Facility Engineer GIT
Job Summary
Department: Security Operations Center (SOC)
Location: Noida/Bangalore
Experience: 46 years in Cybersecurity Operations
Shift: 24x7 rotational
Role Overview:
A Threat Intelligence Analyst is responsible for collecting analyzing and delivering actionable intelligence on cyber threats to support proactive defense strategies.
Key Responsibilities:
- Identify track and analyze cyber threats and vulnerabilities.
- Collect intelligence from open sources dark web internal logs and threat feeds.
- Analyze attacker tactics techniques and procedures (TTPs).
- Prepare threat intelligence reports advisories and briefings.
- Share Indicators of Compromise (IOCs) with SOC and Incident Response teams.
- Support incident investigations with threat intelligence insights.
- Monitor emerging threats and recommend mitigation strategies.
Skills Required:
- Knowledge of MITRE ATT&CK and Cyber Kill Chain frameworks.
- Experience with threat intelligence platforms (Anomali Mandiant etc.).
- Understanding of malware analysis and network security.
- Strong analytical and reporting skills from AI tools
Role Overview:
A Threat Hunter proactively searches for hidden threats in enterprise environments that bypass conventional security tools.
Key Responsibilities:
- Perform proactive and hypothesis-driven threat hunting.
- Analyze logs network traffic and system events.
- Identify Indicators of Compromise (IOCs) and map to MITRE ATT&CK.
- Develop and improve detection rules in SIEM and EDR platforms.
- Correlate internal telemetry with external threat intelligence.
- Investigate advanced threats such as APTs and insider threats.
- Support incident response and perform root cause analysis.
- Generate reports and track metrics like MTTD and dwell time.
Skills Required:
- Hands-on experience with SIEM and EDR tools (Sentinel Splunk CrowdStrike).
- Scripting skills (Python PowerShell KQL).
- Strong log analysis and investigation skills.
- Understanding of threat intelligence and attack methodologies.
- Execute containment actions such as host isolation account disablement and blocking malicious IPs/domains
- Provide technical support during major incidents under ICC direction
-Escalate complex incidents to L3 analyst Collaborate with IT threat intelligence and forensic teams
-Maintain complete incident documentation and reports
-Support post-incident review RCA and continuous improvement
Bachelors degree in Cybersecurity / IT / Computer Science
Certifications preferred: CEH Security CySA CISSP (optional)
Key Responsibilities:
- Perform proactive and hypothesis-driven threat hunting.
- Analyze logs network traffic and system events.
- Identify Indicators of Compromise (IOCs) and map to MITRE ATT&CK.
- Develop and improve detection rules in SIEM and EDR platforms.
- Correlate internal telemetry with external threat intelligence.
- Investigate advanced threats such as APTs and insider threats.
- Support incident response and perform root cause analysis.
- Generate reports and track metrics like MTTD and dwell time.
Required Experience:
IC
About Company
HCLTech is a global IT services and technology company with over 223,000 people in 60 countries, delivering cutting-edge AI, engineering, and cloud solutions to top enterprises.