- Location
- Bangalore, India
- Workplace
- Hybrid
- Type
- Full-time
- Department
- Security
- Closing date
- Today
- Source
- Workday
Description
Job Title
Summary of the Role
Play an important role in helping safeguard the organization's digital assets. As a Senior Security Analyst within the Global Security Operations Center (GSOC), you will support digital forensic investigations and incident response activities, helping detect, investigate, contain, and respond to cybersecurity threats across enterprise and cloud environments.
In This Role You'll / Your Main Responsibilities
Digital Forensics and Incident Response
- Coordinate and conduct forensic investigations involving ransomware, phishing, malware, insider threats, account compromise, and data exfiltration incidents while identifying root causes, attack scope, and persistence mechanisms.
- Perform endpoint and cloud forensic investigations across Windows, Linux, macOS, Microsoft 365, Microsoft Azure, Amazon Web Services (AWS), and other environments, including analysis of memory, disks, event logs, browser artifacts, and file systems.
- Preserve, review, and document digital evidence in accordance with evidence handling and chain-of-custody requirements, while supporting Legal, Human Resources (HR), and Compliance investigations.
- Prepare clear forensic reports, communicate findings, and recommend actions that support business and security objectives.
- Contribute to the continuous improvement of investigation methodologies, forensic playbooks, and incident response procedures.
Security Operations
- Investigate and respond to security alerts generated by Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), email security, cloud security, identity and access management (IAM), and network security solutions.
- Coordinate security incident triage, investigation, containment, and recovery activities.
- Perform proactive threat hunting using endpoint, network, and cloud telemetry data.
- Identify opportunities to improve detection coverage and contribute to new detection use cases based on investigation findings.
- Support malware analysis, indicators of compromise (IOCs) enrichment, MITRE ATT&CK mapping, and knowledge sharing with security operations colleagues.
About the Ideal Candidate
- Experience in Digital Forensics and Incident Response (DFIR), including investigations involving ransomware, malware, phishing, insider threats, account compromise, and data exfiltration.
- Practical experience conducting endpoint and cloud forensic investigations across Windows, Linux, macOS, Microsoft 365, and cloud platforms.
- Experience using SIEM and Extended Detection and Response (XDR) technologies such as Microsoft Sentinel, Splunk, Microsoft Defender XDR, CrowdStrike Falcon, SentinelOne, or Cortex XDR, along with industry-standard forensic tools.
- Knowledge of the MITRE ATT&CK framework, Cyber Kill Chain methodology, attacker tactics, techniques, and procedures (TTPs), threat hunting, and malware analysis practices.
- Effective problem-solving, communication, collaboration, and mentoring skills, with the ability to explain technical findings to both technical and non-technical stakeholders.
Qualifications
- Degree in a related field or equivalent practical experience.
- Relevant industry certifications such as Certified Information Systems Security Professional (CISSP), GIAC Certified Forensic Analyst (GCFA), GIAC Certified Forensic Examiner (GCFE), Certified Hacking Forensic Investigator (CHFI), or similar certifications may support success in this role.
Relevant Experience
Experience in one or more of the following areas:
- Digital Forensics and Incident Response
- Advanced Threat Detection and Security Operations
- Malware Analysis and Threat Investigation
- Network Security and Threat Hunting
What We Can Offer You
- 🎯 A critical mission and purpose – At Amadeus, you'll power the future of travel with a meaningful mission.
- 🌍 A truly global DNA – Work in a global environment with diverse teams and perspectives.
- 🎓 Great opportunities to learn – Access continuous learning through training and daily interactions.
- 🤝 A caring environment – We support both professional growth and personal well-being.
- 💰 A complete rewards offer – Enjoy attractive compensation, health benefits, and flexible working options.
- 🌈 A diverse, equitable, and inclusive community – We foster belonging and fair treatment for all.
- 📈 A reliable company – Trust and reliability are core to our relationships.
Diversity & Inclusion
Amadeus aspires to be a leader in Diversity and Inclusion in the tech industry, enabling every employee to reach their full potential by fostering a culture of belonging and fair treatment, attracting the best talent from all backgrounds, and as a role model for an inclusive employee experience.
Amadeus is an equal opportunity employer and committed to an accessible recruitment process. All qualified applicants will receive consideration for employment without regard to gender, race, ethnicity, sexual orientation, age, beliefs, disability or any other characteristics protected by law.
Be aware of recruitment scams
Amadeus Group never charges fees, requests payment, or asks for financial information during recruitment. All legitimate opportunities are communicated solely through official Amadeus channels, including our careers website. Any payment request or outreach via unofficial platforms (e.g., WhatsApp, Telegram) should be treated as fraudulent.