Manager, Detection and Response-4

4 - 9 years

6 - 11 Lacs

Posted:1 day ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Role Summary/Purpose:
The Manger, Detection and Response is part of the Synchrony Joint Security Operations Center (JSOC) and is responsible for being a subject matter expert in cyber detection of information security alerts and assisting in the investigation/reporting of major information security incidents supporting all business units. The candidate would have a position focused on the detection and response program operation consisting of detection, response, mitigation, and reporting of cyber security incidents; documenting and implementing the rotation schedule and assignments for handling escalated incidents. The candidate is expected to have a strong understanding of both traditional on-premise security and cloud management plane (also known as cloud control plane) security.
Key Responsibilities:
The JSOC coordinates with IT, Legal, Human Resources, and other appropriate business units to gather incident details, assess impact, and coordinate response. This role requires experience in all phases of Cyber Detection and Incident Response including preparation, notification, response, recovery, analysis, and post-mortem. The candidate must be familiar with communication technologies, communications protocols and emerging cloud security practices. The candidate that fulfills this role will be expected to have process documentation experience and excellent intra-business relationship experience. This role interacts with all levels of the organization, particularly within the IT organization and is viewed as a subject matter expert. Specific responsibilities include:
  • Respond to security incidents across a wide array of technologies, mitigate and contain impacts, coordinate remediation efforts, summarize and make recommendations to Sr. Management for improvements. Security technologies utilized by the JSOC team includes: Security Incident and Event Management (SIEM), Security Orchestration Automation and Response (SOAR), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), network perimeter firewall, enterprise email security, User and Entity Behavioral Analytics (UEBA), and Cloud Access Security Broker (CASB) toolsets.
  • Provide technical subject matter expertise to enable proactive detection of potential security threats and recommendations for improvements in overall security posture.
  • Work with members of the Cyber Intelligence team to develop and implement threat detection logic to counter emerging cybersecurity threats.
  • Develop and enhance Detection and Incident Response processes and procedures leveraging relationships with front line operations teams and exploiting tools and systems.
  • Document findings and create detailed reports for constituency both in written and verbal formats.
  • Enumerate risks and prioritize mitigation efforts based on clear business priorities.
  • Coordinates IT resources to effectively perform incident response tasks.
  • Acts as the subject matter expert on incident response tasks and takes responsibility for successful execution of incident response plan.
  • Performs incident response tasks to contain exposures from an incident.
  • Identify and recommend process improvements.
Required Skills/Knowledge:
  • Bachelor s degree and a minimum 4 years of work experience or Computer Science or a related discipline OR in in lieu of a degree, a High School Diploma/GED and minimum 4 years equivalent work experience. Additional requirements include:
  • Minimum of 4 years of years of experience in information security or related technology experience required, experience in the securities or financial services industry is a plus.
  • Minimum 2 years of cyber security and incident response or security operations related to the detection, analysis, containment, eradication and recovery from cyber security incidents
Desired Skills/Knowledge:
  • Strong verbal and written communication skills.
  • Ability to perform logical problem solving.
  • Experience of working in high performing teams and understand the dynamics of teamwork in a SOC environment.
  • Industry certifications such as CISSP, GCIH, AWS Certified Cloud Practitioner, AWS Certified Security Specialty, and other cybersecurity certifications are a plus.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
Synchrony logo
Synchrony

Financial Services

Draper

RecommendedJobs for You

Gurugram, Haryana, India

Kozhikode, Kerala, India