Senior Security Incident Response Analyst

Ouro and Real Madrid Football Club

Dadri

On-site

INR 1,500,000 - 2,300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Netspend Corporation is seeking a Senior Security Incident Response Analyst to join its global Cyber Defense organization. Based in India, Noida, this role triages security alerts, conducts investigations, develops response playbooks, and ensures logging and detection capabilities are effective across clouds and on-premises environments.

The ideal candidate has 5–8+ years in security operations, strong SIEM/EDR experience, and a working knowledge of MITRE ATT&CK and NIST IR frameworks.

Qualifications

  • 5–8+ years hands-on experience in Security Operations, Incident Response, threat hunting, or Detection Engineering.
  • Strong knowledge of SIEM platforms (e.g., Splunk, ELK, Sentinel), EDR tools (CrowdStrike, SentinelOne, etc.), and cloud security (AWS/GCP/Azure).
  • Experience building IR playbooks and standard operating procedures
  • Familiarity with MITRE ATT&CK, NIST Incident Response Framework, and modern adversary TTPs
  • Solid understanding of logging architectures, event taxonomies, and detection pipelines.
  • Excellent communication skills and ability to work independently in a global, distributed environment

Responsibilities

  • Continuously monitor and triage security alerts from SIEM, EDR, cloud platforms, and other detection systems
  • Conduct end-to-end investigations for potential security incidents, including scoping, containment recommendations, and root-cause identification
  • Escalate and coordinate with global IR teams for high-severity incidents.
  • Perform forensic analysis on endpoints, logs, and cloud workloads as required.
  • Design, build, and maintain incident response playbooks covering common threat scenarios (malware, phishing, identity compromise, insider threat, cloud)
  • Identify opportunities for automation and orchestration in investigation workflows
  • Collaborate with Threat Detection Engineering to refine detection logic, thresholds, and alerting criteria
  • Document incident findings, lessons learned, and process improvements.
  • Evaluate the completeness and quality of security logs across infrastructure, applications, and cloud environments (AWS/Azure/GCP)
  • Recommend improvements in logging coverage, enrichment, and parsing to strengthen detection capabilities
  • Partner with Security Engineering to validate telemetry ingestion and visibility in SIEM and EDR platforms
  • Conduct periodic logging health assessments and tune noisy or low-value alerts.
  • Work with IT, Cloud, Engineering, and Compliance teams to ensure incident response readiness
  • Provide guidance to junior analysts and regional partners when required
  • Support tabletop exercises and readiness assessments.

Skills

Security Operations
Incident Response
Threat Hunting
Threat Detection
EDR Tools
SIEM Experience
Cloud Security
Communication Skills

Tools

Splunk
ELK Stack
Microsoft Sentinel
CrowdStrike
AWS/Azure/GCP

Job description

Overview

Ouro is a global, vertically-integrated financial services and technology company dedicated to the delivery of innovative financial empowerment solutions to consumers worldwide. Ouro's financial products and services span prepaid, debit, cross-border payments, and loyalty solutions for consumers and enterprise partners. Since its founding in 1999 by industry pioneers, Ouro products have processed billions of dollars in transaction volume and served millions of customers worldwide. The company is headquartered in Austin, Texas with regional offices around the world.

Senior Security Incident Response Analyst

Location

India (Noida)

Employment Type

Full time

Department

Technology

About the Company

Netspend Corporation is a global, vertically-integrated financial services and technology company dedicated to the delivery of innovative financial empowerment solutions to consumers worldwide. Netspend's financial products and services span prepaid, debit, cross-border payments, and loyalty solutions for consumers and enterprise partners. Netspend provides prepaid and debit account solutions that connect customers with secure, convenient access to global payment networks so they can manage their money and make everyday purchases. With a nationwide U.S. retail network, customers can purchase and reload Netspend products at 130,000 reload points and over 100,000 distributing locations. Since our founding in 1999 by industry pioneers, Netspend products have processed billions of dollars in transaction volume and served millions of customers worldwide. The company is headquartered in Austin, Texas with employees worldwide.

Job Description

We are seeking a highly skilled Senior Security Incident Response Analyst to join our global Cyber Defense organization. This individual contributor role is responsible for triaging and investigating security alerts, developing and maintaining response playbooks, and ensuring the effectiveness of security logging and detection capabilities. The ideal candidate brings deep technical expertise, strong analytical skills, and a passion for improving detection and response processes at scale. This role will collaborate closely with Security Operations, Threat Detection Engineering, Platform/Infrastructure teams, and cross-functional partners across global time zones. The position is based in India and may support a follow-the-sun incident response model.

Key Responsibilities
  • Continuously monitor and triage security alerts from SIEM, EDR, cloud platforms, and other detection systems
  • Conduct end-to-end investigations for potential security incidents, including scoping, containment recommendations, and root-cause identification
  • Escalate and coordinate with global IR teams for high-severity incidents.
  • Perform forensic analysis on endpoints, logs, and cloud workloads as required.
Response Playbooks & Process Improvement
  • Design, build, and maintain incident response playbooks covering common threat scenarios (malware, phishing, identity compromise, insider threat, cloud)
  • Identify opportunities for automation and orchestration in investigation workflows
  • Collaborate with Threat Detection Engineering to refine detection logic, thresholds, and alerting criteria
  • Document incident findings, lessons learned, and process improvements.
Logging & Detection Efficacy
  • Evaluate the completeness and quality of security logs across infrastructure, applications, and cloud environments (AWS/Azure/GCP).
  • Recommend improvements in logging coverage, enrichment, and parsing to strengthen detection capabilities
  • Partner with Security Engineering to validate telemetry ingestion and visibility in SIEM and EDR platforms
  • Conduct periodic logging health assessments and tune noisy or low-value alerts.
Stakeholder Collaboration
  • Work with IT, Cloud, Engineering, and Compliance teams to ensure incident response readiness
  • Provide guidance to junior analysts and regional partners when required
  • Support tabletop exercises and readiness assessments.
Requirements
  • 5–8+ years of hands-on experience in Security Operations, Incident Response, threat hunting, or Detection Engineering
  • Strong knowledge of SIEM platforms (e.g., Splunk, ELK, Sentinel), EDR tools (CrowdStrike, SentinelOne, etc.), and cloud security (AWS/GCP/Azure)
  • Proven ability to investigate complex security events using logs, network traffic, and
  • Experience building IR playbooks and standard operating procedures
  • Familiarity with MITRE ATT&CK, NIST Incident Response Framework, and modern adversary TTPs
  • Solid understanding of logging architectures, event taxonomies, and detection pipelines.
  • Excellent communication skills and ability to work independently in a global, distributed environment
Preferred Qualifications
  • Experience with SOAR automation workflows
  • Exposure to DevOps, Kubernetes, container security, or CI/CD pipeline monitoring
  • Prior experience working in a global 24/7 operational security model
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Engineer
Security Operations Engineer

NextGenEnergyJobs • Bengaluru

On-site
INR 2,500,000 - 5,200,000
Flexible time off
Wellness resources
Team events
Sr. SOC Analyst
Sr. SOC Analyst

Ferfier Technologies • Dadri

Hybrid
INR 1,500,000 - 2,100,000
Flexible/Remote work
Incident Response Engineer
Incident Response Engineer

Phenom • Hyderabad

On-site
INR 1,800,000 - 3,200,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Senior Incident Response Analyst
Senior Incident Response Analyst

Nopal Cyber, LLC. • Hyderabad

On-site
INR 1,500,000 - 2,800,000
Senior Security Analyst (2026)_Noida/Hyderabad
Senior Security Analyst (2026)_Noida/Hyderabad

Arrise Solutions (India) Pvt. Ltd. • Dadri

On-site
INR 600,000 - 1,000,000
Professional and personal development
Opportunities for career progression
Collaborative team environment
Analyst - Information & Cyber Security
Analyst - Information & Cyber Security

Iris Software • Dadri

On-site
INR 500,000 - 800,000
Security Analyst (Cyber Defense Analyst)
Security Analyst (Cyber Defense Analyst)

Jobgether • India

On-site
INR 1,700,000 - 2,400,000
Health insurance
Paid time off
Flexible work
+6
SOC Specialist
SOC Specialist

METRO/MAKRO • Pune District

On-site
INR 4,000,000 - 7,000,000
Senior Cyber Security Analyst (R-19638)
Senior Cyber Security Analyst (R-19638)

Eyeota • Hyderabad

On-site
INR 1,100,000 - 2,400,000