Job Title Cybersecurity Lead Incident Management Network Security Signature Writing
Job Summary
The Cybersecurity Lead will manage the Incident Management Network Security Signature Writing team This role involves overseeing incident response and signature development direct stakeholder management team management and project management The ideal candidate will have a strong background in cybersecurity incident response and network security with excellent communication and leadership skills
Key Responsibilities
Incident Monitoring and Response Monitor security alerts and incidents respond promptly and escalate as needed
Threat Analysis and Detection Investigate security incidents develop detection rules and signatures
Signature Development Create signatures for vulnerabilities and perform vulnerability hunting
Tool Management Deploy configure and manage NDR tools
Alert Tuning and Optimization Optimize alerts to reduce false positives
Reporting and Documentation Document and report on security incidents
Research and Development Stay updated with cybersecurity trends and improve detection capabilities
Stakeholder Management Engage with stakeholders and manage escalated issues
Team Management Lead and support the team
Project Management Oversee projects related to incident response and signature development
Preferred Skills
Experience with Microsoft Defender or similar endpoint protection solutions
Strong understanding of endpoint and network security threat detection and response
Proficiency with SIEM platforms and scripting languages
Knowledge of network protocols firewall rules and intrusion detection prevention systems
Familiarity with advanced persistent threats threat hunting and incident response frameworks
Understanding of IPSIDS signatures and Rapid7 recog signatures
Good to have malware and threat analysis and CVE hunting
This role operates within a 24x7x365 environment requiring flexibility for shifts holidays and on call responsibilities.
Keyskills: Cyber Security Microsoft Defender KQL SIEM Major Incident Management Incident Management
[NSE: LTIMindtree] is a global technology consulting and digital solutions LTIMindtree company that enables enterprises across industries to reimagine business models, accelerate innovation, and maximize growth by harnessing digital technologies. As a digital transformation partner to more than 75...