Honeywell Aerospace Logo

Honeywell Aerospace

Advanced Cyber Sec Archt/Engr

Posted 4 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in India
Mid level
Remote
Hiring Remotely in India
Mid level
Lead proactive threat hunting and detection engineering using Splunk ES and other security platforms. Design and maintain detections, perform vulnerability assessments, mentor junior analysts, collaborate with global teams on incident response, automate processes, and document procedures to strengthen security posture.
The summary above was generated by AI
Qualifications

Senior Threat Analyst Role 

Are you passionate about helping to drive global Cybersecurity innovation and change?  Do you thrive in environments that encourage critical thinking, creativity, and challenging the status quo?

Detection and Response team is looking for a senior analyst for a hybrid role with involvement in Threat Hunting and Detection Engineering. In this role, you will guide identification and analysis of advanced security threats through proactive threat hunting and monitoring of network activity. You will leverage your expertise in detection engineering, particularly within Splunk ES, to design and implement effective detection rules, that will help identify and defend the company infrastructure against cyber threat actors.

This position allows deep insight into various aspects of cyber security and will require attention to detail, a sense of urgency, and strong communication skills.


Duties and Responsibilities


  • Lead the identification and analysis of sophisticated security threats using advanced tools and methods, including Splunk ES.
  • Conduct proactive threat hunting activities, developing and executing hypotheses to uncover potential security breaches.
  • Design, implement, and optimize detection rules and alerts within Splunk ES and other security platforms to enhance threat visibility.
  • Perform comprehensive emerging vulnerability assessments and recommend effective mitigation strategies to strengthen the organization's security posture.
  • Mentor junior analysts, providing guidance and training on threat hunting methodologies, detection engineering, and the use of security tools.
  • Collaborate with various global teams, including incident response, security operations, and engineering, to integrate threat intelligence into security processes.
  • Stay up to date with the latest trends in cybersecurity and threat intelligence, continuously refining strategies and processes to adapt to emerging threats.
  • Constantly optimize work procedures and automate recurring tasks. Develop and update technical documentation and formulate work instructions to address repeating issues.


Key Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, or equivalent experience.
  • 4+ years of experience in Information Security.
  • 3+ years of experience in a Threat Hunting or Threat intelligence role.
  • Experience with incident response and digital forensics.
  • Experience with creating and maintaining detections and alerts.
  • Experience with Splunk ES and Microsoft XDR.
  • Good technical knowledge of Windows/Linux operating systems, various types of applications, and networking technologies.
  • Analytical skills in threat, vulnerability, and intrusion detection analysis.
  • Keen understanding of threat vectors as well as exfiltration techniques.
  • Attention to detail.
  • Ability to develop and follow complex work instructions and documentation.
  • Willingness to learn.

We value

  • Knowledge of OT cybersecurity landscape.
  • Experience with SOAR Solutions like XSOAR/Demisto.
  • Knowledge in cloud security (Azure, AWS, MS Office 365).
  • Knowledge of Linux operating system.
  • One or more widely recognized certifications from renowned institutions such as GIAC/SANS, ISC/CISSP or Microsoft.
  • Detailed knowledge of Endpoint Detection and Response tools (e.g., Carbon Black or MS Defender ATP).
  • Knowledge of scripting in Python or PowerShell.
  • Understanding of ITIL process, such as Incidents, Change & Problem management.
  • Experience in working in a global, process-driven organization.
About UsHoneywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments – powered by our Honeywell Forge software – that help make the world smarter, safer and more sustainable.

Similar Jobs

Yesterday
In-Office or Remote
Senior level
Senior level
Aerospace • Security • Energy • Industrial
Design, implement, and support Active Directory and hybrid identity solutions (Entra ID/AAD Connect). Perform AD builds, migrations, health checks, backups, hardening, patching, and conditional access/MFA enforcement. Configure Microsoft Defender (MDI/MDE), run assessments, remediate risks, automate with PowerShell/KQL, collaborate with vulnerability/compliance teams, and support production change management.
Top Skills: Active DirectoryAd ReplicationAzure Ad ConnectAzure BackupsBmrCertificate ServicesConditional AccessDnsDomain ControllerEntra IdFsmo RolesGroup Policy (Gpo)Hybrid IdentityIdentity ProtectionKqlMfaMicrosoft Defender For Endpoint (Mde)Microsoft Defender For Identity (Mdi)PimPowershellRmadServicenowSsprVulnerability Management
Yesterday
In-Office or Remote
Senior level
Senior level
Aerospace
Implement and manage Microsoft Active Directory domains and domain controllers (builds, promotion/demotion, replication, DNS, GPOs, FSMO, certificates). Design backups, configure MDI/MDE, perform health checks, patching, hardening, and migrations to Entra ID. Build and enforce Conditional Access and MFA, run AD/Azure assessments and remediation, automate with PowerShell and KQL, coordinate with vulnerability/compliance teams, support production with change management.
Top Skills: Aad ConnectActive DirectoryAd Certificate ServicesAzure Active Directory (Aad)Azure BackupConditional AccessDnsEntra IdFsmo RolesGroup Policy (Gpo)Hybrid IdentityIdentity ProtectionKqlMfaMicrosoft Defender For Endpoint (Mde)Microsoft Defender For Identity (Mdi)PimPowershellServicenowSspr
8 Days Ago
In-Office or Remote
India
Senior level
Senior level
Aerospace • Security • Energy • Industrial
The role involves leading threat identification, conducting proactive threat hunts, designing detection rules, mentoring junior analysts, and collaborating globally to enhance cybersecurity posture.
Top Skills: AWSCloud Security (AzureEndpoint Detection And ResponseMicrosoft XdrMs Office 365)PowershellPythonSiem ToolsSplunk Es

What you need to know about the Delhi Tech Scene

Delhi, India's capital city, is a place where tradition and progress co-exist. While Old Delhi is known for its rich history and bustling markets, New Delhi is defined by its modern architecture. It's clear the region places a strong emphasis on preserving its cultural heritage while embracing technological advancements, particularly in artificial intelligence, which plays a central role in shaping the city's tech landscape, fueled by investments in research and development.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account