Talent Apply
Log in
All jobs
BT

Senior Cybersecurity Incident Responder

Baker Tilly
Bangalore, Karnataka, India
On-site

About this role

About the Role

BTVK Advisory is seeking a Senior Cybersecurity Incident Responder to monitor, analyze, and respond to security incidents across multiple platforms, and to help contain, eradicate, and recover from events while improving the organization’s overall security posture. This role also collaborates with internal teams and external partners to strengthen incident response capabilities.

What You'll Do

  • Monitor and analyze security alerts across platforms like Microsoft Defender, Sentinel, ReliaQuest, LogRhythm, and other security tools.

  • Investigate and respond to cybersecurity incidents, ensuring proper containment, eradication, and recovery.

  • Conduct root cause analysis and document findings for post-incident reviews and process improvements.

  • Collaborate with internal teams and external partners to enhance incident response capabilities.

  • Maintain accurate, timely incident documentation in line with organizational and compliance standards.

  • Develop, maintain, and refine incident response playbooks, procedures, and runbooks.

  • Participate in post-incident reviews to recommend preventive measures and improvements.

  • Support continuous improvement initiatives to strengthen the overall security posture.

  • Participate in a shared on-call rotation, including weekends, with U.S. and global teams.

  • Ensure effective communication during incidents and coordinate with stakeholders for resolutions.

  • What We're Looking For

  • Bachelor's degree or equivalent in Computer Science, Artificial Intelligence, Software Engineering, or a related field.

  • Minimum 3 years of experience in cybersecurity incident response, vulnerability management, or related security operations roles.

  • Hands-on expertise with Microsoft Defender suite (Defender for Endpoint and Defender for M365) and Microsoft Sentinel, including KQL-based investigations.

  • Proficiency with SIEM and security monitoring platforms such as ReliaQuest, LogRhythm, or equivalent tools.

  • Working knowledge of CyberArk, AWS security monitoring, and enterprise security solutions including Azure Security Center.

  • Strong experience in threat hunting, incident triage, EDR, and security investigations.

  • Solid understanding of threat detection methodologies, malware analysis, and the incident response lifecycle.

  • Relevant cybersecurity certifications, such as CISSP (preferred), CEH, GIAC, or Microsoft Security certifications.

  • Excellent written and verbal communication skills, with the ability to document incidents and communicate effectively in English.

Your next opportunity starts here

Prepare, apply, track, interview and get hired — all from one platform, with AI in your corner.

Download app

Or sponsor Premium for someone who's job hunting →