AI-Driven Security Engineer for SecOps
Budget: ₹12,500 – ₹37,500 INR
We are seeking a highly skilled and proactive Security Engineer to join our Operations Center team. The ideal candidate will have a strong background in cybersecurity, coupled with experience in leveraging AI and machine learning (ML) technologies, particularly in the context of Google SecOps platform Google Chronicle, to enhance the detection, analysis, and response to security incidents. This role is integral to safeguarding digital infrastructure, ensuring rapid detection of threats, and supporting continuous improvement of security processes.
Key Responsibilities:
Threat Monitoring & Detection:
Monitor security alerts using traditional tools and AI/ML systems.
Investigate and correlate security events to assess potential threats.
Leverage Google Chronicle for enhanced visibility and threat intelligence.
Use AI to identify anomalies and improve detection accuracy.
Participate in on-call rotations for critical incidents.
Incident Response & Analysis:
Investigate and automate initial analysis of security incidents using AI.
Respond to incidents, including containment, eradication, and recovery.
Perform root cause analysis and recommend mitigation strategies.
Use Google SecOps and Chronicle for data centralization and workflow automation.
Apply machine learning to identify emerging threats.
Google SecOps & Chronicle Integration:
Optimize Google SecOps tools for improved threat visibility and automated workflows.
Collaborate with IT, Security, and Data Science teams to integrate Google Chronicle.
Enhance threat detection and incident resolution with Chronicle.
Security Automation:
Develop automated workflows for common incidents using AI for faster response.
Automate SOC tasks like log analysis and incident classification.
Reporting & Documentation:
Create detailed reports on incidents and AI-driven threat intelligence.
Prepare performance reports highlighting improvements and mitigation outcomes.
Provide recommendations for security improvements and help develop playbooks.
Qualifications:Education:
Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent work experience.
Relevant certifications (e.g., CISSP, CISM, CEH) are a plus.
Experience:
1+ years of experience in a Security Operations Center (SOC) or a similar security-focused role.
Hands-on experience with security analytics, log management, threat hunting, and incident response.
Interest in applying automation and/or artificial intelligence and machine learning techniques to cybersecurity tasks, such as threat detection, anomaly detection, and security automation.
Technical Skills:
Strong understanding of cybersecurity concepts and frameworks (e.g., NIST, Mitre, ISO, Kill Chain).
Experience with tools for cybersecurity, such as intrusion detection systems (IDS), SIEM tools, and security automation platforms.
Knowledge of security technologies such as firewalls, endpoint protection, IDS/IPS, and threat intelligence platforms.
Soft Skills:
Strong analytical and problem-solving skills.
Excellent communication skills for interacting with internal teams and external customers.
Ability to work under pressure in a fast-paced, dynamic environment.
Preferred Skills:
Experience with security orchestration, automation, and response (SOAR) platforms.
Exposure to cloud security platforms (e.g., AWS, Azure, Google Cloud) and the associated risks.
Practical experience working with Google SecOps tools and Chronicle for centralized threat intelligence and event correlation.
Hands-on experience with the Microsoft security platform (Sentinel, Defender) is a plus.
Why Join Us:
Remote work opportunity (anywhere in India)
Key Responsibilities:
Threat Monitoring & Detection:
Monitor security alerts using traditional tools and AI/ML systems.
Investigate and correlate security events to assess potential threats.
Leverage Google Chronicle for enhanced visibility and threat intelligence.
Use AI to identify anomalies and improve detection accuracy.
Participate in on-call rotations for critical incidents.
Incident Response & Analysis:
Investigate and automate initial analysis of security incidents using AI.
Respond to incidents, including containment, eradication, and recovery.
Perform root cause analysis and recommend mitigation strategies.
Use Google SecOps and Chronicle for data centralization and workflow automation.
Apply machine learning to identify emerging threats.
Google SecOps & Chronicle Integration:
Optimize Google SecOps tools for improved threat visibility and automated workflows.
Collaborate with IT, Security, and Data Science teams to integrate Google Chronicle.
Enhance threat detection and incident resolution with Chronicle.
Security Automation:
Develop automated workflows for common incidents using AI for faster response.
Automate SOC tasks like log analysis and incident classification.
Reporting & Documentation:
Create detailed reports on incidents and AI-driven threat intelligence.
Prepare performance reports highlighting improvements and mitigation outcomes.
Provide recommendations for security improvements and help develop playbooks.
Qualifications:Education:
Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent work experience.
Relevant certifications (e.g., CISSP, CISM, CEH) are a plus.
Experience:
1+ years of experience in a Security Operations Center (SOC) or a similar security-focused role.
Hands-on experience with security analytics, log management, threat hunting, and incident response.
Interest in applying automation and/or artificial intelligence and machine learning techniques to cybersecurity tasks, such as threat detection, anomaly detection, and security automation.
Technical Skills:
Strong understanding of cybersecurity concepts and frameworks (e.g., NIST, Mitre, ISO, Kill Chain).
Experience with tools for cybersecurity, such as intrusion detection systems (IDS), SIEM tools, and security automation platforms.
Knowledge of security technologies such as firewalls, endpoint protection, IDS/IPS, and threat intelligence platforms.
Soft Skills:
Strong analytical and problem-solving skills.
Excellent communication skills for interacting with internal teams and external customers.
Ability to work under pressure in a fast-paced, dynamic environment.
Preferred Skills:
Experience with security orchestration, automation, and response (SOAR) platforms.
Exposure to cloud security platforms (e.g., AWS, Azure, Google Cloud) and the associated risks.
Practical experience working with Google SecOps tools and Chronicle for centralized threat intelligence and event correlation.
Hands-on experience with the Microsoft security platform (Sentinel, Defender) is a plus.
Why Join Us:
Remote work opportunity (anywhere in India)