Cyber Defense Engineer
Finastra.com
Office
Bengaluru, India
Full Time
Who Are We?
At Finastra, we are a dynamic global provider of open finance software solutions, dedicated to expanding access to financial services. Our innovative applications span Lending, Payments, Treasury and Capital Markets, and Universal Banking. Proudly serving over 8,000 customers, including 45 of the world's top 50 banks, we aim to boost financial inclusion for all. Join us and be part of a vibrant company that embraces diverse perspectives, and is committed to doing well by doing good.
Cybersecurity Detection Engineer
What Will You Contribute To?
We Are Seeking An Experienced Cybersecurity Detection Engineer To Join Our Security Team Within The Financial Services Sector. This Role Plays A Critical Part In Strengthening Our Detection And Response Capabilities By Leading Siem Operations, Developing Advanced Detection Logic, And Ensuring The Organization’S Defenses Remain Ahead Of Evolving Threats. You Will Serve As A Subject Matter Expert, With A Direct Impact On The Security Of Sensitive Financial Systems And Data.
Responsibilities & Deliverables:
Assist In Developing And Maintaining Our Siem Platform (E.G., Splunk, Qradar, Azure Sentinel, Etc.) Including Log Onboarding, Parsing, Correlation Rule Development, And Alert Tuning
Act As A Technical Authority On Detection Engineering And Continuous Improvement Of Detection Capabilities Across Financial Systems And Services
Collaborate Closely With Audit, Threat Intelligence, And Soc Teams To Ensure Regulatory And Risk-Based Coverage
Continuously Improve Detection Performance By Using Feedback Loops, Analyzing Detection Efficacy, Mapping Detection Sources To Use Cases, And Preforming Rule Tuning And Optimization To Reduce False Positives And Increase Fidelity
Act As A Primary Technical Liaison With An Mssp Delivering Managed Xdr Services, Ensuring Quality Of Detections, Tuning Alerts, And Optimizing Response Workflows
Integrate And Build Detection Use Cases To Enable Monitoring Of Financial Application Logs (E.G., Swift, Trading Platforms, Core Banking Systems) And Support Compliance With Ffiec, Sox, Glba, Pci-Dss, And Other Relevant Standards
Participate In Regular Detection Effectiveness Assessments, Blue Team Exercises, And Gap Analysis Tailored To Threats Specific To The Company And Fintech Space
Operationalize And Continuously Mature The Organization'S Siem Program, Establishing Kpis And Optimizing Detection Pipelines
Stay Current On Threat Actor Behavior Targeting Financial Services And Leverage This Intelligence To Enhance Detection Logic And Response Readiness
Required Experience :
3+ Years Of Experience In Cybersecurity, With A Focus On Detection Engineering, Threat Monitoring, Or Security Operations Within The Finance Industry Or Highly Regulated Environments
Experience With Siem Platforms, Including Log Ingestion, Parsing, Rule Development, And Content Lifecycle Management
Experience Leverage Ci/Cd Pipelines For Version Control, Automated Testing And Deployment Of Detection Content, To Ensure Consistent And High-Quality Detection Logic (Github, Gitlab, Jenkins, Devops, Etc.)
Proficiency In Detection Query Languages (E.G., Kql, Spl, Aql) And Scripting (Python Or Powershell)
Knowledge Of Regulatory Requirements And Frameworks Impacting The Financial Industry (E.G., Ffiec, Glba, Nist 800-53)
Direct Experience Working With An Mssp Delivering Managed Xdr/Managed Siem Environments, Including Co-Managed Alerting And Response Processes
Experience With Soar Platforms And Automation Of Detection And Response Workflows
Exposure To Cloud Environments (Aws, Azure, Gcp) And Corresponding Logging And Detection Capabilities
Excellent Communication And Collaboration Skills, With The Ability To Drive Security Initiatives Across Diverse Stakeholders
Education / Certifications:
Bachelor'S Degree From An Accredited College Or University, Or Equivalent Experience. A Degree In Computer Science, Computer/Data Systems Management Or A Related Field Or Discipline Is Preferred But Not Required
Certification In One Or More Of The Following Areas Is Desired But Not Required: Certified Information Security Professional (Cissp), Certified Cloud Security Professional (Ccsp), Certified Information Systems Auditor (Cisa), Certified Information Security Manager (Cism)
We are proud to offer a range of incentives to our employees worldwide. These benefits are available to everyone, regardless of grade, and reflect the values we uphold:
- Flexibility: Enjoy unlimited vacation, based on your location and business priorities. Hybrid working arrangements, and inclusive policies such as paid time off for voting, bereavement, and sick leave.
- Well-being: Access confidential one-on-one therapy through our Employee Assistance Program, unlimited personalized coaching via our coaching app, and access to our Gather Groups for emotional and mental support.
- Medical, life & disability insurance, retirement plan, lifestyle and other benefits*
- ESG: Benefit from paid time off for volunteering and donation matching.
- DEI: Participate in multiple DE&I groups for open involvement (e.g., Count Me In, Culture@Finastra, Proud@Finastra, Disabilities@Finastra, Women@Finastra).
- Career Development: Access online learning and accredited courses through our Skills & Career Navigator tool.
- Recognition: Be part of our global recognition program, Finastra Celebrates, and contribute to regular employee surveys to help shape Finastra and foster a culture where everyone is engaged and empowered to perform at their best.
*Specific benefits may vary by location.
At Finastra, each individual is unique, bringing their own ideas, thoughts, cultural beliefs, backgrounds, and experiences together. We learn from one another, embrace and celebrate our differences, and create an environment where everyone feels safe to be themselves.
Be unique, be exceptional, and help us make a difference at Finastra!
Cyber Defense Engineer
Office
Bengaluru, India
Full Time
October 7, 2025