Onsite Senior Associate, Squad Operations – TDR, IAM, VM, SecOps

Posted 19 hours ago

Apply now

About the role

  • Cybersecurity Analyst focusing on threat detection and incident response. Collaborating on vulnerabilities and ensuring a secure client environment at PwC.

Responsibilities

  • Monitor SIEM, EDR, and threat intel dashboards for advanced threat patterns.
  • Conduct deep-dive investigations into suspicious activity and escalate to L3 as needed.
  • Execute containment, eradication, and remediation actions on confirmed incidents (where preapproved).
  • Perform advanced alert tuning, write detection logic, correlation rules, and enrichment logic.
  • Document investigation steps, timelines, actions taken, conclusions, and lessons learned.
  • Perform daily health checks on scanners, credential states, asset discovery, and SLA breach monitoring.
  • Run and analyze network, container, cloud, agent-based, and web-app scans.
  • Maintain credential hygiene, tag governance, and asset deduplication.
  • Validate false positives, categorize exceptions, and assign remediation tasks.
  • Configure RBVM systems with threat-feed weighting, MITRE ATT&CK mapping, and crown-jewel tagging.
  • Manage and document exception workflow, review compensating controls, evidence validation, and SLA adjustments.
  • Perform manual provisioning into enterprise applications (AD, SAP, JDE, Oracle).
  • Execute SOP-driven IAM workflows for PAM, IGA, and Access Management.
  • Produce weekly and monthly operational metrics, SLA reports, and deviation analysis.
  • Identify outliers, noise patterns, abnormalities, and propose tuning or process enhancements.

Requirements

  • 3–6 years of relevant experience in SOC, VM, IAM, or SecOps operations.
  • Strong hands-on experience with SIEM, EDR, VM tools, IAM platforms, Network Security tools like Web, Email gateway, DLP and ITSM systems.
  • Proficient in creating detection logic, correlation rules, and performing threat analysis.
  • Solid understanding of networking, OS security, identity governance, and vulnerability assessment methodologies.
  • Strong communication, documentation, and analytical skills.
  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field.
  • Experience with scripting (Python, PowerShell, Bash).
  • Knowledge of cloud platforms (Azure/AWS/GCP).
  • Understanding of MITRE ATT&CK, vulnerability scoring, threat intelligence.
  • Security certifications such as Security+, CEH, AZ-900, ITIL & other relevant skill certifications.

Benefits

  • Health insurance
  • Professional development opportunities

Job title

Senior Associate, Squad Operations – TDR, IAM, VM, SecOps

Job type

Experience level

Senior

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job