drjobs Security Engineer (Purple Team Engineer : Red Team + SOC)

Security Engineer (Purple Team Engineer : Red Team + SOC)

Employer Active

1 Vacancy
The job posting is outdated and position may be filled
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Gurgaon - India

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Description

About Gartner IT:

Join a worldclass team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cuttingedge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation an outcomedriven approach to success and the notion that great ideas can come from anyone on the team.

About the role:

This is a new role on the Security Analytics and Automation team within Gartners expanding Security Operations practice. As part of the team you will help enhance our capabilities to identify and validate vulnerabilities in Gartners security controls procedures and infrastructure. As a Purple Team Engineer you will use your knowledge of attacker tools and techniques (red team) to improve our capability to detect and respond to threats (blue team). You will play a key role in defending Gartners network and intellectual properties. Our team is filled with lifelong learners who are consistently researching ways to better defend and stay ahead of the threats of tomorrow. We are a collaborative flexible group where good ideas are brought forth and acted upon whether they come from the most experienced or the newest members of the team.

What you will need:

  • Previous experience conducting analysis and investigation of cybersecurity incidents
  • Experience using SIEM or XDR for log analysis and alert creation
  • Extensive experience utilizing security tools such as EDR (including live response) web proxy WAF and email security tools
  • Experience with cloud environments (AWS Azure GCP)
  • Digital Forensics and Incident Response (DFIR) skills
  • Ability to query using various query languages such as SPL SQL KQL.
  • Threat hunting experience preferred
  • Ability to communicate effectively and possess excellent prioritization skills.
  • Ability to automate tasks and code solutions to repetitive problems (Python PowerShell Bash)
  • Previous red/purple team experience (practical or lab based) is a plus

What you will do:

  • Develop new attack emulations based on usecases and strategy drawing from threat intelligence and current events
  • Review and tune existing emulations to ensure highfidelity tests are conducted in a thoughtful manner which allows rapid identification of any faps in controls
  • Work closely with teams such as the Security Operations Center (SOC) Threat Intelligence and Detection Engineering to help identify gaps in existing controls
  • Assist and support SOC analysts during adhoc Incident Response activities
  • Utilize scripting to automate workflows
  • Conduct proactive Penetration Testing activities and offensive exercises
  • Assist in the development of innovative and cuttingedge detection content aligned with ATT&CK Cyber Kill Chain and various other cyber security frameworks
  • Bring your own ideas and solutions to a fastpaced growing and evolving team centered around operational excellence
  • Effectively collaborate with team members spread across multiple geographies ensuring seamless communication and coordination for successful outcomes

Who you are

  • Knowledge of MITRE ATT&CK Cyber Kill Chain or other behavioral information security frameworks.
  • Familiarity with offensive techniques and tools
  • Python Bash Powershell or other scripting language experience
  • 12 years of relevant Information Security or Penetration Testing experience
  • Bachelors in Computer Science Information Security Engineering or commensurate experience in Information security is preferred
  • Passion for security and solving tomorrows problems
  • Willingness to learn new technology platforms
  • Strong team player
  • Innovation mindset Takes opportunities to make existing processes more efficient and thinks automation first

What will make you stand out:

  • Penetration Testing skills
  • Experience implementing integrations between tools utilizing APIs
  • Previous experience with Attack Emulation Platforms
  • Exposure to Cloud platforms (AWS Azure GCP)

Dont meet every single requirement We encourage you to apply anyway. You might just be the right candidate for this or other roles.

#LINS4

Who are we

At Gartner Inc. (NYSE:IT) we guide the leaders who shape the world.

Our mission relies on expert analysis and bold ideas to deliver actionable objective insight helping enterprise leaders and their teams succeed with their missioncritical priorities.

Since our founding in 1979 weve grown to more than 21000 associates globally who support 14000 client enterprises in 90 countries and territories. We do important interesting and substantive work that matters. Thats why we hire associates with the intellectual curiosity energy and drive to want to make a difference. The bar is unapologetically high. So is the impact you can have here.

What makes Gartner a great place to work

Our sustained success creates limitless opportunities for you to grow professionally and flourish personally. We have a vast virtually untapped market potential ahead of us providing you with an exciting trajectory long into the future. How far you go is driven by your passion and performance.

We hire remarkable people who collaborate and win as a team. Together our singular unifying goal is to deliver results for our clients.

Our teams are inclusive and composed of individuals from different geographies cultures religions ethnicities races genders sexual orientations abilities and generations.

We invest in great leaders who bring out the best in you and the company enabling us to multiply our impact and results. This is why year after year we are recognized worldwide as a great place to work.

What do we offer

Gartner offers worldclass benefits highly competitive compensation and disproportionate rewards for top performers.

In our hybrid work environment we provide the flexibility and support for you to thrive working virtually when its productive to do so and getting together with colleagues in a vibrant community that is purposeful engaging and inspiring.

Ready to grow your career with Gartner Join us.


The policy of Gartner is to provide equal employment opportunities to all applicants and employees without regard to race color creed religion sex sexual orientation gender identity marital status citizenship status age national origin ancestry disability veteran status or any other legally protected status and to seek to advance the principles of equal employment opportunity.

Gartner is committed to being an Equal Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities. If you are a qualified individual with a disability or a disabled veteran you may request a reasonable accommodation if you are unable or limited in your ability to use or access the Companys career webpage as a result of your disability. You may request reasonable accommodations by calling Human Resources at 1 (203)or by sending an email to.

Job Requisition ID:100030

By submitting your information and application you confirm that you have read and agree to the country or regional recruitment notice linked below applicable to your place of residence.

Gartner Applicant Privacy Link: efficient navigation through the application please only use the back button within the application not the back arrow within your browser.

Employment Type

Full-Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.