Defender for Cloud, Azure AD), developing SIEM dashboards and automated playbooks, and mapping detections to MITRE ATT&CK to enhance threat visibility.

Qualifications

  • Experience in SOC/CERT/CSIRT environments.
  • Expertise configuring and maintaining Microsoft security products.
  • Log management, dashboards, and playbooks for continuous monitoring.
  • MITRE ATT&CK mapping for detections and TTPs.
  • Strong collaboration with cross-functional teams.

Responsibilities

  • Incident Response and collaboration with SOC, CERT, or CSIRT teams for monitoring and response.
  • Threat intelligence processing and detection rule development.
  • Design and customize automated playbooks and dashboards in SIEM.
  • Develop and test hypothetical threat scenarios to enhance threat detection.
  • Ensure security tools are configured and maintained.

Skills

SIEM administration
Threat hunting
Detection engineering
Incident response
Microsoft security products
Microsoft Sentinel
Azure Active Directory

Tools

Microsoft Sentinel
Defender for Cloud
Azure AD
KQL queries

Job description

About this position

Positions:1 Full Time

Experience
8 - 13 Years

Compensation Details
Salary Range depends on the interview and experience level of the candidate. In case you find good profile, we can also offer little more.

Senior IT Security Analyst

Designation – Senior IT Security Analyst

A. Your Skills:

  • Significant experience in SOC, CERT, or CSIRT environments, with expertise in SIEM administration, threat hunting, detection engineering, and incident response.
  • Strong expertise in configuring, optimizing, and maintaining Microsoft security products, including Sentinel, Defender for Cloud, Endpoint, Identity, Office 365, Exchange, and Azure Active Directory.
  • Proficiency in log sources onboarding in SIEM, log management, developing consolidated security dashboards and developing Playbook to support continuous monitoring.
  • Proficiency in creating and simulating hypothetical threat scenarios to anticipate and combat.
  • In-depth understanding and practical application of the MITRE ATT&CK framework for mapping detection rules and identifying attacker tactics, techniques, and procedures (TTPs).
  • Practical knowledge of security technologies, including firewalls, IDS/IPS, SIEM, endpoint detection, anti-malware, and vulnerability assessment tools.
  • Solid understanding of networks, cloud infrastructures, operating systems (Windows, Linux), and evolving cyberattack methods.
  • Experience in correlating threat intelligence feeds with detection engineering to identify and mitigate advanced threats.
  • Proven ability to analyze large volumes of security logs and data to craft precise, high-fidelity detection rules while reducing false positives.
  • Excellent communication and collaboration skills to effectively share findings and work with cross-functional teams.
  • Passionate about proactive cybersecurity measures, with a strong desire to stay updated on emerging threats and technologies.

B. Behaviors:

  • A high level of collaboration skills with other cross functional global teams.
  • Confidence in expressing your ideas and input to the team.
  • Open to learn and work on different/new technologies.
  • Self-motivated and proactive.

C. Role and Responsibilities:

  • Incident Response and Collaboration:
    • Collaborate with SOC, CERT, or CSIRT teams for effective incident monitoring and response.
    • Investigate and respond to cybersecurity incidents, including forensic analysis of attack patterns, parsing, and normalization to enhance threat visibility and detection capabilities.
    • Designed and customized automated playbooks and interactive dashboards in SIEM to meet specific security monitoring and incident response requirements.
  • Threat Intelligence Analysis:
    • Gather, process, and analyze threat intelligence feeds to identify emerging threats.
    • Proactively communicate relevant threat scenarios and provide actionable insights.
    • Develop and fine-tune advanced KQL queries and analytics rules in Microsoft Sentinel to detect sophisticated attack vectors.
    • Build and test hypothetical threat scenarios to enhance threat detection capabilities.
    • Optimize detection systems to minimize false positives and maximize precision.
  • Incident Response and Collaboration:
    • Collaborate with SOC, CERT, or CSIRT teams for effective incident monitoring and response.
    • Investigate and respond to cybersecurity incidents, including forensic analysis of attack patterns.
  • Security Tool Management:
    • Configure, monitor, and maintain security tools such as SIEM (Microsoft Sentinel), Defender for Cloud, antivirus solutions, and consolidated security dashboards.
    • Participate in developing and implementing security concepts, hardening guidelines, and monitoring systems.
    • Perform penetration tests, vulnerability assessments, and audits to ensure robust security measures.
    • Contribute to the creation and refinement of SOC policies, processes, and procedures.
  • Desirable Certifications:
    • Microsoft Certified: Security Operations Analyst Associate – SC 200
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Cybersecurity Analyst
Cybersecurity Analyst

Abacus • Chennai District

On-site
INR 600,000 - 1,200,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Dun & Bradstreet • Hyderabad

On-site
INR 2,500,000 - 4,500,000
Senior Security Analyst
Senior Security Analyst

UltraViolet Cyber • Hyderabad

On-site
INR 800,000 - 1,200,000
SENIOR SUPPORT ENGINEER - Cyber Security
SENIOR SUPPORT ENGINEER - Cyber Security

Happiest Minds Technologies • Dadri

On-site
INR 3,500,000 - 7,000,000
Sr SUPPORT ENGINEER - Cyber Security
Sr SUPPORT ENGINEER - Cyber Security

Happiest Minds Technologies • Dadri

On-site
INR 800,000 - 1,500,000
Junior Engineer
Junior Engineer

Lyric Exponentials India Private Limited • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Sr. IT Engineer (Security)
Sr. IT Engineer (Security)

DataCore Software GmbH • Bengaluru

On-site
INR 2,500,000 - 4,500,000
CYBER security Analyst
CYBER security Analyst

Cortex Consultants LLC • Chennai

On-site
INR 1,200,000 - 1,800,000
Technical Manager - SOC
Technical Manager - SOC

Darwinbox Digital Solutions Pvt. Ltd. • Chennai District

On-site
INR 350,000 - 550,000