Senior Lead, Information Security Operations

NCR Corporation

Chennai District

On-site

INR 3,500,000 - 7,500,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

NCR Voyix seeks a seasoned Cyber Security Incident Response & Threat Intelligence Lead to helm our security operations, guiding incident response, threat intelligence, detection engineering, and proactive defenses. You will mentor SOC staff and coordinate with cross-functional teams to strengthen risk posture.

Ideal candidate has 12+ years in security operations with leadership, strong MITRE ATT&CK expertise, and a proven ability to communicate with executives and technical teams alike.

Qualifications

  • Bachelor’s degree in Cybersecurity, IT, or related field.

Responsibilities

  • Lead end-to-end incident response during active cyber incidents.
  • Oversee threat intelligence strategy and reporting.
  • Develop detection engineering and proactive defenses.
  • Mentor SOC analysts and manage vendor relationships.
  • Present findings to senior leadership.

Skills

Incident response leadership
Threat intelligence
MITRE ATT&CK
Team leadership
Security operations
EDR tools

Education

Bachelor’s degree in Cybersecurity or related field

Tools

CrowdStrike
SentinelOne
MS Defender for Endpoint
ExtraHop
Cisco XDR

Job description

About NCR VOYIX NCR Voyix Corporation (NYSE: VYX) is a global platform-powered leader in unified commerce for shopping and dining. Combining a flexible, intelligent platform with end-to-end payments capabilities and services developed through its deep industry experience, NCR Voyix empowers retailers and restaurants to accelerate new possibilities for their operations, experiences and business outcomes. NCR Voyix is headquartered in Atlanta, Georgia, and serves customers in more than 35 countries worldwide.

Cyber Security Incident Response & Threat Intelligence Lead We are seeking a highly skilled and strategic Cyber Security Incident Response & Threat Intelligence lead to lead our security operations function. This role combines proactive threat intelligence with advanced incident response leadership, requiring a candidate who can anticipate emerging threats, drive strategic defenses, and lead teams through high-stakes cyber incidents. The ideal candidate will oversee security monitoring and response capabilities, guide a team of analysts and responders, and partner cross-functionally to strengthen the organization’s security posture.

Key Responsibilities
  • Incident Response Leadership
    • Lead and manage end-to-end response efforts during active cyber incidents, including detection, containment, eradication, and recovery
    • Serve as incident commander for high-severity events, ensuring timely decision-making and stakeholder communication
    • Oversee deep-dive forensic investigations to determine root cause, scope, and business impact
    • Coordinate cross-functional response efforts with IT, Legal, Compliance, and business stakeholders
    • Establish, maintain, and continuously improve incident response playbooks, processes, and escalation protocols
    • Present post-incident findings, lessons learned, and risk mitigation plans to senior leadership
  • Threat Intelligence Strategy & Oversight
    • Lead the development and execution of the organization’s threat intelligence strategy
    • Oversee research and tracking of global threat actors, campaigns, and emerging attack techniques
    • Ensure analysis of adversary tactics, techniques, and procedures (TTPs) aligned to frameworks such as MITRE ATT&CK
    • Translate threat intelligence into actionable detection use cases, defensive strategies, and business risk insights
    • Drive integration of threat intelligence into security tooling, detection engineering, and response playbooks
    • Deliver executive-level briefings and intelligence reports tailored to diverse audiences
  • Detection Engineering & Proactive Defense
    • Provide leadership oversight for proactive monitoring across endpoints, networks, and cloud environments
    • Guide the development of detection logic, correlation rules, and alerting strategies
    • Direct threat hunting initiatives to identify advanced and persistent threats
    • Ensure continuous tuning and optimization of security controls to improve detection fidelity and reduce false positives
    • Partner with engineering and architecture teams to enhance security visibility and coverage
  • People Leadership & Program Management
    • Lead, mentor, and develop a team of incident responders, threat intelligence analysts, and SOC personnel
    • Establish performance expectations, career development plans, and ongoing coaching for team members
    • Drive operational excellence within the SOC and incident response functions
    • Manage vendor relationships and external partners (e.g., MSSPs, threat intelligence providers)
    • Develop metrics and KPIs to measure program effectiveness and maturity
    • Support budget planning and resource allocation for security operations
Required Qualifications
  • Bachelor’s degree in Cybersecurity, Information Technology, or related field (or equivalent experience)
  • 12+ years of experience in incident response, threat intelligence, or security operations, with leadership experience preferred
  • Proven experience leading incident response efforts and managing high-impact security events
  • Strong understanding of attacker methodologies, malware analysis, and intrusion techniques
  • Experience mapping adversary behaviors to MITRE ATT&CK or similar frameworks
  • Demonstrated ability to communicate complex security concepts to both technical and executive audiences
Technical Expertise
  • Hands-on experience with Endpoint Detection & Response (EDR) tools such as: CrowdStrike Falcon SentinelOne Microsoft Defender for Endpoint
  • Experience with NDR/XDR platforms, including: ExtraHop Cisco XDR
  • Deep familiarity with SIEM platforms, log analysis, and security monitoring tools
  • Strong knowledge of networking protocols, operating systems, and cloud security concepts
  • Experience driving detection engineering and threat hunting programs
Operational Expectations
  • Lead on-call rotation strategy and provide escalation support for critical incidents
  • Ensure rapid and effective response to high-severity threats and vulnerabilities
  • Maintain strong situational awareness of the evolving threat landscape
  • Collaborate with internal leadership and external stakeholders during security events
  • Foster a culture of continuous improvement and operational resilience
Preferred Qualifications
  • Relevant certifications (e.g., CISSP, GCIA, GCIH, GCFA, or equivalent)
  • Experience with scripting or automation (Python, PowerShell)
  • Background in threat hunting, malware analysis, or digital forensics
  • Experience building or scaling security operations or incident response programs

Offers of employment are conditional upon passage of screening criteria applicable to the job

EEO Statement

Integrated into our shared values is NCR Voyix’s commitment to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to sex, age, race, color, creed, religion, national origin, disability, sexual orientation, gender identity, veteran status, military service, genetic information, or any other characteristic or conduct protected by law. NCR Voyix is committed to being a globally inclusive company where all people are treated fairly, recognized for their individuality, promoted based on performance and encouraged to strive to reach their full potential. We believe in understanding and respecting differences among all people. Every individual at NCR Voyix has an ongoing responsibility to respect and support a globally diverse environment.

Help us run the world's top brands. At NCR Voyix, we specialize in turning routine transactions into meaningful connections. With a rich history of innovation, we've been at the forefront of problem-solving through technology. Operating globally in over 30 countries, we lead in Retail, Restaurant, Digital banking, and Payments. Our solutions optimize banking operations, streamline restaurant services, enhance retail interactions, and foster trust through secure payment systems. We take pride in our strong culture and a history of providing robust career paths. Come work for a leading technology company where you can grow your career. Join us and be part of revolutionizing transactions across these pivotal industries.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Incident Response & Threat Intelligence Manager
Cyber Security Incident Response & Threat Intelligence Manager

NCR Voyix • Chennai District

On-site
INR 11,396,000 - 17,094,000
Senior Site Reliability Engineer
Senior Site Reliability Engineer

NCR Corporation • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Site Reliability Engineer (II)
Site Reliability Engineer (II)

NCR Corporation • Hyderabad

On-site
INR 1,800,000 - 3,200,000
Senior Software Engineer (Golang, GCP, AI)
Senior Software Engineer (Golang, GCP, AI)

NCR Corporation • Chennai District

On-site
INR 1,500,000 - 2,100,000
Full Stack Software Engineer
Full Stack Software Engineer

NCR Corporation • Chennai District

On-site
INR 450,000 - 600,000
Sr Site Reliability Engineer
Sr Site Reliability Engineer

NCR Corporation • Chennai District

On-site
INR 1,500,000 - 2,100,000
SW Dev Ops Security Engineer III
SW Dev Ops Security Engineer III

3M HEALTHCARE • Chennai District

On-site
INR 1,800,000 - 3,000,000
Manager, Quality Engineering
Manager, Quality Engineering

NCR Corporation • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Senior Quality Engineer
Senior Quality Engineer

NCR Corporation • Hyderabad

On-site
INR 2,500,000 - 4,000,000
Site Reliability Engineer (II)
Site Reliability Engineer (II)

Terafina Software Solutions Private Limited • Hyderabad

On-site
INR 3,000,000 - 6,000,000