Qureos
Back to jobs
HCLTech

Facility Engineer GIT

  • Not specified

Posted yesterday

About the role

Gautam Buddha Nagar, Uttar Pradesh
Job Summary

Department: Security Operations Center (SOC)

Location: Noida/Bangalore

Experience: 4–6+ years in Cybersecurity Operations

Shift: 24x7 rotational

Threat Intelligence Analyst

Role Overview:
A Threat Intelligence Analyst is responsible for collecting, analyzing, and delivering actionable intelligence on cyber threats to support proactive defense strategies.

Key Responsibilities:
  • Identify, track, and analyze cyber threats and vulnerabilities.
  • Collect intelligence from open sources, dark web, internal logs, and threat feeds.
  • Analyze attacker tactics, techniques, and procedures (TTPs).
  • Prepare threat intelligence reports, advisories, and briefings.
  • Share Indicators of Compromise (IOCs) with SOC and Incident Response teams.
  • Support incident investigations with threat intelligence insights.
  • Monitor emerging threats and recommend mitigation strategies.
Skills Required:
  • Knowledge of MITRE ATT&CK and Cyber Kill Chain frameworks.
  • Experience with threat intelligence platforms (Anomali, Mandiant, etc.).
  • Understanding of malware analysis and network security.
  • Strong analytical and reporting skills from AI tools
Threat Hunter

Role Overview:
A Threat Hunter proactively searches for hidden threats in enterprise environments that bypass conventional security tools.

Key Responsibilities:
  • Perform proactive and hypothesis-driven threat hunting.
  • Analyze logs, network traffic, and system events.
  • Identify Indicators of Compromise (IOCs) and map to MITRE ATT&CK.
  • Develop and improve detection rules in SIEM and EDR platforms.
  • Correlate internal telemetry with external threat intelligence.
  • Investigate advanced threats such as APTs and insider threats.
  • Support incident response and perform root cause analysis.
  • Generate reports and track metrics like MTTD and dwell time.
Skills Required:
  • Hands-on experience with SIEM and EDR tools (Sentinel, Splunk, CrowdStrike).
  • Scripting skills (Python, PowerShell, KQL).
  • Strong log analysis and investigation skills.
  • Understanding of threat intelligence and attack methodologies.
  • Execute containment actions such as host isolation, account disablement, and blocking malicious IPs/domains
  • Provide technical support during major incidents under ICC direction
  • Escalate complex incidents to L3 analyst Collaborate with IT, threat intelligence, and forensic teams
  • Maintain complete incident documentation and reports
  • Support post-incident review, RCA, and continuous improvement
Qualifications

Bachelor’s degree in Cybersecurity / IT / Computer Science

Certifications preferred: CEH, Security+, CySA+, CISSP (optional)

Key Responsibilities

Key Responsibilities:
  • Perform proactive and hypothesis-driven threat hunting.
  • Analyze logs, network traffic, and system events.
  • Identify Indicators of Compromise (IOCs) and map to MITRE ATT&CK.
  • Develop and improve detection rules in SIEM and EDR platforms.
  • Correlate internal telemetry with external threat intelligence.
  • Investigate advanced threats such as APTs and insider threats.
  • Support incident response and perform root cause analysis.
  • Generate reports and track metrics like MTTD and dwell time.
Skill Requirements
Other Requirements
#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-