LOG IN
SIGN UP
Canary Wharfian - Online Investment Banking & Finance Community.
Sign In
Forgot password?
Don't have an account?
or
Join Canary Wharfian
By signing up, you agree to our Terms & Conditions and Privacy Policy.
or

Cyber Defense Response Analyst III

ExperiencedNo visa sponsorship
CME Group logo

at CME Group

Other

Posted 2 days ago

No clicks

**Cyber Defense Response Analyst III:** Mid-level technical role at CME Group, responding to and remediating medium-severity cyber incidents globally. Key responsibilities include driving incident response lifecycle, conducting threat hunts, automating security tools, leading tabletop exercises, and documenting workflows. Utilize industry-leading tools, AI, Python, REST APIs, and operate in multi-cloud environments. Requires 4+ years of DFIR experience, SIEM/data analysis, hands-on forensics/malware analysis tools, and cloud experience. Bachelor's degree required, GCIH, GCFA, OSCP, or similar certifications preferred. Collaborative, detail-oriented innovators with exceptional curiosity thrive in this role. Located in Bangalore, full-time.

Compensation
Not specified

Currency: Not specified

City
Bengaluru
Country
India

Full Job Description

The Cyber Defense Response Analyst III is a mid-level technical role focused on responding to and remediating cyber incidents at CME Group, a major player in global financial markets. We are looking for someone who finds joy in the inner workings of technology, with the occasional tendency to get lost in deep research. In this role, you will use industry leading tools while responding to medium-severity incidents in collaboration with teammates around the globe.

We provide autonomy, and great learning environment with access to top tier technology, opportunities to align project work with your individual interests, and access to our extensive training programs, including annual SANS training

Primary Responsibilities:

  • Digital Forensics and Incident Response: Drive the full incident response lifecycle from initial triage to remediation, confidently applying specialty skills like endpoint forensics and malware analysis. Be ready to operate in a multi-cloud environment.

  • Threat Hunting: Conduct regular threat hunts to identify misconfigurations, detection gaps, and other anomalies.

  • Automation & Engineering: Use AI, Python and REST APIs to build/integrate security tools for ad-hoc needs, while working with automation engineers to develop heavy-duty solutions for advanced use-cases.

  • Tabletop Exercises (TTX): Lead regular tabletop exercises to improve team readiness.

  • Technical Documentation: Contribute continuously to our internal knowledge base of incident response runbooks and playbooks, keeping it exhaustive, accurate, and reflective of the latest workflows.

Ideal Candidate Attributes:

  • Innate Curiosity: An exceptional level of curiosity and a track record of self-teaching advanced technical concepts.

  • Highly Innovative: You have a consistent record of taking unorthodox approaches to challenges and a demonstrated ability to innovate within information technology domains.

  • A "Researcher" Mindset: A passion for collecting facts, debating details, and diving into "rabbit holes" to solve complex problems.

  • Adept at High-Pressure Communication: Ability to deal effectively at all levels of the organization and translate technical research into clear, actionable intelligence for leadership.

  • Highly Detail Oriented: Very strong attention to detail; you notice things others often dont.

  • Impactfully Collaborative: You excel at technical collaboration and helping teams deliver high-impact.

Preferred Technical Qualifications:

  • DFIR Background: 4+ years of practical experience with Digital Forensics, Incident Handling, and/or Malware Analysis.

  • SIEM/Data Analysis: 4+ years of experience with Q Radar, Sentinel, Splunk, Chronicle, ArcSight, or similar log management technologies.

  • Demonstrated hands-on experience with leading forensics tools like KAPE, EnCase, Cellebrite, FTK, Magnet Axiom, and Autopsy, plus comfort with malware analysis tools like Ghidra, Ida Pro, PEStudio, and x64dbg.

  • Strong IT Fundamentals: Strong understanding of computer networking, operating systems, and their intersection with Cybersecurity.

  • Programming Skills: Development experience with Python, specifically for data manipulation (Pandas) and interacting with REST APIs.

  • Cloud Experience: Practical experience with AWS, GCP, or Azure.

Education & Certifications:

  • Education: BA/BS in Engineering, Computer Science, or Information Security (non-tech degrees acceptable with appropriate levels of Information Security job experience and/or certifications)

  • Certifications: GCIH, GCFE, GCFA, OSCP, Sec+, and similar cyber-oriented certifications are desired

CME Group: Where Futures are Made

CME Group is the worlds leading derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And were looking for more.

At CME Group, we embrace our employees' unique experiences and skills to ensure that everyones perspectives are acknowledged and valued. As an equal-opportunity employer, we consider all potential employees without regard to any protected characteristic.

Important Notice: Recruitment fraud is on the rise, with scammers using misleading promises of job offers and interviews to solicit money and personal information from job seekers. CME Group adheres to established procedures designed to maintain trust, confidence and security throughout our recruitment process. Learn more here.

Location: Bangalore - Bagmane Tridib

Time Type: Full time

Cyber Defense Response Analyst III

Compensation

Not specified

City: Bengaluru

Country: India

CME Group logo
Other

2 days ago

No clicks

at CME Group

ExperiencedNo visa sponsorship

**Cyber Defense Response Analyst III:** Mid-level technical role at CME Group, responding to and remediating medium-severity cyber incidents globally. Key responsibilities include driving incident response lifecycle, conducting threat hunts, automating security tools, leading tabletop exercises, and documenting workflows. Utilize industry-leading tools, AI, Python, REST APIs, and operate in multi-cloud environments. Requires 4+ years of DFIR experience, SIEM/data analysis, hands-on forensics/malware analysis tools, and cloud experience. Bachelor's degree required, GCIH, GCFA, OSCP, or similar certifications preferred. Collaborative, detail-oriented innovators with exceptional curiosity thrive in this role. Located in Bangalore, full-time.

Full Job Description

The Cyber Defense Response Analyst III is a mid-level technical role focused on responding to and remediating cyber incidents at CME Group, a major player in global financial markets. We are looking for someone who finds joy in the inner workings of technology, with the occasional tendency to get lost in deep research. In this role, you will use industry leading tools while responding to medium-severity incidents in collaboration with teammates around the globe.

We provide autonomy, and great learning environment with access to top tier technology, opportunities to align project work with your individual interests, and access to our extensive training programs, including annual SANS training

Primary Responsibilities:

  • Digital Forensics and Incident Response: Drive the full incident response lifecycle from initial triage to remediation, confidently applying specialty skills like endpoint forensics and malware analysis. Be ready to operate in a multi-cloud environment.

  • Threat Hunting: Conduct regular threat hunts to identify misconfigurations, detection gaps, and other anomalies.

  • Automation & Engineering: Use AI, Python and REST APIs to build/integrate security tools for ad-hoc needs, while working with automation engineers to develop heavy-duty solutions for advanced use-cases.

  • Tabletop Exercises (TTX): Lead regular tabletop exercises to improve team readiness.

  • Technical Documentation: Contribute continuously to our internal knowledge base of incident response runbooks and playbooks, keeping it exhaustive, accurate, and reflective of the latest workflows.

Ideal Candidate Attributes:

  • Innate Curiosity: An exceptional level of curiosity and a track record of self-teaching advanced technical concepts.

  • Highly Innovative: You have a consistent record of taking unorthodox approaches to challenges and a demonstrated ability to innovate within information technology domains.

  • A "Researcher" Mindset: A passion for collecting facts, debating details, and diving into "rabbit holes" to solve complex problems.

  • Adept at High-Pressure Communication: Ability to deal effectively at all levels of the organization and translate technical research into clear, actionable intelligence for leadership.

  • Highly Detail Oriented: Very strong attention to detail; you notice things others often dont.

  • Impactfully Collaborative: You excel at technical collaboration and helping teams deliver high-impact.

Preferred Technical Qualifications:

  • DFIR Background: 4+ years of practical experience with Digital Forensics, Incident Handling, and/or Malware Analysis.

  • SIEM/Data Analysis: 4+ years of experience with Q Radar, Sentinel, Splunk, Chronicle, ArcSight, or similar log management technologies.

  • Demonstrated hands-on experience with leading forensics tools like KAPE, EnCase, Cellebrite, FTK, Magnet Axiom, and Autopsy, plus comfort with malware analysis tools like Ghidra, Ida Pro, PEStudio, and x64dbg.

  • Strong IT Fundamentals: Strong understanding of computer networking, operating systems, and their intersection with Cybersecurity.

  • Programming Skills: Development experience with Python, specifically for data manipulation (Pandas) and interacting with REST APIs.

  • Cloud Experience: Practical experience with AWS, GCP, or Azure.

Education & Certifications:

  • Education: BA/BS in Engineering, Computer Science, or Information Security (non-tech degrees acceptable with appropriate levels of Information Security job experience and/or certifications)

  • Certifications: GCIH, GCFE, GCFA, OSCP, Sec+, and similar cyber-oriented certifications are desired

CME Group: Where Futures are Made

CME Group is the worlds leading derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And were looking for more.

At CME Group, we embrace our employees' unique experiences and skills to ensure that everyones perspectives are acknowledged and valued. As an equal-opportunity employer, we consider all potential employees without regard to any protected characteristic.

Important Notice: Recruitment fraud is on the rise, with scammers using misleading promises of job offers and interviews to solicit money and personal information from job seekers. CME Group adheres to established procedures designed to maintain trust, confidence and security throughout our recruitment process. Learn more here.

Location: Bangalore - Bagmane Tridib

Time Type: Full time