
Engineer III – Cyber Incident Response
Posted 9 hours ago

Posted 9 hours ago
This is a fully remote position, open to applicants in India.
• Lead the investigation and resolution of intricate security incidents, encompassing advanced persistent threats, ransomware, phishing campaigns, and insider threats.
• Conduct forensic analysis across endpoints, networks, and cloud environments to determine root causes and the extent of compromise.
• Create and improve incident response playbooks, runbooks, and detection use cases.
• Work collaboratively with threat intelligence, vulnerability management, and countermeasures teams to bolster defenses.
• Escalate high-severity incidents to senior leadership, providing clear and actionable reports.
• Serve as a technical escalation point for Engineer I/II analysts during incident investigations.
• Contribute to red team and purple team exercises.
• Engage in after-action reviews and lessons-learned sessions to enhance SOC processes.
• Mentor and train junior engineers on best practices in incident response and investigative techniques.
• Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent professional experience.
• Master’s degree is preferred.
• Over 7 years of progressive experience in the field of cybersecurity.
• A minimum of 4 years of experience in incident response or SOC operations.
• At least 4 years of experience in incident response, digital forensics, or advanced threat hunting is required.
• Strong understanding of incident response methodologies, digital forensics, and adversary tactics.
• Familiarity with NIST, MITRE ATT&CK, and ISO 27035 frameworks.
• Practical experience with SIEM, EDR, SOAR, and forensic tools such as Splunk, CrowdStrike, EnCase, and Wireshark.
• Proven capability to investigate advanced threats and coordinate response activities across various teams.
• Demonstrated success in mentoring junior analysts and enhancing SOC processes.
• Excellent written and verbal communication skills, including the ability to document and present technical findings clearly.
• Relevant industry certifications such as GCFA, GCIH, and CISSP are preferred.
• Benefit offerings outside the US may vary by country and will align with local market practices.
• Equal employment opportunity and reasonable accommodations.
Cencora
Cencora
Cencora
HBK - Hottinger Brüel & Kjær
Get handpicked remote jobs straight to your inbox weekly.