Free cookie consent management tool by TermsFeed Senior Offensive Security Liaison Analyst | Antal Tech Jobs
Back to Jobs
4 Weeks ago

Senior Offensive Security Liaison Analyst

decor
Chennai, Tamil Nadu, India
Information Technology
Full-Time
WTW

Overview

Description

As part of the Centre for Threat-Informed Offence, you will lead liaison security operations, supporting Breach & Attack Simulation (BAS) and Red Team activities. Acting as the bridge between Offensive Security and the business, you will coordinate, monitor, and communicate Red Team operations, ensuring alignment with real-world threats. Your role includes validating attack simulations, enhancing security visibility, and refining detection capabilities with Cyber Defence and MDR. With strong technical expertise and communication skills, you will translate findings into actionable insights to strengthen security posture. This is a remote working role, with flexibility to operate from any of our office locations as required.

The Role:

  • Hands-on experience in Cyber Defence, Threat Hunting, or Incident Response, with exposure to Red Team or BAS operations.
  • Validate and analyse Red Team and BAS findings, ensuring accurate reporting of offensive security activities and their impact on the business.
  • Ensure timely correlation and investigation of Red Team activities to assess detection efficacy and minimize risk exposure.
  • Safely acquire and preserve forensic evidence related to offensive security exercises, assessing detection gaps, attack paths, and security control effectiveness.
  • Strong sysadmin skills (Linux/Windows) and proficiency in scripting/programming (PowerShell, Python) to automate detection and analysis tasks.
  • Identify and analyse emerging attack techniques based on internal testing, threat intelligence, and Red Team assessments.
  • Collaborate with IT and Cyber Defence teams to ensure Red Team-generated alerts and findings are triaged, actioned, and integrated into detection engineering efforts.
  • Correlate offensive security test data with defensive gaps to develop strategic mitigation plans and enhance security controls.
  • Routinely update and refine Red Team detection playbooks, ensuring response activities align with threat-informed defence principles and provide comprehensive threat mitigation.

Communications and Relationships:

Internal:

  • With the CISO, IT Security Directors and security team; Information Security Programme Manager and project managers, Risk & Compliance, Legal, Audit, IT, Procurement and other support functions as well as operational management and client-facing teams.

External:

Customers and suppliers

Qualifications

The Requirements:

Qualifications:

  • Qualified to degree level, preferably in a business, IT or security related subject.
  • Hold and maintain appropriate Information Security professional qualifications, such as CISSP or CISM,, technical security and technology such as CompTIA Network +, Security +, OSCP, CEH or GIAC.
  • The role holder will be able to demonstrate a commitment to security and strong environmental awareness through continued professional development and learning.
  • Solid understanding of SIEM technologies.
  • Scripting and programming skills with proficiency in one or more of the following; PowerShell, Pearl, Python.
  • A solid understanding of networking technologies, enterprise wide technologies including database, operating system, web application, middleware, etc.
  • Proven ability to work in global collaborative group environment
  • Experience working with a high degree of autonomy, managing own workload and delivering to tight timescales
  • Strong communication skills, both oral and written.
  • Team player with good interpersonal skills.
  • Ability to communicate technical concepts to nontechnical disciplines
  • Proven experience working with a Security Incident and Event Management solution as an analyst.
  • Calm, organised and methodical
  • Excellent analytical problem-solving skills
  • Agile and responsive approach to meeting business, security and technology objectives and delivering continuous improvement.
  • Determine technical/operational impact, root cause(s), scope and nature of the incident to mitigate risk and provide advice on remediation or recommendations
  • Comprehensive understanding of security threats, risks and countermeasures and ability to apply in a practical context at all stages of the kill chain
  • SIEM investigations.
  • Hands-on operational security experience including use of Excel, SQL, DBMS, and open-source tools, as well as shell scripting and programming languages to validate data sets produced in response to security incidents
  • Technical understanding including TVM, DLP, APT, SIEM, perimeter security, content filtering, packet flows, IPS/IDS, etc
  • In-depth understanding of currently supported versions of Microsoft Windows Server and Active Directory, as well as products such as SCCM and SCOM
  • Thorough understanding of technical security countermeasures and awareness of external and internal threat landscape
  • Knowledge of security standards, frameworks, regulation and legislation
  • Thorough understanding of network protocols, data on the wire, covert channels, ciphers and shell scripting.

Equal Opportunity Employer

At WTW, we believe difference makes us stronger. We want our workforce to reflect the different and varied markets we operate in and to build a culture of inclusivity that makes colleagues feel welcome, valued and empowered to bring their whole selves to work every day. We are an equal opportunity employer committed to fostering an inclusive work environment throughout our organization. We embrace all types of diversity.

At WTW, we trust you to know your work and the people, tools and environment you need to be successful. The majority of our colleagues work in a ”hybrid” style, with a mix of remote, in-person and in-office interactions dependent on the needs of the team, role and clients. Our flexibility is rooted in trust and “hybrid” is not a one-size-fits-all solution.

We’re committed to equal employment opportunity and provide application, interview and workplace adjustments and accommodations to all applicants. If you foresee any barriers, from the application process through to joining WTW, please email candidate.helpdesk@willistowerswatson.com.

Share job
Similar Jobs
View All
1 Day ago
TrueFan - Senior Machine Learning Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
About UsTrueFan is at the forefront of AI-driven content generation, leveraging cutting-edge generative models to build next-generation products. Our mission is to redefine content generation space through advanced AI technologies, including deep ge...
decor
1 Day ago
Salesforce commerce cloud consultant
Information Technology
  • Thiruvananthapuram, Kerala, India
Salesforce Commerce Cloud consultant  5+ Years of Experience 6 to 12 months Mode - Remote 1.1LPM - 1.2LPM Max Key Responsibilities Translate business requirements into scalable Salesforce Service Cloud solutions, in collaboration with CAE's technic...
decor
1 Day ago
Cloud Infrastructure Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
DescriptionInvent the future with us. Recognized by Fast Company’s 2023 100 Best Workplaces for Innovators List, Ampere is a semiconductor design company for a new era, leading the future of computing with an innovative approach to CPU design focuse...
decor
1 Day ago
Devops Engineer- Intermetiate
Information Technology
  • Thiruvananthapuram, Kerala, India
BackJD: Dev ops Engineer:As a DevOps Specialist- should be able to take ownership of the entire DevOps process, including Automated CI/CD pipelines and deployment to production.They should also be comfortable with risk analysis and prioritization.Le...
decor
1 Day ago
Sr Data Scientist (London)
Information Technology
  • Thiruvananthapuram, Kerala, India
AryaXAI stands at the forefront of AI innovation, revolutionizing AI for mission-critical, highly regulated industries by building explainable, safe, and aligned systems that scale responsibly. Our mission is to create AI tools that empower research...
decor
1 Day ago
Software Test Engineer
Information Technology
  • Thiruvananthapuram, Kerala, India
By clicking the “Apply” button, I understand that my employment application process with Takeda will commence and that the information I provide in my application will be processed in line with Takeda’s Privacy Notice and Terms of Use. I further att...
decor
1 Day ago
Software Developer 5 (Java Fullstack)
Information Technology
  • Thiruvananthapuram, Kerala, India
Job DescriptionBuilding off our Cloud momentum, Oracle has formed a new organization - Oracle Health Applications & Infrastructure. This team focuses on product development and product strategy for Oracle Health, while building out a complete platfo...
decor
1 Day ago
Java Developer - Spring Frameworks
Information Technology
  • Thiruvananthapuram, Kerala, India
Java DescriptionWe are looking for a passionate and talented Java Developer with 2-3 years of hands-on experience to join our growing development team.The ideal candidate should have a strong foundation in Java technologies and the ability to develo...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media