S&P Global logo
S&P GlobalPosted 2 weeks ago

Senior Manager - Security Operations

On-siteHyderabad, Telangana, India

Full TimeSenior LevelEnterprise

Job Summary

Develop, tune, and maintain detection rules and analytics within Google SecOps (Chronicle Security Operations) using YARA-L and other tools tailored to S&P Global's multi-cloud and hybrid environments. Conduct proactive threat hunting and log analysis across global infrastructure, integrating actionable threat intelligence into detection logic while collaborating with Threat Intelligence, Incident Response, and SOC teams. Automate detection and response processes using scripting languages and orchestration tools, and maintain documentation, detection playbooks, and knowledge bases focused on cloud security operations. Support compliance initiatives and reporting by providing detection-related evidence and metrics from SIEM and data lake platforms, ensuring alignment with frameworks like NIST and ISO/IEC 27001.

Required Qualifications

  • Minimum 7 years of experience in cyber security detection engineering and/or SOC operations
  • Strong understanding of cloud security (AWS, Azure, GCP) and hybrid environments
  • Proficiency in log analysis, threat hunting, and incident response
  • Broad knowledge of Active Directory, Microsoft Security products, Identity Management, network security, endpoint security, cloud security, vulnerability management, security incident response and malware
  • Understanding of cyber security and IT disciplines including networking, operating systems, authentication protocols, general enterprise network architecture, and security incident response
  • Strong written and oral communication skills including the ability to communicate and interact effectively with users that do not have a security background and are a security spokesperson throughout the organization
  • Bachelor's degree in computer science, Information Security, or related field
  • Hands-on experience with SIEM platforms (Splunk, Google SecOps) and EDR tools
  • Excellent communication and documentation skills
  • Ability to work effectively in a global, collaborative team environment
  • Proficiency in using Cribl for data stream management, log routing, filtering, enrichment, and optimization to enhance security analytics and improve detection capabilities within large-scale cloud and hybrid environments
  • Automate detection and response processes using scripting languages (Python, PowerShell, Google Cloud Functions) and orchestration tools
  • Solid understanding of cloud security concepts across AWS, Azure and GCP environments
  • Conduct proactive threat hunting and log analysis across global infrastructure including cloud (AWS, Azure, GCP)
  • Integrate actionable threat intelligence into detection logic, collaborating closely with Threat Intelligence, Incident Response, and SOC teams to optimize detection and response workflows
  • Demonstrate strong analytical and problem-solving skills to identify and mitigate threats in large-scale enterprise environments
  • Stay up-to-date with the latest security threats, vulnerabilities, and attack techniques relevant to the financial sector
  • Support compliance initiatives and reporting (e.g., SOX, GDPR) by providing detection-related evidence and metrics from SIEM, Data lake platforms
  • Participate in the evaluation and deployment of new security technologies and products within the security ecosystem
  • Maintain and update documentation, detection playbooks, and knowledge bases, with a focus on Cloud security operations and best practices
  • Solid understanding of cyber security governance frameworks (e.g., NIST, ISO/IEC 27001, CIS Controls)
  • Experience in implementing and maintaining security policies, standards, and procedures
  • Ability to assess and ensure compliance with regulatory requirements (e.g., SOX, GDPR) relevant to the financial sector
  • Proficiency in documenting and reporting security controls, risk assessments, and audit findings
  • Familiarity with conducting gap analyses to identify and remediate compliance deficiencies
  • Strong knowledge of risk management principles and their application in enterprise environments
  • Experience collaborating with internal audit, risk, and compliance teams to support security initiatives
  • Ability to translate technical security requirements into clear, actionable policies and guidelines
  • Up-to-date awareness of emerging regulations, industry standards, and best practices in cyber security governance and compliance
  • Must be able to lift 50 lbs

Desired Qualifications

  • Ability to be proactive in keeping yourself updated with security news/issues/breaches/tools/blogs on the internet
  • Hands-on experience with security information and event management (SIEM) tools, intrusion detection and prevention systems, and related security technologies
  • Security certifications (GCDA, GCIH, CISSP, CEH, or similar)
  • Familiarity with MITRE ATT&CK, NIST, and other security frameworks
  • Experience with security automation and orchestration platforms
  • Knowledge of regulatory requirements (SOX, GDPR, etc.)

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce