Advanced Cyber Sec Archt/Engr

Posted 9 Hours Ago
Be an Early Applicant
Bengaluru, Bengaluru Urban, Karnataka, IND
In-Office
Mid level
Aerospace
The Role
Leads advanced threat hunting and detection engineering activities, using Splunk ES and other security platforms to identify threats, develop detection rules, assess vulnerabilities, and improve security visibility. The role supports incident response, digital forensics, threat intelligence integration, process automation, documentation, and mentoring junior analysts. Collaboration occurs across global security operations, incident response, and engineering teams.
Summary Generated by Built In
Qualifications

Are you passionate about helping to drive global Cybersecurity innovation and change?  Do you thrive in environments that encourage critical thinking, creativity, and challenging the status quo?

Detection and Response team is looking for a senior analyst for a hybrid role with involvement in Threat Hunting and Detection Engineering. In this role, you will guide identification and analysis of advanced security threats through proactive threat hunting and monitoring of network activity. You will leverage your expertise in detection engineering, particularly within Splunk ES, to design and implement effective detection rules, that will help identify and defend the company infrastructure against cyber threat actors.

This position allows deep insight into various aspects of cyber security and will require attention to detail, a sense of urgency, and strong communication skills.


Duties and Responsibilities


  • Lead the identification and analysis of sophisticated security threats using advanced tools and methods, including Splunk ES.
  • Conduct proactive threat hunting activities, developing and executing hypotheses to uncover potential security breaches.
  • Design, implement, and optimize detection rules and alerts within Splunk ES and other security platforms to enhance threat visibility.
  • Perform comprehensive emerging vulnerability assessments and recommend effective mitigation strategies to strengthen the organization's security posture.
  • Mentor junior analysts, providing guidance and training on threat hunting methodologies, detection engineering, and the use of security tools.
  • Collaborate with various global teams, including incident response, security operations, and engineering, to integrate threat intelligence into security processes.
  • Stay up to date with the latest trends in cybersecurity and threat intelligence, continuously refining strategies and processes to adapt to emerging threats.
  • Constantly optimize work procedures and automate recurring tasks. Develop and update technical documentation and formulate work instructions to address repeating issues.


Key Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, or equivalent experience.
  • 4+ years of experience in Information Security.
  • 3+ years of experience in a Threat Hunting or Threat intelligence role.
  • Experience with incident response and digital forensics.
  • Experience with creating and maintaining detections and alerts.
  • Experience with Splunk ES and Microsoft XDR.
  • Good technical knowledge of Windows/Linux operating systems, various types of applications, and networking technologies.
  • Analytical skills in threat, vulnerability, and intrusion detection analysis.
  • Keen understanding of threat vectors as well as exfiltration techniques.
  • Attention to detail.
  • Ability to develop and follow complex work instructions and documentation.
  • Willingness to learn.

We value

  • Knowledge of OT cybersecurity landscape.
  • Experience with SOAR Solutions like XSOAR/Demisto.
  • Knowledge in cloud security (Azure, AWS, MS Office 365).
  • Knowledge of Linux operating system.
  • One or more widely recognized certifications from renowned institutions such as GIAC/SANS, ISC/CISSP or Microsoft.
  • Detailed knowledge of Endpoint Detection and Response tools (e.g., Carbon Black or MS Defender ATP).
  • Knowledge of scripting in Python or PowerShell.
  • Understanding of ITIL process, such as Incidents, Change & Problem management.
  • Experience in working in a global, process-driven organization.
About UsHoneywell Technologies is a global, pure-play automation company with a legacy of innovating to help solve the world’s most mission-critical challenges, enhancing the quality of life for people and communities around the world. We serve the building, industrial and process sectors with a broad portfolio of services, solutions and products, underpinned by our Honeywell Technologies Accelerator operating system and Honeywell Technologies Forge intelligence layer. By combining the deep domain expertise of our more than 50,000 employees with decades of data from our global installed base, we are uniquely positioned to lead the industrial sector’s transition from automation to autonomy.

Skills Required

  • Bachelor’s degree in Cybersecurity, Computer Science, or equivalent experience
  • 4+ years of experience in Information Security
  • 3+ years of experience in threat hunting or threat intelligence
  • Experience with incident response and digital forensics
  • Experience creating and maintaining detections and alerts
  • Experience with Splunk ES and Microsoft XDR
  • Technical knowledge of Windows, Linux, applications, and networking technologies
  • Analytical skills in threat, vulnerability, and intrusion detection analysis
  • Understanding of threat vectors and exfiltration techniques
  • Ability to develop and follow complex work instructions and documentation
  • Attention to detail
  • Willingness to learn
  • Knowledge of OT cybersecurity
  • Experience with SOAR solutions such as XSOAR or Demisto
  • Knowledge of cloud security, including Azure, AWS, and Microsoft Office 365
  • Recognized cybersecurity certifications such as GIAC, SANS, ISC, CISSP, or Microsoft certifications
  • Knowledge of Endpoint Detection and Response tools such as Carbon Black or Microsoft Defender ATP
  • Python or PowerShell scripting knowledge
  • Understanding of ITIL incident, change, and problem management processes
  • Experience working in a global, process-driven organization
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Mississauga, Ontario
10,000 Employees
Year Founded: 1914

Similar Jobs

Honeywell Logo Honeywell

Advanced Cyber Sec Archt/Engr

Aerospace • Security • Energy • Industrial
In-Office
2 Locations
110269 Employees

Honeywell Logo Honeywell

Advanced Cyber Sec Archt/Engr

Aerospace • Security • Energy • Industrial
In-Office
2 Locations
110269 Employees
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
10000 Employees

Honeywell Logo Honeywell

Advanced Cyber Sec Archt/Engr

Aerospace • Security • Energy • Industrial
In-Office
2 Locations
110269 Employees

Similar Companies Hiring

Red 6 Thumbnail
Aerospace • Hardware • Software • Virtual Reality • Defense
Orlando, Florida
186 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account