Threat Hunting - Cyber Security L4
Summary:
The Senior Threat Hunter will lead advanced threat hunting, forensics, and malware investigations across enterprise, email, and cloud environments. This role focuses on detecting, analyzing, and mitigating complex cyber threats through endpoint forensics, reverse engineering, and detection engineering.
Key Responsibilities:
• Perform proactive hunts in Microsoft Sentinel, Defender, Zscaler, and WAF to detect advanced threats.
• Conduct deep forensic analysis using Amcache, ShimCache, Prefetch, and memory artifacts to identify intrusion activity.
• Reverse-engineer malware and scripts to extract IOCs and understand persistence methods.
• Investigate email and cloud threats across Microsoft 365, Entra ID, and Azure AD.
• Develop custom detections, automate forensic tasks, and maintain MITRE ATT&CK–aligned coverage.
Required Expertise:
• Minimum 10+ years in Cybersecurity with 8+ years in DFIR (Digital Forensics and Incident Response) and malware analysis.
• Strong understanding of Windows internals, process injection, and event log analysis.
• Hands-on experience with tools such as Volatility, IDA Pro/Ghidra, PowerShell forensic scripting, and Microsoft Defender Suite.
• Familiarity with MITRE ATT&CK, NIST SP 800-61, and detection engineering practices.
͏
Do
-
Ensuring customer centricity by providing apt cybersecurity
- Monitoring and safeguarding the log sources and security access
- Planning for disaster recovery in the event of any security breaches
- Monitor for attacks, intrusions and unusual, unauthorized or illegal activity
- Performs moderately complex log reviews and forensic analysis to identify unauthorized or unacceptable access to data or systems
- Conduct security assessments, risk analysis and root cause analysis of security incidents
- Handling incidents escalated by the L1 team in 24x7 rotational shifts
- Use advanced analytics tools to determine emerging threat patterns and vulnerabilities
- Completing all tactical security operations tasks associated with this engagement.
- Analyses all the attacks and come up with remedial attack analysis
- Conduct detailed analysis of incidents and create reports and dashboards
-
Stakeholder coordination & audit assistance
- Liaise with stakeholders in relation to cyber security issues and provide future recommendations
- Maintain an information security risk register and assist with internal and external audits relating to information security
- Assist with the creation, maintenance and delivery of cyber security awareness training for colleagues
- Advice and guidance to employees on issues such as spam and unwanted or malicious emails
͏
Deliver
|
No. |
Performance Parameter |
Measure |
|
1. |
Customer centricity |
Timely security breach solutioning to end users, Internal stakeholders & external customers experience |
|
2. |
Process Adherence |
Adherence to SLAâÃÂÃÂs (90-95%), response time and resolution time TAT |
͏
͏
Experience: 5-8 Years .
Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention.