Jobs
Project Role: Security Architect
Project Role Description: Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.
Must have skills: Endpoint Extended Detection and Response
Good to have skills: NA
Minimum 3 year(s) of experience is required
Educational Qualification: 15 years full time education
Summary:
experience in cybersecurity with at least 2 years in Ransomware Analysis security.
The Halcyon Ransomware Protection is responsible for managing and optimizing the Halcyon anti-ransomware platform across the enterprise. This role focuses on ransomware detection, prevention, isolation, rollback operations, and integration of Halcyon with the existing cybersecurity ecosystem to strengthen organizational resilience against advanced ransomware threats.
Roles & Responsibilities:
-Deploy, configure, and maintain the Halcyon anti-ransomware agent across endpoints and servers.
-Monitor platform health, sensor coverage, and real-time protection status.
-Manage platform configurations, policy updates, signature updates, and agent upgrades.
-Ensure high availability and operational continuity of the Halcyon platform.
-Review Halcyon alerts, detections, and high-risk events for ransomware activity.
-Perform deep analysis on suspicious behaviors using Halcyon threat intel and behavioral telemetry.
-Lead containment actions: isolate systems, kill ransomware processes, and remove malicious artifacts.
-Execute Halcyon rollback and recovery procedures to restore encrypted files and system integrity.
-Work with SOC and IR teams for coordinated incident response.
-Hunt for early indicators of ransomware staging (persistence, privilege escalation, lateral movement).
-Utilize Halcyon s Threat Response Intelligence, behavioral indicators, and AI/ML insights.
-Identify gaps in ransomware defenses and propose improvements.
-Conduct post-incident forensics and malware behavior analysis.
-Design, implement, and tune ransomware protection policies to reduce false positives and enhance detection accuracy.
-Manage application allow/deny lists, behavioral analysis thresholds, and rollback rules.
-Maintain consistent policy governance across regions and business units.
-Integrate Halcyon with SIEM, SOAR, EDR, ITSM, and incident response platforms.
-Create automated playbooks for ransomware alerts, isolation workflows, ticketing, and remediation.
-Leverage APIs for automated deployment, alert enrichment, and reporting.
-Act as the L3 escalation for ransomware-related security events.
-Participate in tabletop exercises, red team/purple team scenarios focused on ransomware readiness.
-Provide guidance to SOC, IT Ops, and Endpoint teams on secure configuration and ransomware resilience.
Generate reports on: Attack attempts,Encryption prevention success rates,Rollback events,Sensor health and coverage,Ransomware trends and risk posture,Support internal audits, compliance assessments, and customer due-diligence requests, Maintain documentation for policies, SOPs, configurations, and incident playbooks.
Professional & Technical Skills:
- Strong hands-on experience with Halcyon Ransomware Protection Platform (mandatory for lead-level roles).
-Expertise in ransomware behavior, attack chain, encryption techniques, and mitigation strategies.
-Experience with EDR/AV tools such as Crowd Strike, Defender ATP, Sentinel One, or Carbon Black.
-Strong understanding of:
-Windows and Linux internals
-MITRE ATT&CK (especially T1486, T1489, T1490)
-Privilege escalation, lateral movement, persistence techniques
-Scripting knowledge (PowerShell or Python) for automation and investigations.
-Familiarity with SIEM/SOAR tools and incident response frameworks (NIST, SANS).
-Vendor-specific EDR/IR certifications
Additional Information:
- The candidate should have minimum 3 years of experience in Endpoint Extended Detection and Response.
- This position is based at our Bengaluru office.
- A 15 years full time education is required.
15 years full time education
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.
Visit us at www.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs

Senior technický konzultant - Cyber security
EY ·

Cybersecurity Manager
Bosch · Aveiro

Information System Security Professionals ISSO ISSE
Leidos · 2 Locations

Consultant - Tech Consulting - National - CNS - TC - Cyber Security - Bangalore
EY ·

application security engineer senior
Starbucks · 2401 Utah Ave S #800, Seattle, Washington, United States
About Accenture

Accenture
PublicLet there be change.
10,001+
Employees
Dublin
Headquarters
Reviews
4.0
10 reviews
Work Life Balance
3.5
Compensation
4.0
Culture
4.2
Career
4.1
Management
4.0
75%
Recommend to a Friend
Pros
Great learning and development opportunities
Supportive and collaborative work environment
Good career growth and networking opportunities
Cons
Need to be proactive in finding projects
Long hours during busy periods
Very competitive environment for advancement
Salary Ranges
33 data points
L2
L3
L4
L5
L6
L2 · Security L2
0 reports
$84,500
total / year
Base
$33,800
Stock
$42,250
Bonus
$8,450
$59,150
$109,850
Interview Experience
6 interviews
Difficulty
2.7
/ 5
Duration
14-28 weeks
Offer Rate
17%
Experience
Positive 0%
Neutral 50%
Negative 50%
Interview Process
1
Application Review
2
Recruiter Screen
3
Technical/Task-Based Interview
4
Final Interview
5
Offer
Common Questions
Technical Knowledge
Behavioral/STAR
Past Experience
Case Study
News & Buzz
Accenture PLC $ACN Shares Sold by Keybank National Association OH - MarketBeat
Source: MarketBeat
News
·
5w ago
4,422 Shares in Accenture PLC $ACN Bought by RWWM Inc. - MarketBeat
Source: MarketBeat
News
·
5w ago
National Pension Service Raises Stock Holdings in Accenture PLC $ACN - MarketBeat
Source: MarketBeat
News
·
5w ago
Welch & Forbes LLC Cuts Position in Accenture PLC $ACN - MarketBeat
Source: MarketBeat
News
·
5w ago