Amazon Web Services (AWS), Analysis Skills, Artificial Intelligence (AI), Artificial Intelligence (AI) Agents, Audiovisual, Automation, Bank Management, Best Practices, CISSP - Certified Information Systems Security Professional, Certificate Authorities, Cloud Computing, Communication Skills, Computer Forensics, Computer Security, Cross-Functional, Ecosystems, Employee Assistance Plan, Endpoint Security, Enterprise Protection, Establish Priorities, Financial Planning, Firewalls, Forensic Science, GCFA - GIAC Certified Forensic Analyst, GCIH - GIAC Certified Incident Handler, GCP (Good Clinical Practices), GIAC - Global Information Assurance Certification, Gap Analysis, Health Insurance, Hunting, Incident Management, Incident Response, Internet Security, Interpersonal Skills, Intrusion Detection Systems, Intrusion Prevention Systems, Link Performance, Linux Operating System, Malware Analysis, Microsoft Windows Azure, Microsoft Windows Operating System, Network Protocols, Network Security, Performance Analysis, Performance Metrics, Philosophy, Presentation/Verbal Skills, Procedure Development, Protective Services, Relationship Management, Rich Internet Application (RIA), Risk Analysis, Root Cause Analysis, Security Analysis, Security Architecture, Security Attacks, Security Auditing, Security Information and Event Management (SIEM), Security Infrastructure, Security Monitoring, Service Level Agreement (SLA), Simulation, Splunk, Team Player, Telemedicine, Trend Analysis, U.S. National Institute of Standards and Technology (NIST), Use Cases, Vendor/Supplier Relations, Vulnerability Scanners, Wealth Management, Writing Skills
Description
Job Location
The primary work location for this role is Trivandrum, India with a hybrid/ remote work model.
About Envestnet
Envestnet is an adaptive WealthTech company that is redefining the future of wealth management by helping advisors meet the moment with its comprehensive technology, actionable insights, and industry leading support. Backed by over 25 years of experience and approximately $7.0 trillion in platform assets, Envestnet is trusted by over one third of financial advisors across leading banks, wealth managers, brokerages, and RIAs.
For a deeper look at how Envestnet is shaping the future of financial advice, visit www.envestnet.com.
The Team You’ll Join
The Cyber Defense – Security Operations Center (SOC) team is responsible for safeguarding the organization’s digital assets through continuous security monitoring, threat detection, incident response, threat hunting, vulnerability management and security engineering. The team leverages advanced security technologies, threat intelligence, automation, and analytics to identify and mitigate cyber threats across cloud, endpoint, network, and identity ecosystems. Working closely with security engineering, infrastructure, and business stakeholders, the SOC team plays a critical role in enhancing the organization’s cyber resilience, improving detection and response capabilities, and ensuring effective protection against evolving threat landscapes.
How You’ll Contribute
- Support and coordinate key stages of the incident response lifecycle, including detection, analysis, containment, eradication, recovery, and post-incident review. Prepare clear incident reports and communicate findings, impact, and recommended actions to technical and non-technical stakeholders.
- Perform in-depth analysis of security events, alerts, and logs from various tools such as SIEM, EDR, IDS/IPS, and firewalls to identify and investigate potential threats. Update and implement incident response playbooks and procedures to ensure the efficient and effective handling of security incidents. Streamline and automate detection and prevention processes to enable rapid response, consistent triage, and swift root cause analysis and recovery.
- Contribute to the enhancement of EDR and SOAR platforms by leveraging agentic AI, automation, and orchestration capabilities to improve alert triage, investigation, and incident response processes. Support the development of advanced detection and response use cases through threat intelligence integration, automated enrichment, and AI-assisted analysis while aligning security operations with industry frameworks such as MITRE ATT&CK and NIST CSF.
- Participate in purple team exercises and adversary emulation activities to validate security controls, detection coverage, and response capabilities. Collaborate with offensive and defensive teams to identify gaps, improve detections, and strengthen the organization's security posture using frameworks such as MITRE ATT&CK.
- Manage the relationship with the MDR vendor, tracking performance against SLAs and key performance indicators (KPIs). Conduct regular reviews of reports, incident trends, and feedback from internal teams.
- Conduct vulnerability assessments and gap analyses to determine security weaknesses in systems, applications, and networks. Collaborate with workload owners and cross-functional teams to coordinate remediation activities.
- Contribute to securing enterprise AI platforms, generative AI solutions, and AI agents by identifying emerging risks, implementing security controls, and supporting governance initiatives. Collaborate with security and engineering teams to develop monitoring capabilities and best practices that enable the secure adoption of AI technologies.
- Engage in proactive threat and vulnerability searches, leveraging threat intelligence and Envestnet's network knowledge. Collaborate with the offensive security team on Breach and Attack Simulation (BAS) platform exercises. Automate repetitive searches using various tools, monitor threat actor tactics, and manage simulated cyber-attacks based on prioritized threats.
- Participate in evaluating and implementing security technologies that improve detection, response, automation, threat hunting, vulnerability management, or AI security capabilities.
- Assist in writing best practice procedures for services such as incident analysis, incident response coordination, security audits or assessments, certificate authority, log analysis and diagnostics, and host vulnerability scanning. Implement end-point security using EDR, EPM, and AV tools.
What You’ll Need to Bring
- 8+ years of cybersecurity experience, with strong hands-on experience in security operations, incident response, detection engineering, threat hunting, or related cyber defense functions.
- Excellent communication skills, both written and verbal, with the ability to convey technical information clearly.
- Expertise in incident handling, threat hunting, digital forensics, malware analysis, SOAR, operating systems, network security, purple teaming, and emerging security intelligence.
- Skilled in using tools like CrowdStrike EDR, Breach & Attack Simulation platforms, NDR, AIDR, Splunk Enterprise Security, and IDP/ITDR.
- Comprehensive understanding of network protocols, Windows and Linux operating systems, and security architectures.
- Capable of working independently or within a team in high-pressure environments.
- Knowledgeable about the MITRE ATT&CK framework.
- Process-oriented with strong analytical and decision-making skills.
- Effective team player with excellent interpersonal abilities.
Nice-to-Haves
- Relevant industry certifications in Incident Response and Forensics related certificates areas, such as GIAC (GCIH, GCFA, GCFE), CISSP, or CEH is highly desirable.
- Familiarity with AWS, Azure, and GCP cloud security services and best practices.
Why You’ll Enjoy Working at Envestnet
Help shape the future of WealthTech. At Envestnet you’ll gain hands-on experience and collaborate with some of the industry’s brightest minds to deliver meaningful, innovative solutions that make a real difference.
We value flexibility in how and where work gets done, and we recognize strong performance with meaningful rewards—because your contributions should drive both business success and your own personal growth. If you’re looking for a place where your work has impact, your development is supported, and your contributions are truly valued, Envestnet is where you can build your future.
The opportunity is now!
Our Investment in You
At Envestnet, our total rewards philosophy is designed to attract, motivate, and grow exceptional talent. We offer competitive, market-aligned compensation complemented with performance-linked incentives and rewards programs that recognize and reward impact.
In addition, we provide a comprehensive suite of benefits - subject to Envestnet’s plan eligibility rules - that support your overall well-being, including medical insurance for you and your family, annual health check-ups, free online doctor consultations and telemedicine services, subsidized health club memberships, and an employee assistance program. Our investment in you means supporting you professionally, financially, and personally at every stage of your journey with us.
Our Commitment to Inclusion & Belonging
Envestnet is an Equal Employment Opportunity employer and does not discriminate in employment on the basis of religion, race, color, caste, sex, gender, gender identity or expression, pregnancy, age, disability, medical condition, nationality, ethnic origin, marital status, or any other status protected under applicable Indian law. This commitment is in accordance with the Constitution of India and applicable labor and employment laws. All employment decisions are made solely based on merit, qualifications, performance, and business needs.
We strive to provide an inclusive application and interview process. If you are a candidate with a disability and require reasonable accommodation, please contact us at
careers@envestnet.com
. Please include your full name, the title of the role you are applying for, and the accommodation necessary to assist you with the recruiting process.
Recruitment Fraud
At Envestnet, safeguarding the trust and safety of job seekers is a top priority. We are aware that scammers may impersonate Envestnet recruiters or create fake job opportunities to deceive candidates. Review the information on our recruitment fraud awareness page to help you recognize and avoid recruitment fraud.