Specialist-Information Security
amadeus · Bangalore · India · On-site
Posted Oct 8, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Job Title
Specialist-Information Security Summary of the Role
Play an important role in helping safeguard the organization's digital assets. As a Senior Security Analyst within the Global Security Operations Center (GSOC), you will support digital forensic investigations and incident response activities, helping detect, investigate, contain, and respond to cybersecurity threats across enterprise and cloud environments.
In This Role You'll / Your Main Responsibilities
Digital Forensics and Incident Response
Coordinate and conduct forensic investigations involving ransomware, phishing, malware, insider threats, account compromise, and data exfiltration incidents while identifying root causes, attack scope, and persistence mechanisms.
Perform endpoint and cloud forensic investigations across Windows, Linux, macOS, Microsoft 365, Microsoft Azure, Amazon Web Services (AWS), and other environments, including analysis of memory, disks, event logs, browser artifacts, and file systems.
Preserve, review, and document digital evidence in accordance with evidence handling and chain-of-custody requirements, while supporting Legal, Human Resources (HR), and Compliance investigations.
Prepare clear forensic reports, communicate findings, and recommend actions that support business and security objectives.
Contribute to the continuous improvement of investigation methodologies, forensic playbooks, and incident response procedures.
Security Operations
Investigate and respond to security alerts generated by Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), email security, cloud security, identity and access management (IAM), and network security solutions.
Coordinate security incident triage, investigation, containment, and recovery activities.
Perform proactive threat hunting using endpoint, network, and cloud telemetry data.
Identify opportunities to improve detection coverage and contribute to new detection use cases based on investigation findings.
Support malware analysis, indicators of compromise (IOCs) enrichment, MITRE ATT&CK mapping, and knowledge sharing with security operations colleagues.
About the Ideal Candidate
Experience in Digital Forensics and Incident Response (DFIR), including investigations involving ransomware, malware, phishing, insider threats, account compromise, and data exfiltration.
Practical experience conducting endpoint and cloud forensic investigations across Windows, Linux, macOS, Microsoft 365, and cloud platforms.
Experience using SIEM and Extended Detection and Response (XDR) technologies such as Microsoft Sentinel, Splunk, Microsoft Defender XDR, CrowdStrike Falcon, SentinelOne, or Cortex XDR, along with industry-standard forensic tools.
Knowledge of the MITRE ATT&CK framework, Cyber Kill Chain methodology, attacker tactics, techniques, and procedures (TTPs), threat hunting, and malware analysis practices.
Effective problem-solving, communication,…