Jobs in India

Threat Investigator in India

140 active opportunities · Updated October 2026

Explore current threat investigator jobs across India. Filter by work mode, employment type, experience, department, date posted and distance.

R
📍 Gurugram, Haryana, India
✓ High-confidence listingCompany trend -93.7%
Quick readStrong listing-quality and freshness signals

Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers and creators. At Roblox, we’re building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. We’re on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. A career at Roblox means you’ll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone. Roblox’s Safety Operations team is dedicated to protecting our users from bad actors. The Critical Harms Investigations & Incident Management (CHIIMS) team applies subject matter expertise to our highest-level risks, working closely with cross-functional partners. As part of our commitment to safety, we are looking for a Junior Specialist with an investigator’s mindset, skills, and curiosity to investigate and respond to some of our highest-risk escalations. You will work with teams and leaders across the company to quickly and professionally respond to urgent requests for support, and balance competing priorities to get the job done. You will share findings with internal partners to help identify and mitigate risks across the platform. Please Note: This role may review graphic, controversial, and sometimes offensive content in line with Roblox’s content moderation practices. You Will: Incident Investigation and Triage Support, then lead, rapid investigations into critical and complex incidents, including but not limited to threats against child safety, violent extremism, and other high-severity harms. Utilize internal tools, data analysis, and open-source inte

Project Management
W
📍 India
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

WPP is the trusted growth partner for the world’s leading brands. We unite cutting-edge media intelligence and data solutions, world-class creativity, next-generation production, transformative enterprise solutions and expert strategic counsel in a single company – powered by exceptional talent and our agentic marketing platform, WPP Open, to help our clients navigate change, capture opportunity and deliver transformational growth. We work with the world's most valuable brands and have global reach across 100+ markets, with deep local expertise. Our people are the key to our success. We're committed to fostering a culture of creativity, belonging and continuous learning, attracting and developing the brightest talent, and providing exciting career opportunities that help our people grow. For more information, visit WPP.com. Why we're hiring: The Threat Hunter is responsible for proactively identifying advanced threats that evade traditional security controls. This role involves hypothesis-driven investigations, leveraging threat intelligence, and analyzing telemetry across endpoints, networks, and cloud environments to uncover stealthy adversary activity. The Threat Hunter plays a critical role in reducing dwell time and strengthening organizational resilience under the Autonomic Security Operations model. What you'll be doing: Proactive Threat Hunting Execute hypothesis-driven hunts based on adversary TTPs and threat intelligence. Analyze telemetry from SIEM, EDR/XDR, NDR, and cloud-native platforms to identify anomalies. Develop and maintain hunting queries and scripts for automation and repeatability. Validate detection coverage through purple team exercises and adversary emulation. Threat Intelligence Integration Incorporate emerging threat intelligence into hunting hypotheses and detection pipelines. Maintain awareness of global threat actor tactics, techniques, and procedures (MITRE ATT&CK). Continuous Improvem

PythonAIRecruitment
PE
📍 India· Full-time
✓ Quality checked

Role Summary We are seeking an experienced SOC / Security Operations Lead to oversee and strengthen the organization's Security Operations Center (SOC), threat detection, incident response, vulnerability management, data protection, and security monitoring capabilities. The ideal candidate will possess extensive experience in managing enterprise security operations, SIEM/SOAR platforms, threat hunting, incident response, DLP, endpoint security, and vulnerability management programs. The role requires leadership of a multi-functional security operations team responsible for protecting critical business systems, customer data, and digital assets while ensuring compliance with RBI regulations and industry security standards. Key Responsibilities Security Operations Center (SOC) Management -Lead and manage 24x7 Security Operations Center (SOC) functions. -Establish and enhance SOC processes, playbooks, escalation procedures, and operational metrics. -Ensure timely detection, triage, investigation, containment, and remediation of security incidents. -Develop SOC maturity roadmaps aligned with industry best practices and regulatory expectations. -Monitor security KPIs, SLAs, MTTR, MTTD, and incident response effectiveness. SIEM, XSIAM & Threat Detection -Lead implementation, administration, and optimization of: -Palo Alto Cortex XSIAM -SIEM Platforms -SOAR Platforms -UEBA Solutions -Threat Intelligence Platforms -Develop and tune correlation rules, detection logic, and analytics use cases. -Enhance detection coverage across cloud, endpoints, applications, networks, and third-party environments. -Drive threat hunting and proactive security monitoring initiatives. Incident Response & Threat Management -Lead enterprise cyber incident response activities. -Develop and maintain incident response plans, runbooks, and communication procedures. -Coordinate investigations involving malware, ransomware, phishing, insider threats, account compromise, fraud, and adv

G
📍 India· Full-time
✓ High-confidence listingCompany trend +33.3%
Quick readStrong listing-quality and freshness signals

Location Details: Remote, India At GoDaddy the future of work looks different for each team. Some teams work in the office full-time; others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings Join Our Team... GoDaddy’s Product Security team is looking for a Security Engineer who is passionate about helping build secure products and services used by millions of customers worldwide. In this role, you will work closely with engineering and platform teams to identify security risks, improve security practices, and help embed security throughout the software development lifecycle. You will have the opportunity to learn from experienced security professionals while contributing to initiatives that improve the security and resilience of our products, platforms, and cloud environments. The ideal candidate is curious, hands-on, eager to learn, takes ownership of their work, and excited to solve security challenges at scale! What you'll get to do... Identify, assess, and help remediate security risks across applications, infrastructure, cloud environments, and AI-enabled services Partner with engineering and platform teams to design, implement, and improve security controls throughout the software development lifecycle Conduct security reviews, threat modelling, and risk assessments to help build secure, resilient, and scalable systems Develop and enhance automation, tooling, and processes that strengthen security coverage, improve detection and response capabilities, and increase operational efficiency Investigate security findings, stay informed on emerging threats and technologies, and contribute to a culture of security awareness and continuous learning Your experience should include... 2+ yea

PythonJavaAWSAzure
F
📍 Hyderabad, Telangana, India
✓ Quality checkedCompany trend -100%

At Franklin Templeton, we believe success is built through powerful partnerships. As a forward‑thinking asset manager, we build dynamic relationships with clients, understand their goals, and navigate complex markets together. We leverage cutting‑edge strategies and deep insights to unlock opportunities for long‑term wealth creation. Our talented, global teams bring expertise that is both broad and unique. From our welcoming, inclusive, and supportive culture to our globally diverse business, we offer opportunities not only to help you reach your potential, but also to contribute to our clients’ success. About the department: The Global Compliance Transaction Monitoring Team at Fiduciary Trust Company International helps protect the organization from money laundering, sanctions, and terrorist financing risks. The team monitors client activity, reviews higher-risk transactions, conducts sanctions screening, and supports regulatory reporting requirements. Team members work closely with compliance, risk, and business stakeholders to strengthen the firm’s control environment and support regulatory compliance across global operations. How you will add value? Core Responsibilities: You will administer the GIFTS transaction monitoring platform. You will support the Threat matrix monitoring program. You will conduct Anti-Money Laundering investigations. You will perform quality assurance reviews. You will consolidate alerts and case information. You will maintain search-list profiles within GIFTS. You will oversee daily monitoring operations activities.

G
📍 Gurugram, Haryana, India· Full-time
✓ High-confidence listingCompany trend +33.3%
Quick readStrong listing-quality and freshness signals

Location Details: Remote, India At GoDaddy the future of work looks different for each team. Some teams work in the office full-time; others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely.​ This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings. Join our team... The Securities Analytics and Products Group is responsible for developing and maintaining sophisticated software solutions to safeguard GoDaddy's ecosystem. We are seeking a dedicated Senior Software Engineer with a strong background in software development and a keen focus on security. The ideal candidate will have proven hands-on experience in software development, with a consistent track record of working with the latest software technologies while prioritising security best practices. As a key member of our engineering team, you will play a crucial role in designing, developing, and implementing secure software solutions to protect our organisation from cyber threats. You will get to work with some of the brightest minds to build secure, highly available, fault-tolerant, and globally performant microservices-based platform deployed on the AWS cloud, using the newest technology stack. While the role is primarily backend-focused, you'll also get opportunities to contribute to frontend features as needed, giving you exposure across the full stack. What you'll get to do... Design, develop, and maintain secure, highly available, fault-tolerant, and globally performant code deployed on AWS cloud. Ensure code quality through extensive unit and integration testing Own frontend features and UI components across projects on an as-required cadence, from design through delivery Investigate and resolve production issues, ensuring your team's DevOps on-call responsibilities Contribute to the technical documentation, code reviews,

TypeScriptPythonReactAngular
C
📍 Bengaluru, KARNATAKA, India· Full-time
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

WHO ARE WE? We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal! We believe that work and the workplace should be joyful and always buzzing with energy! CloudSEK , one of India’s most trusted Cyber security product companies, is on a mission to build the world’s fastest and most reliable AI technology that identifies and resolves digital threats in real-time. The central proposition is leveraging Artificial Intelligence and Machine Learning to create a quick and reliable analysis and alert system that provides rapid detection across multiple internet sources, precise threat analysis, and prompt resolution with minimal human intervention. Founded in 2015, headquartered at Singapore, we are proud to say that we’ve grown at a frenetic pace and have been able to achieve some accolades along the way, including: CloudSEK’s Product Suite: CloudSEK XVigil constantly maps a customer’s digital assets, identifies threats and enriches them with cyber intelligence, and then provides workflows to manage and remediate all identified threats including takedown support. A powerful Attack Surface Monitoring tool that gives visibility and intelligence on customers’ attack surfaces. CloudSEK's BeVigil uses a combination of Mobile, Web, Network and Encryption Scanners to map and protect known and unknown assets. CloudSEK’s Contextual AI SVigil identifies software supply chain risks by monitoring Software, Cloud Services, and third-party dependencies. CloudSEK’s AIVigil is an AI-native Attack Surface Monitoring platform that continuously discovers, monitors, and secures exposed AI infrastructure, MCP servers, leaked AI credentials, vector databases, agentic workflows, and shadow AI across the internet. Key Milestones: 2016 : Launched our first product. 2018 : Secured Pre-series A funding. 2019 : Expanded operations to India, Southeast Asia, and the Americas. 2020 : Won the NASSCOM-DSCI Excellence Award for Security Product Company

PythonAWSAzureGCP
AG
📍 Mumbai, Maharashtra, India· Full-time
✓ High-confidence listingCompany trend -81.5%
Quick readStrong listing-quality and freshness signals

The Regional Security Head is responsible for managing security operations across multiple sites, aligning security measures with business goals and the Security Strategy Roadmap. This role ensures comprehensive protection of infrastructure, personnel, and assets through proactive threat assessment, risk management, and the deployment of security strategies that ensure business continuity. This role also oversees security-related automation, infrastructure projects, and leads a team to foster a safe and secure environment for employees, stakeholders, and designated protectees. Source: Adani Group | Job ID: 58692

C
📍 India· Full-time
✓ High-confidence listing

$30K – $35K/yr

Quick readStrong listing-quality and freshness signals

SPECIFIC JOB RESPONSIBILITIES Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP). Multi-Tenancy & MSSP Architecture: Architect a scalable, multi-tenant environment that ensures strict data isolation between clients while allowing for unified " ClickOps " and Terraform-driven automation. AI & Innovation: Explore and implement Now Assist (GenAI) and AI-heavy workflows to automate security reporting and incident summarization. Defensive Operations (SecOps): Design and automate the Security Incident Response (SIR) and Vulnerability Response (VR) lifecycles. Build playbooks in Flow Designer to automate threat containment and remediation. Offensive Operations: Develop custom scoped applications to track penetration testing results, manage red-team engagement lifecycles, and automate the ingestion of reconnaissance data. Compliance & GRC: Configure and customize Integrated Risk Management (IRM) modules to map technical controls to frameworks like SOC2, ISO 27001, HIPAA, and FedRAMP. Integrations & Orchestration: Build robust, secure integrations (REST/SOAP, IntegrationHub , MID Servers) with our XDR, SIEM (Splunk/Sentinel), and cloud-native services (AWS/Azure/GCP)

AWSAzureGCPLinux
AG
📍 Mumbai, Maharashtra, India· Full-time
✓ Quality checkedCompany trend -81.5%

The Regional Security Head is responsible for managing security operations across multiple sites, aligning security measures with business goals and the Security Strategy Roadmap. This role ensures comprehensive protection of infrastructure, personnel, and assets through proactive threat assessment, risk management, and the deployment of security strategies that ensure business continuity. This role also oversees security-related automation, infrastructure projects, and leads a team to foster a safe and secure environment for employees, stakeholders, and designated protectees. Source: Adani Group | Job ID: 56418

AG
📍 Mumbai, Maharashtra, India· Full-time
✓ Quality checkedCompany trend -81.5%

The Regional Security Head is responsible for managing security operations across multiple sites, aligning security measures with business goals and the Security Strategy Roadmap. This role ensures comprehensive protection of infrastructure, personnel, and assets through proactive threat assessment, risk management, and the deployment of security strategies that ensure business continuity. This role also oversees security-related automation, infrastructure projects, and leads a team to foster a safe and secure environment for employees, stakeholders, and designated protectees. Source: Adani Group | Job ID: 56411

AG
📍 India· Full-time
✓ Quality checkedCompany trend -81.5%

The Regional Security Head is responsible for managing security operations across multiple sites, aligning security measures with business goals and the Security Strategy Roadmap. This role ensures comprehensive protection of infrastructure, personnel, and assets through proactive threat assessment, risk management, and the deployment of security strategies that ensure business continuity. This role also oversees security-related automation, infrastructure projects, and leads a team to foster a safe and secure environment for employees, stakeholders, and designated protectees. Source: Adani Group | Job ID: 57667

C
📍 Bengaluru, KARNATAKA, India
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

WHO ARE WE? We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal! We believe that work and the workplace should be joyful and always buzzing with energy! CloudSEK , one of India’s most trusted Cyber security product companies, is on a mission to build the world’s fastest and most reliable AI technology that identifies and resolves digital threats in real-time. The central proposition is leveraging Artificial Intelligence and Machine Learning to create a quick and reliable analysis and alert system that provides rapid detection across multiple internet sources, precise threat analysis, and prompt resolution with minimal human intervention. Founded in 2015, headquartered at Singapore, we are proud to say that we’ve grown at a frenetic pace and have been able to achieve some accolades along the way, including: CloudSEK’s Product Suite: CloudSEK XVigil constantly maps a customer’s digital assets, identifies threats and enriches them with cyber intelligence, and then provides workflows to manage and remediate all identified threats including takedown support. A powerful Attack Surface Monitoring tool that gives visibility and intelligence on customers’ attack surfaces. CloudSEK's BeVigil uses a combination of Mobile, Web, Network and Encryption Scanners to map and protect known and unknown assets. CloudSEK’s Contextual AI SVigil identifies software supply chain risks by monitoring Software, Cloud Services, and third-party dependencies. CloudSEK’s AIVigil is an AI-native Attack Surface Monitoring platform that continuously discovers, monitors, and secures exposed AI infrastructure, MCP servers, leaked AI credentials, vector databases, agentic workflows, and shadow AI across the internet. Key Milestones: 2016 : Launched our first product. 2018 : Secured Pre-series A funding. 2019 : Expanded operations to India, Southeast Asia, and the Americas. 2020 : Won the NASSCOM-DSCI Excellence Award for Security Product Company

JavaScriptReactMachine LearningArtificial Intelligence
E
📍 Bengaluru, India· Full-time
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

Everpure (NYSE: P) has evolved from storage pioneer to data platform, closing fiscal 2026 with $3.7 billion in revenue, its first billion-dollar quarter, and accelerating growth into FY27. Our strategic agenda spans the companies defining the next era of technology - hyperscalers, AI labs, the AI hardware supply chain, data platform providers, and the broader AI ecosystem. This type of work—work that changes the world—is what the tech industry was founded on. So, if you're ready to seize the endless opportunities and leave your mark, come join us. THE ROLE As a hands-on senior leader for our India SecOps team, you will shape and safeguard Everpure’s security posture at the intersection of detection engineering, threat hunting, attack surface management, and incident response. Positioned as a strategic cornerstone in Bangalore, you will empower an elite engineering team, optimize critical SecOps pipelines, and partner cross-functionally across global engineering and infrastructure groups. By driving execution excellence and high team morale, you ensure our enterprise platform and global telemetry remain resilient against evolving threats. WHAT YOU'LL DO Scale & Lead SecOps Operations: Architect, mentor, and grow the India SecOps team to foster an environment of high morale, technical excellence, and rapid execution across detection engineering and incident response. Proactively Manage & Remediate Attack Surface: Own end-to-end Attack Surface Management (ASM) across cloud environments, SaaS applications, endpoints, and secrets management to measurably minimize enterprise exposure and mitigate risk. Optimize Telemetry & Incident Response: Mature SIEM and SOAR automation pipelines to drastically reduce mean time to detect, contain, and respond (MTTD/MTTC/MTTR) while continuously elevating alert fidelity and signal confidence. Drive Cross-Functional Alignment & RCA Postmortems: Lead continuous validation through purple-teaming and incident postmortems alo

AWSAzureCI/CDRest
C
📍 Bengaluru, KARNATAKA, India· Full-time
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

WHO ARE WE? We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal! We believe that work and the workplace should be joyful and always buzzing with energy! CloudSEK , one of India’s most trusted Cyber security product companies, is on a mission to build the world’s fastest and most reliable AI technology that identifies and resolves digital threats in real-time. The central proposition is leveraging Artificial Intelligence and Machine Learning to create a quick and reliable analysis and alert system that provides rapid detection across multiple internet sources, precise threat analysis, and prompt resolution with minimal human intervention. Founded in 2015, headquartered at Singapore, we are proud to say that we’ve grown at a frenetic pace and have been able to achieve some accolades along the way, including: CloudSEK’s Product Suite: CloudSEK XVigil constantly maps a customer’s digital assets, identifies threats and enriches them with cyber intelligence, and then provides workflows to manage and remediate all identified threats including takedown support. A powerful Attack Surface Monitoring tool that gives visibility and intelligence on customers’ attack surfaces. CloudSEK's BeVigil uses a combination of Mobile, Web, Network and Encryption Scanners to map and protect known and unknown assets. CloudSEK’s Contextual AI SVigil identifies software supply chain risks by monitoring Software, Cloud Services, and third-party dependencies. CloudSEK’s AIVigil is an AI-native Attack Surface Monitoring platform that continuously discovers, monitors, and secures exposed AI infrastructure, MCP servers, leaked AI credentials, vector databases, agentic workflows, and shadow AI across the internet. Key Milestones: 2016 : Launched our first product. 2018 : Secured Pre-series A funding. 2019 : Expanded operations to India, Southeast Asia, and the Americas. 2020 : Won the NASSCOM-DSCI Excellence Award for Security Product Company

PythonGitRestMachine Learning
🔔

Get new threat investigator jobs in India by email

Daily job updates · Unsubscribe anytime