Overview
We are seeking a highly skilled and motivated Technical Cybersecurity Specialist with a strong focus on Endpoint Detection and Response (EDR) to join our dynamic cybersecurity team. In this role, you will be responsible for deploying, configuring, managing, and optimizing EDR solutions to protect the organization's endpoints from advanced cyber threats. You will collaborate with cross-functional teams to investigate and mitigate security incidents, ensuring that the organization maintains a robust security posture against evolving threats.
Key Responsibilities:
EDR Solution Management:
Deploy, configure, and maintain EDR tools and solutions across the organization's endpoints (e.g., workstations, servers, mobile devices).
Continuously monitor EDR data to identify suspicious activities and respond to incidents proactively.
Regularly update and tune EDR systems for performance and effectiveness against emerging threats.
Incident Detection and Response:
Investigate security incidents and alerts generated by the EDR platform, determining the scope and impact of security breaches.
Conduct detailed forensic analysis on endpoint-related incidents and provide actionable insights.
Collaborate with the SOC (Security Operations Center) and other security teams to mitigate threats, contain incidents, and conduct post-incident reviews.
Threat Hunting and Analysis:
Perform continuous threat hunting using EDR data to uncover hidden threats, advanced persistent threats (APT), and zero-day attacks.
Leverage threat intelligence feeds and historical data to enhance detection capabilities.
Work with threat intelligence teams to improve EDR use cases and detection rules.
EDR Optimization & Tuning:
Regularly review and refine detection and prevention rules within the EDR platform to improve accuracy and minimize false positives.
Ensure that endpoint security policies align with organizational security best practices and compliance requirements.
Collaboration & Reporting:
Provide detailed technical reports on EDR performance, incidents, and trends to senior management and other stakeholders.
Collaborate with IT, network, and application teams to ensure endpoint security is integrated across all systems and platforms.
Assist in vulnerability assessments and contribute to risk management activities related to endpoint security.
Training & Knowledge Sharing:
Develop and deliver training to internal teams on best practices for endpoint security and EDR usage.
Stay up to date with the latest trends in cybersecurity, particularly in endpoint protection and EDR technologies.
Qualifications:
Essential:
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent practical experience.
At least 3-5 years of experience in cybersecurity, with a strong focus on endpoint protection, EDR, and related technologies.
Hands-on experience with leading EDR platforms (e.g., CrowdStrike, SentinelOne, Microsoft Defender for Endpoint, Carbon Black, Sophos, etc.).
Strong understanding of endpoint security concepts, including malware analysis, behavioral detection, and endpoint forensic analysis.
Proficiency in security incident response, including detection, investigation, containment, and recovery.
Solid understanding of networking protocols, operating systems (Windows, Linux, macOS), and network traffic analysis.
Knowledge of security frameworks, industry standards, and best practices (e.g., NIST, ISO 27001, CIS, etc.).
Desirable:
Industry certifications such as CISSP, CISM, CEH, CompTIA Security+, or equivalent.
Familiarity with SIEM (Security Information and Event Management) tools and integration with EDR systems.
Experience with scripting or automation tools (Python, PowerShell, Bash) to improve incident detection and response workflows.
Knowledge of advanced persistent threats (APT) and techniques used by sophisticated cyber adversaries.
Location: Mumbai
Job Type: Full-time
Pay: ?200,000.00 - ?1,200,000.00 per year
Benefits:
- Cell phone reimbursement
- Food provided
- Paid sick time
- Work from home
Schedule:
- Day shift
- Rotational shift
Experience:
- total work: 2 years (Preferred)
Work Location: In person