Find your next role
Discover amazing opportunities across our network of companies committed to gender equality in the workplace.
Software Engineering, IT, Operations
Pune, Maharashtra, India
A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.
As a Technical Consultant in Threat Detection Content & Administration, you will manage and maintain security technology infrastructure, including SIEM, SOAR, EDR, AV, and Cloud security controls. You will develop and deploy use cases, rules, and security policy recommendations to ensure efficient infrastructure functionality. Your primary responsibilities will include: • Develop Use Cases and Rules: Create and tune use cases, rules, and optimization reports to identify malicious activity, and deploy them to the client environment. This involves analyzing system and network activity, indicators of compromise, and attacker tactics. • Maintain Infrastructure: Ensure security technology infrastructure is patched, upgraded, and functioning efficiently, including SIEM, SOAR, EDR, AV, and Cloud security controls. • Apply Security Frameworks: Utilize the MITRE ATT&CK framework to classify attacks, identify attack attribution, and assess risk, and apply the NIST Cybersecurity framework to evaluate the risk of threats. • Deliver Security Policy Recommendations: Provide security policy recommendations based on expertise in Security Incident & Event Management (SIEM), Endpoint Detection and Response technology, anti-malware, anti-spam, network security technologies, and general user and network activity logging policies. • Optimize Security Controls: Continuously monitor and optimize security controls to ensure they are aligned with industry best practices and client needs.
• Exposure to Security Technology Infrastructure: Experience with managing and maintaining security technology infrastructure, including SIEM, SOAR, EDR, AV, and Cloud security controls. • Threat Analysis and Mitigation: Experience with analyzing system and network activity, indicators of compromise, and attacker tactics to identify malicious activity. • Security Framework Application: Experience with applying the MITRE ATT&CK framework to classify attacks, identify attack attribution, and assess risk, as well as utilizing the NIST Cybersecurity framework to evaluate the risk of threats. • Security Policy Development: Experience with developing security policy recommendations based on expertise in Security Incident & Event Management (SIEM), Endpoint Detection and Response technology, anti-malware, anti-spam, network security technologies, and general user and network activity logging policies. • Security Control Optimization: Experience with continuously monitoring and optimizing security controls to ensure alignment with industry best practices and client needs.
• Proficiency in Cloud Security: Exposure to cloud security controls, including deployment and management of cloud-based security solutions, is beneficial for this role. • Familiarity with Network Security: Experience working with network security technologies, including anti-malware and anti-spam solutions, is advantageous for this position. • Knowledge of Logging Policies: Understanding of general user and network activity logging policies is desirable for developing effective security policy recommendations.
In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.
Being an IBMer means you’ll be able to learn and develop yourself and your career, you’ll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.
Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.
Are you ready to be an IBMer?
IBM’s greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.
Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we’re also one of the biggest technology and consulting employers, with many of the Fortune 500 companies relying on the IBM Cloud to run their business.
At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it’s time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.
IBM is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, neurodivergence, age, or other characteristics protected by the applicable law. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
When applying to jobs of your interest, we recommend that you do so for those that match your experience and expertise. Our recruiters advise that you apply to not more than 3 roles in a year for the best candidate experience. For additional information about location requirements, please discuss with the recruiter following submission of your application.