L2 Incident Response & Threat Hunter-1413

We Search


Job Location:

Mumbai - India

Monthly Salary: Not Disclosed
Posted on: 30+ days ago
Vacancies: 1 Vacancy

Job Summary

L2 Incident Response & Threat Hunter

Role Details:

  • Role: L2 Incident Response & Threat Hunter
  • Experience: 2–6 years
  • Location: Mumbai
  • Budget: 7 LPA – 14 LPA (inclusive of vendor margin)
  • Number of Positions: 1
  • Simplify ID: 1413

Note : -

Don't add commercials of the candidates on simplify for this requirement

Role Overview:

We are seeking a driven and technically skilled L2 Incident Response & Threat Hunter to join the Security Operations team. The ideal candidate should have strong hands-on experience in incident response investigations threat hunting MITRE ATT&CK mappings and deep understanding of OS and network-level telemetry.

The candidate will be responsible for identifying analyzing and responding to security threats across enterprise environments.

Key Responsibilities:

  • Perform L2 Incident Response activities including triage containment eradication and recovery
  • Conduct proactive threat hunting across endpoints networks and cloud environments using hypothesis-driven approaches
  • Develop and validate detection rules aligned with MITRE ATT&CK framework
  • Investigate security alerts from tools such as SIEM EDR WAF Firewalls Email Security and IDS/IPS
  • Perform deep log analysis (Windows Linux Sysmon PowerShell authentication logs etc.)
  • Work closely with SOC Threat Intelligence and Vulnerability Management teams
  • Perform root cause analysis (RCA) and prepare incident investigation reports
  • Contribute to development of playbooks runbooks and process improvements
  • Collaborate with application and infrastructure teams during cyber incidents

Required Skills:

  • Strong understanding of Incident Response lifecycle (NIST SANS frameworks)
  • Hands-on experience in Threat Hunting and MITRE ATT&CK mapping
  • Experience in log analysis across OS and network layers
  • Hands-on exposure to at least two of the following tools:
    • SIEM: QRadar
    • EDR: CrowdStrike / Helix
    • Email Security: Proofpoint / SEG / SMG
  • Strong analytical investigation and documentation skills
L2 Incident Response & Threat HunterRole Details:Role: L2 Incident Response & Threat HunterExperience: 2–6 yearsLocation: MumbaiBudget: 7 LPA – 14 LPA (inclusive of vendor margin)Number of Positions: 1Simplify ID: 1413Note : -Don't add commercials of the candidates on simplify for this requirement R...