Base Career helps you apply smarter for this job.
Key skills for this role
Serve as key escalation tier (level 2 analyst) for on-call incident response resources
Perform complex investigations as a part of Edwards active security monitoring and threat hunting operations within SLAs
Drive and design response and remediation actions to protect against security threats in Edwards environments and products
Lead the design, testing and implementation of detection use cases to production
Help drive threat hunting program
Drive and develop our incident response program
Responsible for operations and maintenance of key cyber security capabilities and services in Detection Response area – SIEM (Google SecOps, Splunk, Qradar etc)
Design automation workflows to streamline detection and response efforts
Participate in CIRT team efforts
Provide coaching, mentoring, and knowledge transfer to other team members
Document and maintain incident response technical playbooks and incident timelines
Staying informed on the evolving cybersecurity threat landscape to drive innovative detections, threat hunts, and automations to drive Edwards’ security posture
Bachelor's Degree in related field with 5+ years of previous related experience, or equivalent work experience based on Edwards criteria
Previous related experience in Information Security SOC, CIRT or SIEM teams
Participation and leading information security incident handling efforts
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
, IND
Edwards Lifesciences is seeking students for a January through June 2027 IT internship program in Pune. Participants may support software engineering, AI, automation, data and analytics, cloud, and enterprise technology
Pune, IND
, IND
Edwards Lifesciences is seeking students for a January-June 2027 IT internship program in Pune. Interns may support software engineering, AI, automation, data and analytics, cloud, and enterprise technology projects. App
Mississauga, CAN
, IND
, GBR
, IND
Napi Headquarters, USA
Pune, IND
, IND
China, USA
Provide and build detailed investigation timelines including documentation, improvements, and recommended action items
Expert with Google SecOps or other SIEM solutions (Splunk, Qradar etc)
Experience with SOAR platforms operations (Torq, PaloAlto XSOAR etc)
Experience with threat hunting operations and/or design
Demonstrated experience writing and tuning detection logic
Proficiency with at least one query language (CQL/LogScale, KQL, SPL, or equivalent)
Certifications in related discipline preferred (e.g., GCIH, GCDA etc)
Expert of IR concepts, data tuning, SIEM, forensics, cloud monitoring
Knowledge of common attack vectors and methods, MITRE framework
Scripting experience preferred
Proficient analytical and problem-solving abilities to identify and mitigate potential security risks
Strict attention to detail
Ability to partner with other information security and IT experts for escalation of security alerts and onboarding log sources
Substantial understanding of troubleshooting techniques with the ability to adapt and learn new technologies
Ability to provide guidance to assigned teams on implementing information security standards and designs
Excellent organization and time management skills
Excellent verbal and written communication skills Recruiting scam alert: Read our notice about potential recruiting scams.
Global leader in patient-focused innovations for structural heart disease.
Visit company websiteJobs and hiring trendsFull-time
Senior · 5+ years experience
Onsite
Apply faster on company sites with our extension.