Senior Security Analyst_EDR
Hyderabad
Commercial – Commercial All Departments /
Full-Time /
On-site
Job Description:
We are seeking a proactive and detail-oriented Endpoint Security Engineer to manage and enhance our endpoint protection technologies. This role focuses on deploying, tuning, and monitoring Microsoft Defender products (such as Defender for Endpoint, Defender for Identity, Defender for O365 and Defender Antivirus) with a strong emphasis on SCCM\Intune platform expertise to ensure comprehensive visibility, compliance, and rapid threat response.
Key Responsibilities:
Administer, monitor, and optimize Microsoft Defender suite deployments across the enterprise.
Serve as an escalation point for complex endpoint and infrastructure-related incidents.
Design and manage endpoint detection and response (XDR) policies using Defender for Endpoint.
Develop threat-hunting hypotheses and implement new detection logic in Defender XDR.
Provide mentorship and guidance to Tier 1/2 SOC analysts.
Develop and maintain configuration baselines, health checks, and compliance reporting using Tanium.
Investigate and remediate security alerts and endpoint incidents.
Collaborate with SOC and IR teams for threat hunting, forensic analysis, and response automation.
Document processes, configurations, and incident response procedures.
Automate compliance and remediation workflows using PowerShell and Intune configuration profiles.
Manage and monitor Microsoft Defender for Office 365 to protect users from phishing, malware, and other threats across Exchange, SharePoint, OneDrive, and Teams.
Requirements:
3–5 years of experience in endpoint security or a related cybersecurity role.
Deep knowledge of Microsoft Defender for Endpoint, Defender for Identity, and related Defender XDR tools.
Strong experience with Intune platform.
Experience with scripting (PowerShell,Python) for automation and remediation.
Familiarity with SIEMs (e.g., Splunk, Sentinel) and EDR integrations.
Strong analytical and troubleshooting skills.