At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
Senior (Signature Development)
KEY Capabilities:
Experience in working with SIEM Solutions such as Splunk or Azure Sentinel.
Experience in working with any of Endpoint Detection and Response tools preferably Crowdstrike, Sentinel One or Microsoft Defender for Endpoint.
Expertise in SIEM and EDR content development with an eye towards behavior-based detection logic.
Strong background in host based and network-based behaviors.
Familiarity of Windows Event ID’s and common application logs.
Knowledge in programming or scripting languages such as Batch Scripting, Python PowerShell, etc.
Experience in purple teaming activities.
Hands-on experience on threat Hunting for identification of interested events for content development.
Analyze and investigate broad range of threats or cyber activities occurring on daily basis.
Provide actionable insights to help identify, detect, prevent, and respond to potentially malicious activities.
Qualification & experience:
Minimum of 3 to 7 years’ experience with in-depth host, network architecture knowledge that will translate over to effective content development.
Minimum of 3 years SOC experience.
An adversarial mindset, understanding the goals, behaviors, and TTPs of threat actors.
Strong oral, written and listening skills are an essential component to effective consulting.
Ability to work at all layers of the OSI models, including being able to explain communication at any level is necessary.
Must have content development knowledge in Endpoint Detection and Response (Defender/CrowdStrike), SIEM (Splunk/Sentinel).
Must have knowledge of Windows and Linux basics including command and script interpreters, PowerShell, registries etc.
Troubleshoot EDR and SIEM platform and application issues, escalate and work with relevant teams to resolve issues.
Certifications in a core security related discipline will be an added advantage.
Certification in any one of the SIEM, EDR or Network Solutions such as Splunk, Azure Sentinel, Falcon Crowdstrike, SentinelOne will be an added advantage.
EY | Building a better working world
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.
Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together.
Applicants
are
advised to research the bonafides of the prospective employer independently. We do NOT
endorse any
requests for money payments and strictly advice against sharing personal or bank related
information. We
also recommend you visit Security Advice for more information. If you suspect any fraud
or
malpractice,
email us at abuse@talentmate.com.
You have successfully saved for this job. Please check
saved
jobs
list
Applied
You have successfully applied for this job. Please check
applied
jobs list
Do you want to share the
link?
Please click any of the below options to share the job
details.
Report this job
Success
Successfully updated
Success
Successfully updated
Thank you
Reported Successfully.
Copied
This job link has been copied to clipboard!
Apply Job
Upload your Profile Picture
Accepted Formats: jpg, png
Upto 2MB in size
Your application for GMS-Senior-SIGDEV
has been successfully submitted!
To increase your chances of getting shortlisted, we recommend completing your profile.
Employers prioritize candidates with full profiles, and a completed profile could set you apart in the
selection process.
Why complete your profile?
Higher Visibility: Complete profiles are more likely to be viewed by employers.
Better Match: Showcase your skills and experience to improve your fit.
Stand Out: Highlight your full potential to make a stronger impression.
Complete your profile now to give your application the best chance!