Job Function: Technology Enterprise Strategy & Security
Job Sub Function: Security & Controls
Job Category: Scientific/Technology
Job Locations
- Bangalore, Karnataka, India
- Hyderabad, Andhra Pradesh, India
Job Description
We are seeking a Senior Manager of Threat Detection & Incident Response to lead investigations and responses to business‑impacting IT security incidents, ensuring timely and accurate validation, containment, and recovery. The role collaborates with stakeholders inside and outside ISRM to align response readiness, evaluate tools and procedures, and provide mentorship as a top domain expert on digital forensics and incident response.
Main Responsibilities
- Provide domain expertise; perform continuous monitoring of suspicious activity and alerts, triage and diagnosis of threats, and root cause analysis and remediation of incidents. Review critical issues for business‑impacting incidents and command a technical investigation team.
- Collect and analyze electronic devices, logs, malware, and other digital artifacts in support of security investigations and response.
- Prepare and present regular reports and updates to senior management on the status and impact of incident response efforts.
Other Duties
- Mentor and develop team members, encouraging a culture of innovation and continuous improvement.
- Evaluate and recommend cybersecurity tools and technologies that improve response capabilities.
- Identify potential risks and vulnerabilities in systems and processes and coordinate mitigation of them.
- Use threat intelligence to advise response efforts and bolster proactive defense measures.
- Establish key performance indicators to measure the efficiency of incident response services and initiatives.
Key Skills and Knowledge
- Digital forensics tools and techniques
- Incident response including major incident response leadership
- Technical writing and communication
- Cyber defense frameworks (NIST, ISO, CIS)
- SIEM tools (Splunk, Sentinel)
- Programming or scripting (PHP, Python, JavaScript) including experience with automation platforms, SOAR, and data enrichment pipelines
- Familiarity with AI and ML‑based threat detection and automation tools and their governance in a SOC/TDR context
- Understanding of ML model behavior, false‑positive reduction, and ethical governance
- Data interpretation and feature‑analysis capabilities for threat‑analytics models
Required Minimum Education
BS or MS in computer science or relevant field of study.
Preferred Knowledge, Skills and Abilities
- Minimum of 10 years of cybersecurity experience and industry‑leading frameworks
- Minimum of 6 years in a manager or similar senior role in cyber defense or related teams
- Demonstrable understanding and expert background in performing digital forensics and incident response
- Proficiency in cyber defense tools and technologies (e.g., SOAR platforms, AI tools, and SIEM tools)
- Solid grasp of security frameworks, compliance standards, and procedures (e.g., NIST, ISO, CIS)
- Strong proficiency in SIEM technologies and KQL or similar syntax
- Familiarity with threat detection and incident response methodologies
- Excellent executive intelligence writing and briefing skills
Additional Required Skills
- Business Process Design
- Collaboration
- Crisis Management
- Critical Thinking
- Cyber Threat Intelligence
- Developing Others
- Inclusive Leadership
- Information Security Auditing
- Information Security Management System (ISMS)
- Information Technology (IT) Security Assessments
- Information Technology Strategies
- Leadership
- Managing Managers
- People Performance Management
- Presentation Design
- Process Optimization
- Security Architecture Design
- Security Policies
Johnson & Johnson is an affirmative action and equal opportunity employer. We will receive qualified applicants and will consider for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability.