Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Threat Detection Engineer @ Capgemini

Home > IT Security

 Threat Detection Engineer

Job Description

Role & responsibilities


Primary Skill:


Threat Intelligence, Threat Hunting, Threat Detection Engineers with experience in writing SPL (Splunk Processing Language), Mitre Framework.


Secondary Skill:
DataBricks, MDE


Threat Intelligence, Threat Hunting, Splunk Enterprise Security, Cyber Security SME, Splunk Power User, Mitre Framework

JD:
In-depth knowledge of external attacks and detection techniques to be able to run analysis of the requirements provided by threat intelligence / SOC teams, generate list of rules that could be implemented (based on self analysis of a threat and avaiable log sources), work with SOC team to operationalize and Purple Team to test..
Familiarity with MITRE ATT&CK framework and Tactics, Techniques, and Procedures (TTPs).
Experience with security tools such as Splunk, MDE , Databricks to be able to write custom detections to detect various threats (preferably MDE)

So to give you better picture, I will give some examples.

  1. Person needs to be able to navigate through Mitre framework to be able to assign correct technique to the rule that is worked on.
  2. Must be able to tell what Beaconing does or CnC channel means, methods to detect, logs to use (ofc not limited to, in general must know common attach techniques and how to detect them - external threat attacks on prem / cloud). Must be familiar with Cobalt Strike meaning (generic knowledge what it does, not how to use it).
  3. Manually write SPL / KQL / SQL rules in one of our tools, generated alerts and get them validated by asking Purple team to run a simulation.
  4. Talk to CDC on operationalizing the rule

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Cyber Security
Employement Type: Full time

Contact Details:

Company: Capgemini
Location(s): Hyderabad

+ View Contactajax loader


Keyskills:   Threat Detection Malware Analysis Threat Hunting

 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Network Security Engineer

  • Zensar
  • 7 - 12 years
  • Pune
  • 5 days ago
₹ 0-35 Lacs P.A.

IT Security Engineer/ SOC Engineer- Bangalore

  • A1 Selectors
  • 2 - 5 years
  • Bengaluru
  • 6 days ago
₹ 15-18 Lacs P.A.

IT Security Engineer/ SOC Engineer- Bangalore

  • A1 Selectors
  • 2 - 5 years
  • Bengaluru
  • 6 days ago
₹ 15-18 Lacs P.A.

L3 Cyber Threat Intelligence_brand & Dark Web Monitoring_mumbai_airoli

  • NTT DATA
  • 8 - 12 years
  • Mumbai
  • 8 days ago
₹ Not Disclosed

Capgemini

Capgemini Invent