📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

Incident Response Specialist

Wipro · Doha

New
🇬🇧 English
Microsoft Sentinel KQL PowerShell Python Azure AWS GCP SIEM SOAR EDR CSPM Microsoft Defender for Cloud AWS CloudTrail Azure Activity Logs MITRE ATT&CK MITRE ATT&CK for Cloud

Job description

About the role

We are seeking an experienced L3 Incident Response professional with strong expertise in Microsoft Sentinel, Cloud Security, and Web Application attack remediation to join our cybersecurity team. The role leads detection, investigation, and response activities for complex security incidents across multi‑cloud and enterprise environments.

Key responsibilities

  • Lead end‑to‑end response to cybersecurity incidents, including triage, containment, eradication, recovery, root‑cause analysis and post‑incident reviews.
  • Investigate and remediate cloud security incidents such as compromised IAM roles, unauthorized resource creation, storage misconfigurations and container escapes.
  • Respond to complex web‑application attacks (OWASP Top 10, API abuse, injection flaws, web shells) in coordination with application and DevOps teams.
  • Conduct threat hunting and forensic investigations across endpoints, networks, identity systems and multi‑cloud platforms (Azure, AWS, GCP).
  • Design, develop and optimise detection rules, analytics and automated playbooks in Microsoft Sentinel and cloud‑native security tools.
  • Develop automation solutions using KQL, PowerShell, Python and SOAR technologies to improve detection and response efficiency.

Required profile

  • 8–10 years of cybersecurity experience with 3–4 years dedicated to Incident Response.
  • Deep hands‑on knowledge of cloud architectures (Azure, AWS, GCP), IAM, API activity logging and cloud forensics.
  • Extensive experience configuring, tuning and managing Microsoft Sentinel, including advanced KQL queries and playbook development.
  • Strong understanding of web‑application vulnerabilities, HTTP traffic analysis and WAF log interpretation.
  • Proficiency with SIEM, SOAR, EDR and CSPM tools and familiarity with MITRE ATT&CK and MITRE ATT&CK for Cloud frameworks.
  • Excellent analytical, problem‑solving and cross‑functional communication skills.

Required skills

  • Microsoft Sentinel
  • KQL (Kusto Query Language)
  • PowerShell
  • Python
  • Azure, AWS, GCP
  • SIEM, SOAR, EDR, CSPM
  • Microsoft Defender for Cloud
  • AWS CloudTrail, Azure Activity Logs
  • MITRE ATT&CK & MITRE ATT&CK for Cloud

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Wipro.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 18 hours ago

Expires 1 month from now

5 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Wipro

Doha